diff --git a/Dockerfile b/Dockerfile index 78f915b..f0e4f25 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,7 +1,7 @@ FROM debian:latest MAINTAINER Kameron Kenny -LABEL version="20241029151332" +LABEL version="20241029151620" LABEL description="Debian Based syslog-ng" RUN apt-get update diff --git a/config/syslog-ng.conf.d/nas81.conf b/config/syslog-ng.conf.d/nas81.conf index 792e330..801703c 100644 --- a/config/syslog-ng.conf.d/nas81.conf +++ b/config/syslog-ng.conf.d/nas81.conf @@ -31,8 +31,9 @@ destination d_nas81_suricata_stats { url("http://pi501.in.thelinuxpro.net:9200/_bulk") template( "$( - format-json --scope rfc5424 --scope dot-nv-pairs + format-json --scope rfc5424 --exclude DATE @timestamp=${ISODATE} + --scope nv-pairs MESSAGE='extracted' )\n" ) @@ -44,8 +45,9 @@ destination d_file_suricata_stats { file("/var/log/suricata_stats.log" template( "$( - format-json --scope rfc5424 --scope dot-nv-pairs + format-json --scope rfc5424 --exclude DATE @timestamp=${ISODATE} + --scope nv-pairs MESSAGE='extracted' )\n" ) diff --git a/docker-compose.yml b/docker-compose.yml index 4593536..cc7ee11 100644 --- a/docker-compose.yml +++ b/docker-compose.yml @@ -10,7 +10,7 @@ services: syslog-ng: build: dockerfile: Dockerfile - image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:20241029151332 + image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:20241029151620 container_name: syslog-ng restart: unless-stopped networks: