Arkime
Arkime is a tool that falls into the category of packet capturing and indexing. Like all the tools we’re covering from Kali Purple, it is free, open source software. Arkime is designed to efficiently work with very large-scale deployments. That, however, comes at the cost of resources, such as storage and RAM capacities. The bigger you want your deployment to be, the more resources you will need. Fortunately, the organization offers a resource calculator on their website to help you prepare. We’ll toss that link in the Further reading section for those of you with big aspirations who might be reading this.
Like the ELK stack, Arkime has enough features and customizations that an entire book could be written on just this one product alone. For that reason, we will only highlight the features of this product. As a cybersecurity professional, you already know just from reading this book alone that independent research will always be a part of your lifestyle, just...