mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 09:12:45 +01:00
Filebeat Module - Move logging to the top
This commit is contained in:
@@ -6,6 +6,59 @@
|
|||||||
|
|
||||||
name: {{ HOSTNAME }}
|
name: {{ HOSTNAME }}
|
||||||
|
|
||||||
|
#================================ Logging ======================================
|
||||||
|
# There are four options for the log output: file, stderr, syslog, eventlog
|
||||||
|
# The file output is the default.
|
||||||
|
|
||||||
|
# Sets log level. The default log level is info.
|
||||||
|
# Available log levels are: error, warning, info, debug
|
||||||
|
logging.level: error
|
||||||
|
|
||||||
|
# Enable debug output for selected components. To enable all selectors use ["*"]
|
||||||
|
# Other available selectors are "beat", "publish", "service"
|
||||||
|
# Multiple selectors can be chained.
|
||||||
|
#logging.selectors: [ ]
|
||||||
|
|
||||||
|
# Send all logging output to syslog. The default is false.
|
||||||
|
#logging.to_syslog: false
|
||||||
|
|
||||||
|
# Send all logging output to Windows Event Logs. The default is false.
|
||||||
|
#logging.to_eventlog: false
|
||||||
|
|
||||||
|
# If enabled, filebeat periodically logs its internal metrics that have changed
|
||||||
|
# in the last period. For each metric that changed, the delta from the value at
|
||||||
|
# the beginning of the period is logged. Also, the total values for
|
||||||
|
# all non-zero internal metrics are logged on shutdown. The default is true.
|
||||||
|
#logging.metrics.enabled: true
|
||||||
|
|
||||||
|
# The period after which to log the internal metrics. The default is 30s.
|
||||||
|
#logging.metrics.period: 30s
|
||||||
|
|
||||||
|
# Logging to rotating files. Set logging.to_files to false to disable logging to
|
||||||
|
# files.
|
||||||
|
logging.to_files: true
|
||||||
|
logging.files:
|
||||||
|
# Configure the path where the logs are written. The default is the logs directory
|
||||||
|
# under the home path (the binary location).
|
||||||
|
path: /var/log/filebeat
|
||||||
|
|
||||||
|
# The name of the files where the logs are written to.
|
||||||
|
name: filebeat.log
|
||||||
|
|
||||||
|
# Configure log file size limit. If limit is reached, log file will be
|
||||||
|
# automatically rotated
|
||||||
|
rotateeverybytes: 10485760 # = 10MB
|
||||||
|
|
||||||
|
# Number of rotated log files to keep. Oldest files will be deleted first.
|
||||||
|
keepfiles: 7
|
||||||
|
|
||||||
|
# The permissions mask to apply when rotating log files. The default value is 0600.
|
||||||
|
# Must be a valid Unix-style file permissions mask expressed in octal notation.
|
||||||
|
#permissions: 0600
|
||||||
|
|
||||||
|
# Set to true to log messages in json format.
|
||||||
|
#logging.json: false
|
||||||
|
|
||||||
#========================== Modules configuration ============================
|
#========================== Modules configuration ============================
|
||||||
filebeat.modules:
|
filebeat.modules:
|
||||||
#=========================== Filebeat prospectors =============================
|
#=========================== Filebeat prospectors =============================
|
||||||
@@ -181,58 +234,6 @@ output.logstash:
|
|||||||
|
|
||||||
|
|
||||||
|
|
||||||
#================================ Logging ======================================
|
|
||||||
# There are four options for the log output: file, stderr, syslog, eventlog
|
|
||||||
# The file output is the default.
|
|
||||||
|
|
||||||
# Sets log level. The default log level is info.
|
|
||||||
# Available log levels are: error, warning, info, debug
|
|
||||||
logging.level: error
|
|
||||||
|
|
||||||
# Enable debug output for selected components. To enable all selectors use ["*"]
|
|
||||||
# Other available selectors are "beat", "publish", "service"
|
|
||||||
# Multiple selectors can be chained.
|
|
||||||
#logging.selectors: [ ]
|
|
||||||
|
|
||||||
# Send all logging output to syslog. The default is false.
|
|
||||||
#logging.to_syslog: false
|
|
||||||
|
|
||||||
# Send all logging output to Windows Event Logs. The default is false.
|
|
||||||
#logging.to_eventlog: false
|
|
||||||
|
|
||||||
# If enabled, filebeat periodically logs its internal metrics that have changed
|
|
||||||
# in the last period. For each metric that changed, the delta from the value at
|
|
||||||
# the beginning of the period is logged. Also, the total values for
|
|
||||||
# all non-zero internal metrics are logged on shutdown. The default is true.
|
|
||||||
#logging.metrics.enabled: true
|
|
||||||
|
|
||||||
# The period after which to log the internal metrics. The default is 30s.
|
|
||||||
#logging.metrics.period: 30s
|
|
||||||
|
|
||||||
# Logging to rotating files. Set logging.to_files to false to disable logging to
|
|
||||||
# files.
|
|
||||||
logging.to_files: true
|
|
||||||
logging.files:
|
|
||||||
# Configure the path where the logs are written. The default is the logs directory
|
|
||||||
# under the home path (the binary location).
|
|
||||||
path: /var/log/filebeat
|
|
||||||
|
|
||||||
# The name of the files where the logs are written to.
|
|
||||||
name: filebeat.log
|
|
||||||
|
|
||||||
# Configure log file size limit. If limit is reached, log file will be
|
|
||||||
# automatically rotated
|
|
||||||
rotateeverybytes: 10485760 # = 10MB
|
|
||||||
|
|
||||||
# Number of rotated log files to keep. Oldest files will be deleted first.
|
|
||||||
keepfiles: 7
|
|
||||||
|
|
||||||
# The permissions mask to apply when rotating log files. The default value is 0600.
|
|
||||||
# Must be a valid Unix-style file permissions mask expressed in octal notation.
|
|
||||||
#permissions: 0600
|
|
||||||
|
|
||||||
# Set to true to log messages in json format.
|
|
||||||
#logging.json: false
|
|
||||||
|
|
||||||
|
|
||||||
#============================== Xpack Monitoring =====================================
|
#============================== Xpack Monitoring =====================================
|
||||||
|
|||||||
Reference in New Issue
Block a user