This commit is contained in:
Kameron Kenny 2024-10-30 09:09:42 -04:00
parent e1d6adedb8
commit 2156b37b25
No known key found for this signature in database
GPG Key ID: E5006629839D2276
3 changed files with 9 additions and 5 deletions

View File

@ -1,7 +1,7 @@
FROM debian:latest
MAINTAINER Kameron Kenny <kkenny379@gmail.com>
LABEL version="20241030064758"
LABEL version="20241030090942"
LABEL description="Debian Based syslog-ng"
RUN apt-get update

View File

@ -48,6 +48,12 @@ parser p_suricata_src_ip_geoip2_city {
);
};
template t_elastic {
$(format-json --scope rfc5424 --scope dot-nv-pairs
--rekey .* --shift 1 --scope nv-pairs
--exclude DATE @timestamp=${ISODATE})
};
destination d_unifi_fw { file("/var/log/unifi_fw.log"); };
destination d_unifi_suricata {
@ -57,9 +63,7 @@ destination d_unifi_suricata {
user("elastic")
password("forty6and2")
url("http://pi501.in.thelinuxpro.net:9200/_bulk")
template("$(format-json --scope rfc5424 --scope dot-nv-pairs
--rekey .* --shift 1 --scope nv-pairs
--exclude DATE @timestamp=${ISODATE})")
template(t_elastic)
persist-name("d_unifi_suricata")
);
};

View File

@ -10,7 +10,7 @@ services:
syslog-ng:
build:
dockerfile: Dockerfile
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:20241030064758
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:20241030090942
container_name: syslog-ng
restart: unless-stopped
networks: