Skip to content

175 Add STIX Conversion for PixieETL HTTP and DNS Tables#191

Open
mebegu wants to merge 5 commits into
174-honeycluster-with-clickhouse-and-time-nanosecondsfrom
175-pixie-stix-etl
Open

175 Add STIX Conversion for PixieETL HTTP and DNS Tables#191
mebegu wants to merge 5 commits into
174-honeycluster-with-clickhouse-and-time-nanosecondsfrom
175-pixie-stix-etl

Conversation

@mebegu
Copy link
Copy Markdown
Contributor

@mebegu mebegu commented Jul 7, 2025

Converts Pixie HTTP and DNS logs into STIX 2.1 bundles for security pipeline use.

Inserts processed logs into http_logs/dns_logs and STIX bundles into http_stix/dns_stix tables.

Includes tests to validate ETL flow and STIX transformation correctness.

Supports structured correlation and keeps raw_row for debug tracing.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant