-
Many thanks for ur contributions, it gives us great features, we were using since a year ago
A week ago we are no longer getting alerts from Suricata, reviewing the eve logs in our PFSense device w…
-
On the Firewall Dashboard for pfSense at the right up box instead of a graphic I have Could not locate that index-pattern-field (id: source.geo.country_name.keyword).
I refresh the log a couple of …
-
Hello,
Apologies if this is the incorrect format or my own stupidity causing the issue but I'm new to Elastic Stack.
I'm getting some issues when trying to import the regular dashboard to use, but…
-
Hi, Im trying to workaround the message size limitation issue described in https://github.com/3ilson/pfelk/issues/111 by sending suricata logs via filebeat
So Im avoiding local Syslog registering f…
-
![image](https://user-images.githubusercontent.com/53452334/80144240-727fc000-85ae-11ea-8e8d-e09093b02de4.png)
VS
![image](https://user-images.githubusercontent.com/53452334/80144439-c5f20e00-85ae…
-
192.168.0.11 is the ELK Server
We dont use 8.8.8.8 in any shape or form in the office
Still I can see lots of queries to 8.8.8.8 from the ELK Server.
This behavior is observed in both local an…
-
**Describe the bug**
pfSense Suricata JSON logs do not properly filter. However, filtering works if not in the JSON format. Seeking help for configuring pfSense+Suricata+JSON filtering.
**To Rep…
-
**Describe the bug**
in Kibama Saved Objects - import
select the new file : v4.2 (042020) Suricata Dashboard.ndjson.ndjson 121KB 23rd april 2020
Kibana stalls for 8 minutes, throws the followin…
-
The directions are a bit unclear as to the fact that the Ansible install will fail at the
install maxmind
download GeoIP databases
setup a cron job for automated updates
steps.
Ass…
-
**Describe the bug**
Data does not flow to elasticksearch.
**To Reproduce**
Configured by default. Changed only ip Pfsence and maxmind added in docker. In logs logstash See error
[ERROR] 2020-06…