This commit is contained in:
Kameron Kenny 2024-10-29 14:50:27 -04:00
parent 2745ed2ce0
commit 18dee6e0b7
No known key found for this signature in database
GPG Key ID: E5006629839D2276
3 changed files with 8 additions and 4 deletions

View File

@ -1,7 +1,7 @@
FROM debian:latest
MAINTAINER Kameron Kenny <kkenny379@gmail.com>
LABEL version="20241029144357"
LABEL version="20241029145027"
LABEL description="Debian Based syslog-ng"
RUN apt-get update

View File

@ -8,6 +8,10 @@ parser p_suricata_stats_json {
);
};
rewrite r_set_message {
set("extracted", value("MESSAGE"));
};
destination d_nas81_suricata {
elasticsearch-http(
index("nas81-suricata")
@ -30,7 +34,7 @@ destination d_nas81_suricata_stats {
format-json --scope rfc5424 --scope dot-nv-pairs
--scope nv-pairs
--exclude DATE @timestamp=${ISODATE}
--exclude MESSAGE
MESSAGE="extracted"
)\n"
)
persist-name("d_nas81_suricata_stats")
@ -44,7 +48,7 @@ destination d_file_suricata {
format-json --scope rfc5424 --scope dot-nv-pairs
--scope nv-pairs
--exclude DATE @timestamp=${ISODATE}
--exclude MESSAGE
MESSAGE="extracted"
)\n"
)
);

View File

@ -10,7 +10,7 @@ services:
syslog-ng:
build:
dockerfile: Dockerfile
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:20241029144357
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:20241029145027
container_name: syslog-ng
restart: unless-stopped
networks: