diff --git a/salt/elasticsearch/files/ingest/zeek.stun b/salt/elasticsearch/files/ingest/zeek.stun index f5e7d1baf..48f648d74 100644 --- a/salt/elasticsearch/files/ingest/zeek.stun +++ b/salt/elasticsearch/files/ingest/zeek.stun @@ -7,7 +7,7 @@ { "rename": { "field": "message2.is_orig", "target_field": "stun.is_orig", "ignore_missing": true } }, { "rename": { "field": "message2.trans_id", "target_field": "stun.id", "ignore_missing": true } }, { "rename": { "field": "message2.method", "target_field": "stun.method", "ignore_missing": true } }, - { "rename": { "field": "message2.class", "target_field": "stun.clas", "ignore_missing": true } }, + { "rename": { "field": "message2.class", "target_field": "stun.class", "ignore_missing": true } }, { "rename": { "field": "message2.attr_types", "target_field": "stun.attribute.types", "ignore_missing": true } }, { "rename": { "field": "message2.attr_vals", "target_field": "stun.attribute.values", "ignore_missing": true } }, { "pipeline": { "name": "zeek.common" } }