Files
securityonion/salt/logstash/pipelines/config/so/9800_output_logscan.conf.jinja
T
2022-10-11 11:57:15 -04:00

15 lines
328 B
Django/Jinja

output {
if [module] =~ "logscan" {
elasticsearch {
id => "logscan_pipeline"
pipeline => "logscan.alert"
hosts => "{{ GLOBALS.manager }}"
user => "{{ ES_USER }}"
password => "{{ ES_PASS }}"
index => "so-logscan"
ssl => true
ssl_certificate_verification => false
}
}
}