aws-samples / aws-securityhub-falco-ecs-eks-integration

MIT No Attribution
8 stars 4 forks source link

Falco CloudWatch Log Format #1

Closed lusoal closed 2 years ago

lusoal commented 2 years ago

I'm using fluent-bit as log exporter in my EKS cluster, and the falco logs are not being right parsed by the Lambda.

rajarshidas commented 2 years ago

Hi @lusoal,

In case you are using the Helm chart for falco, then can you please try and set the the jsonOutput property in https://github.com/falcosecurity/charts/blob/master/falco/values.yaml is set to true explicitly? (default is false when cloned)

Thanks.

rajarshidas commented 2 years ago

Hope the previous comment has helped. Closing the issue for now.