Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #========================= Filebeat global options ============================
- filebeat.config:
- modules:
- enabled: false
- path: /var/db/beats/filebeat/modules.d/*.yml
- #------------------------- File prospectors --------------------------------
- filebeat.prospectors:
- - input_type: log
- paths:
- - /var/log/suricata/*/eve.json*
- fields_under_root: true
- fields:
- type: "suricataIDPS"
- tags: ["SuricataIDPS","JSON"]
- #----------------------------- Logstash output --------------------------------
- output.logstash:
- hosts: ["192.168.1.123:5044"]
- #---------------------------- filebeat logging -------------------------------
- logging.to_files: true
- logging.files:
- path: /var/log/filebeat
- name: filebeat.log
- keepfiles: 7
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement