-
```
beats: Beats {
Explanation: Beats is a family of "data shippers," distinct services that send a single type of data from machines {
grid-columns: 1
style.stroke-width: 0
Ima…
-
**Elasticsearch:** v6.5.2
**Go Elasticsearch Alerts:** v0.0.22
I've created the following rule:
```
{
"name": "Winlogbeat",
"index": "winlogbeat-*",
"schedule": "@every 1m",
…
-
**Describe the enhancement:**
Please add an "any" or "in" processor conditional.
**Describe a specific use case for the enhancement or feature:**
Currently the processor conditionals for both…
-
install.pp line 27 says
`exec { 'rename winlogbeat folder':`
while line 39 refers to line 27 with
`require => Exec['rename folder'],`
which leads to Puppet saying
Error: Failed to apply catalog: C…
-
## Affected Puppet, Ruby, OS and module versions/distributions
- Puppet: 5.5.8
- Ruby: ?
- Distribution: Windows Server 2016 standaard
- Module version: 1.0.0
## How to reproduce (e.g Pup…
-
Winlogbeat ingest pipelines Security and Sysmon missing geoIP.
- Version 8.7.1
- Discuss Forum URL: https://discuss.elastic.co/t/winlogbeat-ingest-pipelines-missing-geoip/334575
-
The documentation for Winlogbeat modules should show an example of how to configure Logstash to route data to the "routing" pipeline. I have seen a number of questions relating to this.
https://www…
-
Hello Team,
I need some advise to implement a new environments with winlogbait agent (7.12.1) sending event logs to opensearch throught dataprepper.
i used this settings:
logging.to_files: tr…
-
![image](https://github.com/Qihoo360/WatchAD2.0/assets/27048404/91c91a2c-53ec-4a7f-a993-2c6966104892)
安装步骤如下:
git项目后
创建.env文件并配置
```
KAFKAHOST=192.168.11.4
KAFKAADV=PLAINTEXT://192.168.11.4:…
kN6jq updated
4 months ago
-
### Problem description
### Steps to reproduce the problem
1. Graylog v2.3.1+9f2c6ef
2. I've defined Collectors working for winlogbeat and filebeat
3. Winlogbeat gathers Windows Event logs and…
kakaz updated
6 years ago