MirrorNest
← Todas las guías

MISP

MISP is a threat intelligence platform for storing, correlating, and sharing indicators of compromise between organizations and analysts, distributed as an official production-ready Docker Compose stack.

Sistema: Any Docker hostSecurityThreat IntelligenceSitio oficial ↗Documentación oficial ↗
Esta guía se elaboró a partir de la documentación oficial de MISP, enlazada arriba — verifica siempre ahí los nombres exactos de paquetes/versiones antes de ejecutar estos comandos en un servidor de producción, ya que las versiones de la distribución y del proyecto cambian con el tiempo.
  1. 1Clone the official misp-docker repository

    git clone https://github.com/MISP/misp-docker.git
    cd misp-docker
  2. 2Prepare the environment file

    cp template.env .env

    Customize .env (base URL, admin email, etc.) before starting the stack.

  3. 3Pull and start the stack

    docker compose pull
    docker compose up -d

    Requires Docker Engine 25+ (or Podman 4.9+) and Compose plugin 2.17+.

  4. 4Log in and change the default password immediately

    The stack ships with a well-known default admin account that must be rotated right away.

    Open http://localhost — default login is [email protected] / admin.