Files
securityonion/salt/logstash/pipelines/config/so/9000_output_zeek.conf.jinja
T
2022-10-11 11:57:15 -04:00

14 lines
325 B
Django/Jinja

output {
if [module] =~ "zeek" and "import" not in [tags] {
elasticsearch {
pipeline => "%{module}.%{dataset}"
hosts => "{{ GLOBALS.manager }}"
user => "{{ ES_USER }}"
password => "{{ ES_PASS }}"
index => "so-zeek"
ssl => true
ssl_certificate_verification => false
}
}
}