From 78915f900b8aad6ebb9e4038ec1f4b0ad916add6 Mon Sep 17 00:00:00 2001 From: weslambert Date: Wed, 30 Aug 2023 15:37:30 -0400 Subject: [PATCH 1/2] Add fortigate package --- salt/elasticfleet/defaults.yaml | 1 + 1 file changed, 1 insertion(+) diff --git a/salt/elasticfleet/defaults.yaml b/salt/elasticfleet/defaults.yaml index 55e70113f..979e795f7 100644 --- a/salt/elasticfleet/defaults.yaml +++ b/salt/elasticfleet/defaults.yaml @@ -41,6 +41,7 @@ elasticfleet: - fleet_server - fim - fortinet + - fortinet_fortigate - gcp - github - google_workspace From d090852895fb899fb9d029c57ae2c54e879a9722 Mon Sep 17 00:00:00 2001 From: weslambert Date: Wed, 30 Aug 2023 15:40:40 -0400 Subject: [PATCH 2/2] Correct fortigate template name --- salt/elasticsearch/defaults.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/salt/elasticsearch/defaults.yaml b/salt/elasticsearch/defaults.yaml index 33362825f..cc2f5e1cd 100644 --- a/salt/elasticsearch/defaults.yaml +++ b/salt/elasticsearch/defaults.yaml @@ -970,18 +970,18 @@ elasticsearch: data_stream: hidden: false allow_custom_routing: false - so-logs-fortinet_x_fortigate: + so-logs-fortinet_fortigate_x_log: index_sorting: False index_template: index_patterns: - - "logs-fortinet.fortigate-*" + - "logs-fortinet_fortigate.log-*" template: settings: index: number_of_replicas: 0 composed_of: - - "logs-fortinet.fortigate@package" - - "logs-fortinet.fortigate@custom" + - "logs-fortinet_fortigate.log@package" + - "logs-fortinet_fortigate.log@custom" - "so-fleet_globals-1" - "so-fleet_agent_id_verification-1" priority: 501