This commit is contained in:
Kameron Kenny 2024-10-28 13:36:05 -04:00
parent 5629c89cd0
commit 2cbc91e28c
No known key found for this signature in database
GPG Key ID: E5006629839D2276
3 changed files with 5 additions and 9 deletions

View File

@ -1,7 +1,7 @@
FROM debian:latest FROM debian:latest
MAINTAINER Kameron Kenny <kkenny379@gmail.com> MAINTAINER Kameron Kenny <kkenny379@gmail.com>
LABEL version="20241028.1.4" LABEL version="20241028.1.5"
LABEL description="Debian Based syslog-ng" LABEL description="Debian Based syslog-ng"
RUN apt-get update RUN apt-get update

View File

@ -23,14 +23,12 @@ destination d_nas81_suricata {
); );
}; };
destination d_nas81 { destination d_nas81_suricata_stats {
elasticsearch-http( elasticsearch-http(
index("nas81") index("nas81")
type("") type("")
url("http://pi501.in.thelinuxpro.net:9200/_bulk") url("http://pi501.in.thelinuxpro.net:9200/_bulk")
template("$(format-json --scope rfc5424 --scope dot-nv-pairs template("$(format-json --scope rfc5424)
--rekey .* --shift 1 --scope nv-pairs
--exclude DATE @timestamp=${ISODATE})")
persist-name("d_nas81") persist-name("d_nas81")
); );
}; };
@ -43,9 +41,7 @@ log {
filter(f_suricata); filter(f_suricata);
filter(f_nas81_suricata_stats); filter(f_nas81_suricata_stats);
parser(p_suricata_stats_json); parser(p_suricata_stats_json);
parser(p_suricata_src_ip_geoip2_city); destination(d_nas81_suricata_stats);
parser(p_suricata_dest_ip_geoip2_city);
destination(d_nas81_suricata);
flags(final); flags(final);
}; };

View File

@ -10,7 +10,7 @@ services:
syslog-ng: syslog-ng:
build: build:
dockerfile: Dockerfile dockerfile: Dockerfile
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:241028.1.4 image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:241028.1.5
container_name: syslog-ng container_name: syslog-ng
restart: unless-stopped restart: unless-stopped
networks: networks: