alias454 / graylog-fortinet-content-pack

Fortigate UTM content pack contains extractors, a stream, a dashboard displaying the last 24 hours of activity, and a syslog tcp input.
Apache License 2.0
6 stars 6 forks source link

Unable to install in Graylog 2.2.2 #2

Closed oouups closed 7 years ago

oouups commented 7 years ago

Import Content Pack = Error importing content pack, please ensure it is a valid JSON file. Check your Graylog logs for more information.

alias454 commented 7 years ago

Can you try a previous version of the content_pack.json?

The important bit is this line "default_stream": false

https://github.com/alias454/graylog-fortinet-content-pack/tree/a343d1bd0fc63ac83d715209e66e1d416dab6450

oouups commented 7 years ago

Hello

Sorry but dosent help

Removinge the line default_stream doesnt help

Where i found a older version ? Why you not fix it ?

Thank you

Von: alias454 [mailto:notifications@github.com] Gesendet: Samstag, 25. März 2017 01:10 An: alias454/graylog-fortinet-content-pack Cc: oouups; Author Betreff: Re: [alias454/graylog-fortinet-content-pack] Unable to install in Graylog 2.2.2 (#2)

Closed #2https://github.com/alias454/graylog-fortinet-content-pack/issues/2.

— You are receiving this because you authored the thread. Reply to this email directly, view it on GitHubhttps://github.com/alias454/graylog-fortinet-content-pack/issues/2#event-1015157901, or mute the threadhttps://github.com/notifications/unsubscribe-auth/AZWVoi5lrn3OPRCbmn5Wb8z32MLNnehqks5rpFtegaJpZM4MkO39.

alias454 commented 7 years ago

@oouups The link was to an older version of the content_pack. more specifically https://github.com/alias454/graylog-fortinet-content-pack/blob/a343d1bd0fc63ac83d715209e66e1d416dab6450/content_pack.json

i will spin up a 2.2 instance and verify the fix . The problem is I can fix it for the latest version then will have people have troubles with older versions of Graylog. I suppose I could add both versions to the git repo to make it easier. Regards,

oouups commented 7 years ago

Hello and many thx for your reply..

Recomend to publish 2 versions. Because the link to older version i used dosent work also. Same error msg.

PS: removing the line (1197) with content „default_stream“ also not work.

Greetings from switzerland And many thx for your great job

Von: alias454 [mailto:notifications@github.com] Gesendet: Montag, 27. März 2017 17:46 An: alias454/graylog-fortinet-content-pack Cc: oouups; Mention Betreff: Re: [alias454/graylog-fortinet-content-pack] Unable to install in Graylog 2.2.2 (#2)

@oouupshttps://github.com/oouups The link was to an older version of the content_pack. more specifically https://github.com/alias454/graylog-fortinet-content-pack/blob/a343d1bd0fc63ac83d715209e66e1d416dab6450/content_pack.json

i will spin up a 2.2 instance and verify the fix . The problem is I can fix it for the latest version then will have people have troubles with older versions of Graylog. I suppose I could add both versions to the git repo to make it easier. Regards,

— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHubhttps://github.com/alias454/graylog-fortinet-content-pack/issues/2#issuecomment-289494832, or mute the threadhttps://github.com/notifications/unsubscribe-auth/AZWVotLFKzmGp373YJw5YsiyTGCkS4CMks5rp9mwgaJpZM4MkO39.

alias454 commented 7 years ago

@oouups I downloaded the 2.2.2 ova and was not able to reproduce this when importing the content_pack.json file from the latest.

forti_utm

Try to copy and past the raw contents into a file named content_pack.json on your computer https://raw.githubusercontent.com/alias454/graylog-fortinet-content-pack/master/content_pack.json