Merge pull request #14531 from Security-Onion-Solutions/2.4/saltlogs

Extract log level and drop INFO level
This commit is contained in:
Josh Brower
2025-04-11 07:47:25 -04:00
committed by GitHub

View File

@@ -31,7 +31,8 @@
],
"tags": [
"so-grid-node"
]
],
"processors": "- if:\n contains:\n message: \"salt-minion\"\n then: \n - dissect:\n tokenizer: \"%{} %{} %{} %{} %{} %{}: [%{log.level}] %{*}\"\n field: \"message\"\n trim_values: \"all\"\n target_prefix: \"\"\n - drop_event:\n when:\n equals:\n log.level: \"INFO\"",
}
}
}