Private GIT

Skip to content
Snippets Groups Projects
Select Git revision
  • ae13835c63eb8127e896c1e2e68177e9e331f0b9
  • master default protected
2 results

.travis.yml

Blame
  • 10-pf.conf 577 B
    # 10-pf.conf
    filter {
      if "pf" in [tags] {
        grok {
          match => [ "message" => "%{SYSLOGTIMESTAMP:syslog_timestamp} %{SYSLOGHOST:syslog_hostname} %{DATA:syslog_program}(?:\[%{POSINT:syslog_pid}\])?: %{GREEDYDATA:syslog_message}",
                     "message" => "%{SYSLOGTIMESTAMP:syslog_timestamp} %{DATA:syslog_program}(?:\[%{POSINT:syslog_pid}\])?: %{GREEDYDATA:syslog_message}" ]
          add_field => [ "received_at", "%{@timestamp}" ]
          add_field => [ "received_from", "%{host}" ]
        }
        mutate {
          rename => { "[message]" => "[event][original]"}
        }
      }
    }