Skip to content

Latest commit

 

History

History
25 lines (21 loc) · 901 Bytes

elasticsearch.md

File metadata and controls

25 lines (21 loc) · 901 Bytes

To write results to ElasticSearch

Write to a elasticsearch docker container

$ docker volume create --name malice
$ docker run -d --name elasticsearch \
                -p 9200:9200 \
                -v malice:/usr/share/elasticsearch/data \
                 blacktop/elasticsearch:6
$ docker run --rm --link elasticsearch \
             -e MALICE_ELASTICSEARCH_URL=http://elasticsearch:9200 \
             malice/nsrl HASH

Write to an external elasticsearch database

$ docker run --rm \
             -e MALICE_ELASTICSEARCH_URL=$MALICE_ELASTICSEARCH_URL \
             -e MALICE_ELASTICSEARCH_USERNAME=$MALICE_ELASTICSEARCH_USERNAME \
             -e MALICE_ELASTICSEARCH_PASSWORD=$MALICE_ELASTICSEARCH_PASSWORD \
             -e MALICE_ELASTICSEARCH_INDEX="test" \
              malice/nsrl -V lookup SHA1_HASH