gravwell / kits

A collection of open source Gravwell kits
BSD 2-Clause "Simplified" License
3 stars 15 forks source link

syslog kit: some additional actionables and templates for severity #169

Open kris-watts-gravwell opened 2 months ago

kris-watts-gravwell commented 2 months ago

What is the enhancement to be made?

Add some templates that allow for filtering on severity

Example: tag=$SYSLOG syslog Severity<=%%SEV%%

Why should we make this change? (Business justification? What problem is the feature trying to solve?)

Useful and call out from discord user