mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2026-01-28 19:03:32 +01:00
Merge branch 'dev' into foxtrot
This commit is contained in:
@@ -3,6 +3,8 @@ input {
|
||||
id => "endgame_data"
|
||||
port => 3765
|
||||
codec => es_bulk
|
||||
request_headers_target_field => client_headers
|
||||
remote_host_target_field => client_host
|
||||
ssl => true
|
||||
ssl_certificate_authorities => ["/usr/share/filebeat/ca.crt"]
|
||||
ssl_certificate => "/usr/share/logstash/filebeat.crt"
|
||||
|
||||
@@ -8,7 +8,7 @@
|
||||
filter {
|
||||
if [event][module] =~ "endgame" {
|
||||
mutate {
|
||||
remove_field => ["headers", "host"]
|
||||
remove_field => ["client_headers", "client_host"]
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
@@ -117,8 +117,6 @@ so-steno:
|
||||
- start: {{ STENOOPTIONS.start }}
|
||||
- network_mode: host
|
||||
- privileged: True
|
||||
- port_bindings:
|
||||
- 127.0.0.1:1234:1234
|
||||
- binds:
|
||||
- /opt/so/conf/steno/certs:/etc/stenographer/certs:rw
|
||||
- /opt/so/conf/steno/config:/etc/stenographer/config:rw
|
||||
|
||||
Reference in New Issue
Block a user