diff --git a/docker/elk/logstash/dist/logstash.conf b/docker/elk/logstash/dist/logstash.conf index df33abb0..46ea5e4e 100644 --- a/docker/elk/logstash/dist/logstash.conf +++ b/docker/elk/logstash/dist/logstash.conf @@ -517,6 +517,15 @@ filter { } } +# Redishoneypot + if [type] == "Redishoneypot" { + date { + match => [ "time", "yyyy-MM-dd HH:mm:ss" ] + remove_field => ["time"] + remove_field => ["timestamp"] + } + } + # NGINX if [type] == "NGINX" { date {