Merge pull request #272 from Security-Onion-Solutions/TOoSmOotH-patch-1

Update filebeat.yml
This commit is contained in:
weslambert
2020-01-28 22:20:58 -05:00
committed by GitHub

View File

@@ -72,7 +72,7 @@ filebeat.prospectors:
{%- for LOGNAME in salt['pillar.get']('brologs:enabled', '') %}
- type: log
paths:
- /nsm/bro/logs/current/{{ LOGNAME }}.log
- /nsm/zeek/logs/current/{{ LOGNAME }}.log
fields:
type: bro_{{ LOGNAME }}
fields_under_root: true