seanthegeek / graylog-fortigate-syslog-pipeline

Converts FortiGate syslog fields to the correct data type and removes unnecessary fields
Apache License 2.0
4 stars 3 forks source link

Content Pack install failed #1

Closed ddistler closed 8 months ago

ddistler commented 8 months ago

When attempting to install on a new Graylog installation I get the following error:

image

I had simlar issues with FortiGate syslog content pack. Was able to install Rev 14, Rev 20, then Rev 25. Tried a similar approach for the pipeline content pack and was unsuccessful. I do have the fortigate index setup prior to installation.

seanthegeek commented 8 months ago

1.0.5-rev7 will install properly. Before attempting to install it, delete any pipeline rules and pipelines that were created by previous attempts to install it. These will exist even if the content pack failed to fully install. The entire content pack installation will fail if a pipeline rule or pipeline with same name already exists.