If you want the quickest and easiest way to try out #SecurityOnion, just follow the screenshots below to install an Import node and then optionally enable the Analyst Workstation. This can be done in a minimal VM with only 4GB RAM!
Start Setup and choose Import node:
Configure networking:
Finalize networking:
Create username and password:
Configure IP/hostname/other access and NTP:
Configure firewall, confirm all options, and complete Setup:
After rebooting and logging in, you can optionally run so-analyst-install to install full analyst desktop environment: