This commit is contained in:
Kameron Kenny 2024-06-19 17:44:06 -04:00
parent b567e5cb07
commit 8b3cf236ad
No known key found for this signature in database
GPG Key ID: E5006629839D2276
3 changed files with 9 additions and 6 deletions

View File

@ -1,7 +1,7 @@
FROM debian:latest
MAINTAINER Kameron Kenny <kkenny379@gmail.com>
LABEL version="20240619.1.8"
LABEL version="20240619.1.9"
LABEL description="Debian Based syslog-ng"
RUN apt-get update

View File

@ -16,18 +16,21 @@ parser p_bind_message {
csv-parser(
flags(strip-whitespace)
delimiters(" ")
columns("docker_header", "bind9.log.date", "bind9.log.time", "bind9.client.header", "bind9.client.object_id", "bind9.client.ip_port", "bind9.client.request", "bind9.query.header", "bind9.query.request", "bind9.query.class", "bind9.query.type", "bind9.query.flags")
columns("docker", "bind9.log.date", "bind9.log.time", "bind9.client.header", "bind9.client.object_id", "bind9.client.ip_port", "bind9.client.request", "bind9.query.header", "bind9.query.request", "bind9.query.class", "bind9.query.type", "bind9.query.flags")
);
};
rewrite r_docker_header {
subst("5000\/tlp\/", "", value("docker_header"));
subst('(:|\/|\[|\])', " ", value("docker_header"));
subst("5000\/tlp\/", "", value("docker"));
subst(":", " ", value("docker"));
subst(":", " ", value("docker"));
subst("\/", " ", value("docker"));
subst('\[', " ", value("docker"));
subst('\]', " ", value("docker"));
};
parser p_docker_header {
csv-parser(
prefix("docker_header")
flags(strip-whitespace)
delimiters(" ")
columns("docker.image.name", "docker.image.version", "docker.container.name", "docker.container.pid")

View File

@ -10,7 +10,7 @@ services:
syslog-ng:
build:
dockerfile: Dockerfile
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:240619.1.8
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:240619.1.9
container_name: syslog-ng
restart: unless-stopped
networks: