FAQ for the Site
Just one lightweight agent on a host that can receive syslog from your firewall, IDS, or SIEM. The platform — database, dashboards, identity, analytics — is managed by us.
Native parsers for the major firewall/IDS formats — Snort, Suricata, Cisco ASA / Firepower, Palo Alto, Fortinet, Zeek, pfSense, generic CEF. Webhook ingest for the major SIEMs — Splunk, Graylog, Elastic, QRadar.
You buy a tenant license for the hosted platform. Pricing is custom-scoped to your environment — event volume, integrated source count, and support tier. Contact us to talk through what's right for you.
Yes we are — contact us for more information.
The platform is built on mature open-source foundations (PostgreSQL, Keycloak, Apache Superset, Podman, openSUSE). The product itself is a commercial licensed platform.
The platform is engineered for high-throughput batch processing and horizontal scaling at every layer. Your tenant scales with your event volume — you don't manage capacity, we do.