request parsing

This commit is contained in:
Kameron Kenny 2024-06-21 15:23:20 -04:00
parent 77529a3ff3
commit e8e8f2011c
No known key found for this signature in database
GPG Key ID: E5006629839D2276
3 changed files with 12 additions and 2 deletions

View File

@ -1,7 +1,7 @@
FROM debian:latest
MAINTAINER Kameron Kenny <kkenny379@gmail.com>
LABEL version="20240621.2.2"
LABEL version="20240621.2.3"
LABEL description="Debian Based syslog-ng"
RUN apt-get update

View File

@ -26,6 +26,15 @@ parser p_nginx_docker_header {
);
};
parser p_nginx_request_header {
csv-parser(
template("${nginx.request}")
flags(strip-whitespace)
delimiters(" ")
columns("nginx.request.method", "nginx.request.string", "nginx.request.protocol")
);
};
parser p_nginx_client_ip_geoip2_city {
geoip2(
"${nginx.client.ip}",
@ -54,6 +63,7 @@ log {
parser(p_nginx_message);
rewrite(r_nginx_docker_header);
parser(p_nginx_docker_header);
parser(p_nginx_request_header);
parser(p_nginx_client_ip_geoip2_city);
destination(d_nginx_logs);
flags(final);

View File

@ -10,7 +10,7 @@ services:
syslog-ng:
build:
dockerfile: Dockerfile
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:240621.2.2
image: docker-registry1.in.thelinuxpro.net:5000/tlp/syslog-ng:240621.2.3
container_name: syslog-ng
restart: unless-stopped
networks: