mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 17:22:49 +01:00
Merge pull request #9579 from Security-Onion-Solutions/fix/elasticsearch_templates_so-ids
Remove so-ids since the data stream is now 'logs-suricata-*'
This commit is contained in:
@@ -1075,7 +1075,7 @@ elasticsearch_pillar() {
|
|||||||
" bool:"\
|
" bool:"\
|
||||||
" max_clause_count: 3500"\
|
" max_clause_count: 3500"\
|
||||||
" index_settings:"\ > $elasticsearch_pillar_file
|
" index_settings:"\ > $elasticsearch_pillar_file
|
||||||
for INDEX in aws azure barracuda beats bluecoat cef checkpoint cisco cyberark cylance elasticsearch endgame f5 firewall fortinet gcp google_workspace ids imperva infoblox juniper kibana logstash microsoft misp netflow netscout o365 okta osquery proofpoint radware redis snort snyk sonicwall sophos strelka syslog tomcat zeek zscaler
|
for INDEX in aws azure barracuda beats bluecoat cef checkpoint cisco cyberark cylance elasticsearch endgame f5 firewall fortinet gcp google_workspace imperva infoblox juniper kibana logstash microsoft misp netflow netscout o365 okta osquery proofpoint radware redis snort snyk sonicwall sophos strelka syslog tomcat zeek zscaler
|
||||||
do
|
do
|
||||||
printf '%s\n'\
|
printf '%s\n'\
|
||||||
" so-$INDEX:"\
|
" so-$INDEX:"\
|
||||||
|
|||||||
Reference in New Issue
Block a user