devils_haircut wrote: » I'm feeding all FirePOWER logs into a Graylog server, and I designed some GROK filters to make more meaningful dashboards out of the data. My next step will be to implement some sort of Netflow monitoring for even deeper insight into my network.