robcowart / synesis_lite_suricata

Suricata IDS/IPS log analytics using the Elastic Stack.
Other
233 stars 92 forks source link

Logstash does'nt send the output to Elasticsearch / synesis lite 1.0.1 #31

Closed ainayves closed 3 years ago

ainayves commented 3 years ago

image

Here is tcpdump output from the interface of Elastic , I do not see the ip of logsatsh

robcowart commented 3 years ago

You might want to take a look at this video... https://www.youtube.com/watch?v=YA2tGrBQ4v0

If you still have problems you will need to provide much more information. What version of the Elastic Stack components are you using? What is in the logs of both Logstash and Elasticsearch? And please don't provide screenshots of text, as it is very hard to follow and not searchable. You should paste the text into the issue and use format it as code.

ainayves commented 3 years ago

You might want to take a look at this video... https://www.youtube.com/watch?v=YA2tGrBQ4v0

If you still have problems you will need to provide much more information. What version of the Elastic Stack components are you using? What is in the logs of both Logstash and Elasticsearch? And please don't provide screenshots of text, as it is very hard to follow and not searchable. You should paste the text into the issue and use format it as code.

Hello,, Thank you for your response Sir , I already watched this video at the beginning, I wrote another issue in #32