aws-samples / siem-on-amazon-opensearch-service

A solution for collecting, correlating and visualizing multiple types of logs to help investigate security incidents.
MIT No Attribution
567 stars 184 forks source link

change in NLB / TLS Access Logs #364

Closed nakajiak closed 1 year ago

nakajiak commented 1 year ago

Some fields will be added to NLB, but the regular expressions are too strict and cause errors. Since we don't know the details of the added field, we will modify the regular expression so that it will not cause an error even if it is added.

nakajiak commented 1 year ago

https://docs.aws.amazon.com/elasticloadbalancing/latest/network/load-balancer-access-logs.html#access-log-entry-format