Closed joschi99 closed 9 years ago
The problem is that the log are send from snare in a non standard syslog format. The logs are present on Elasticsearch, but they don't have a correct mapping with the index. For this issue the search in Kibana does'nt work.
Implemented in Osiris2.1 on customer Kaufgut the nxlog -> Logstash -> elastic -> kibana enhancements from Osiris2.2 development.
Solution implemented without problems. Verified by customer.
The customer Kaufgut are not able to find the logs from the Windows Event Log in Kibana. The logs are send to Osiris2.1 and the are on the samba share, but in Elasticsearch the logs are not present.
Systems: