Files
vs/siem-elastic-template/elastic/fluent-bit.conf
Gašper Dobrovoljc cfac75516b SIEM
2025-11-20 10:42:06 +01:00

25 lines
372 B
Plaintext

[SERVICE]
log_level debug
Parsers_File /fluent-bit/etc/parsers.conf
[INPUT]
Name forward
Listen 0.0.0.0
port 24224
[FILTER]
Name parser
Match **
Key_Name log
Parser http_access_custom
Reserve_Data On
[OUTPUT]
Name es
Match **
Host elastic
Port 9200
Logstash_Format True
tls Off
Suppress_Type_Name On