Makes searching logs stored in elasticsearch from the command line easy.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Zane C. B-H feb144fdfe ready to release 0.4.3 3 months ago
..
conf.d add back in postfix geoip processing 3 months ago
patterns.d learned about make dist 3 months ago
README.md ready to release 0.4.3 3 months ago

README.md

Installing

Just dump the stuff in your logstash dir and update the host setting for the IP to listen on as well as set the ports as desired.

Notes

Postfix

These come from whyscream/postfix-grok-patterns.

51-filter-postfix-aggregate.conf is set to off by default as in testing I found it to be buggy. It will often times result in lines being skipped.

This one does have GeoIP processing though.