Private GIT

Skip to content
Snippets Groups Projects
Unverified Commit 06fb3069 authored by Andrew's avatar Andrew Committed by GitHub
Browse files

Create 15-others.conf

parent 09baee99
Branches
Tags
No related merge requests found
# 15-others.conf
filter {
if "pf" in [tags] {
if [application] =~ /^dhcpd$/ {
mutate {
add_tag => [ "dhcpd" ]
}
grok {
patterns_dir => ["/etc/logstash/conf.d/patterns"]
match => [ "message", "%{DHCPD}"]
}
}
if [application] =~ /^charon$/ {
mutate {
add_tag => [ "ipsec" ]
}
}
if [application] =~ /^barnyard2/ {
mutate {
add_tag => [ "barnyard2" ]
}
}
if [application] =~ /^openvpn/ {
mutate {
add_tag => [ "openvpn" ]
}
grok {
patterns_dir => ["/etc/logstash/conf.d/patterns"]
match => [ "message", "%{OPENVPN}"]
}
}
if [application] =~ /^ntpd/ {
mutate {
add_tag => [ "ntpd" ]
}
}
if [application] =~ /^php-fpm/ {
mutate {
add_tag => [ "web_portal" ]
}
grok {
patterns_dir => ["/etc/logstash/conf.d/patterns"]
match => [ "message", "%{PF_APP}%{PF_APP_DATA}"]
}
mutate {
lowercase => [ 'pf_ACTION' ]
}
}
if [application] =~ /^apinger/ {
mutate {
add_tag => [ "apinger" ]
}
}
}
}
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment