go-stash
docker-elk
Our great sponsors
go-stash | docker-elk | |
---|---|---|
5 | 6 | |
752 | 13,218 | |
6.3% | - | |
6.0 | 8.1 | |
about 2 months ago | 5 days ago | |
Go | Shell | |
MIT License | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
go-stash
docker-elk
-
Why does logstash keep adding event data to the ingested logs?
Essentially I've got 2 sets of standard JSON files that I'm trying to ingest into a dockerized ELK stack. The first set was downloaded cloudflare logs, standard line separated JSON data, tried to use Filebeat to ingest and it kept prefixing the JSON data with some dumb ECS event data, basically exactly what this post describes if its easier to see in pics. All of the cloudflare data was nested within the event.original field and would not get mapped. But once I tried to use just logstash directly, it was fine and mapped correctly and no more event data.
-
problem into logstash data ingestion
i use the elk into the docker,using the docker-elk compose , the logstash logs shows that it is reciving the logs:
-
I have OSSEC installed and I want software to monitor the logs. I am not sure the best way to do this. [homelab]
It depends on what you want to get out of visualizing your logs. I use the combination of Elastic + Logstash + Kibana (ELK Stack) on docker to visualize things like
- Thanks for all YOUR help, WiFi is finally working flawlessly in our full stack Fortinet network.
-
Logwatch alternative?
I did end up kinda Frankensteining this project and docker-elk. Basically took out the entire etc/pfelk directory from pfelk project and added the pipelines/dashboard/groks etc to docker-elk. This works really will for me since I have several other devices that arenโt OPNSense that I wanted ingested to ELK.
- Anyone using Security Onion with a Fortinet ecosystem?
What are some alternatives?
pfelk - pfSense/OPNsense + Elastic Stack
imdb-trakt-sync - Sync IMDb to Trakt
praeco - Elasticsearch alerting made simple.
ansible-unifi
annepro2-qmk-docker - Docker image for compiling and flashing OpenAnnePro firmware.
HELK - The Hunting ELK
ethereum2-docker-compose - Run different kind of Ethereum 2 staking nodes with monitoring tools and own Ethereum 1 node out of the box!
LedFxDocker - A Docker Container for LedFx.
selfhosted - Selfhosted services docker-compose manifests
elastdocker - ๐ณ Elastic Stack (ELK) on Docker, preconfigured Out of the Box. Enables Logging, Metrics, APM, Alerting, ML, and SIEM features. Up with a Single Command. Now Supports v8.0!
o365beat - Elastic Beat for fetching and shipping Office 365 audit events
drawio-export - Export Draw.io diagrams using docker