A year ago I published a diary on rockNSM and its capabilities. If you are a fan of rockNSM, the latest GA release was made available on 23 Aug 2018. This latest release has the latest version of Elastic Stack, Elastic Basic, Kibana with options to capture other types of data. It has a new built-in web interface (Docket) with an API to retrieve packets captured by stenographer, as well as the latest packages to collect metadata with Bro, IDS with Suricata, etc.
Article Link: https://isc.sans.edu/diary/rss/24182