diff --git a/elk-hole.zip b/elk-hole.zip new file mode 100644 index 0000000000000000000000000000000000000000..3babcabee70e9b2aa506e97336ec9f953ba896de Binary files /dev/null and b/elk-hole.zip differ diff --git a/etc/filebeat/filebeat.yml b/etc/filebeat/filebeat.yml index d0200e1bd86f1db4b6ceeae133798666b6bb4547..cb96ccd8e3b2eebe31e824519431539edfcc0bfb 100644 --- a/etc/filebeat/filebeat.yml +++ b/etc/filebeat/filebeat.yml @@ -17,5 +17,4 @@ shipper: logging: files: - rotateeverybytes: 10485760 - + rotateeverybytes: 10485760 diff --git a/logstash/conf.d/20-dns-syslog.conf b/logstash/conf.d/20-dns-syslog.conf index e42155a99256e0002e0b802e68ffdc2c514a363c..af2247cf48f278d0cb0ffa428e8b9387182510be 100644 --- a/logstash/conf.d/20-dns-syslog.conf +++ b/logstash/conf.d/20-dns-syslog.conf @@ -129,8 +129,6 @@ filter { } } - reverse => [ "source_fqdn" ] action => "replace" add_tag => [ "dns_lookup" ] - mutate { add_field => { "[source_fqdn]" => "%{source_host}"