mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 09:12:45 +01:00
109 lines
2.6 KiB
YAML
109 lines
2.6 KiB
YAML
curator:
|
|
enabled:
|
|
description: You can enable or disable Curator.
|
|
helpLink: curator.html
|
|
elasticsearch:
|
|
index_settings:
|
|
logs-import-so:
|
|
close: &close
|
|
description: Age, in days, when Curator closes the index.
|
|
helpLink: curator.html
|
|
forcedType: int
|
|
delete: &delete
|
|
description: Age, in days, when Curator deletes the index.
|
|
helpLink: curator.html
|
|
forcedType: int
|
|
logs-strelka-so:
|
|
close: *close
|
|
delete: *delete
|
|
logs-suricata-so:
|
|
close: *close
|
|
delete: *delete
|
|
logs-syslog-so:
|
|
close: *close
|
|
delete: *delete
|
|
logs-zeek-so:
|
|
close: *close
|
|
delete: *delete
|
|
logs-elastic_agent-metricbeat-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-elastic_agent-osquerybeat-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-elastic_agent-fleet_server-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-elastic_agent-filebeat-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-elastic_agent-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-system-auth-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-system-application-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-system-security-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-system-system-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-system-syslog-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-windows-powershell-default:
|
|
close: *close
|
|
delete: *delete
|
|
logs-windows-sysmon_operational-default:
|
|
close: *close
|
|
delete: *delete
|
|
so-beats:
|
|
close: *close
|
|
delete: *delete
|
|
so-elasticsearch:
|
|
close: *close
|
|
delete: *delete
|
|
so-firewall:
|
|
close: *close
|
|
delete: *delete
|
|
so-ids:
|
|
close: *close
|
|
delete: *delete
|
|
so-import:
|
|
close: *close
|
|
delete: *delete
|
|
so-kratos:
|
|
close: *close
|
|
delete: *delete
|
|
so-kibana:
|
|
close: *close
|
|
delete: *delete
|
|
so-logstash:
|
|
close: *close
|
|
delete: *delete
|
|
so-netflow:
|
|
close: *close
|
|
delete: *delete
|
|
so-osquery:
|
|
close: *close
|
|
delete: *delete
|
|
so-ossec:
|
|
close: *close
|
|
delete: *delete
|
|
so-redis:
|
|
close: *close
|
|
delete: *delete
|
|
so-strelka:
|
|
close: *close
|
|
delete: *delete
|
|
so-syslog:
|
|
close: *close
|
|
delete: *delete
|
|
so-zeek:
|
|
close: *close
|
|
delete: *delete
|