Commit Graph

80 Commits

Author SHA1 Message Date
1d0aad3b34 tweak logstash.conf for citrixhoneypot 2020-01-16 18:04:29 +00:00
a6ed6613a5 prepare citrixhoneypot for ELK integration 2020-01-16 15:13:58 +00:00
bf39c0f5b2 bump elastic stack to 6.7.2 2019-08-15 15:38:12 +00:00
bbf226aeda remove glastopf 2019-06-03 19:57:50 +00:00
a7e553efe9 still working on fatt 2019-06-03 16:13:58 +00:00
f870c8e885 continue working on fatt 2019-06-03 10:22:07 +00:00
c09547e3a4 adjust group and permissions for /data 2019-05-08 11:16:48 +00:00
e8d8773863 tweaking 2019-03-19 11:08:23 +00:00
6f30322ad5 prepare for honeypy 2019-03-10 18:15:59 +00:00
e1fe025dd7 remove fallback 2019-02-28 21:03:07 +00:00
728607a2da bump elk stack to 6.6.1 2019-02-28 14:52:42 +00:00
c7873554c3 prepare for adbhoney 2018-12-05 16:59:08 +00:00
ed921d31f8 cleaning up 2018-11-19 12:34:07 +00:00
53383f7313 rename fields 2018-11-19 11:33:00 +00:00
5754c79086 clean up log sources 2018-11-13 15:46:57 +00:00
992d453b9a medpot tweaking 2018-09-11 07:59:14 +00:00
f0f6981f34 add medpot to ELK 2018-09-10 01:15:21 +00:00
79bb324a4a rename conpot fields to match index pattern 2018-08-28 13:30:58 +02:00
d19d3823f6 prevent status field from being indexed as string 2018-08-28 12:41:11 +02:00
59c8c5b34c bump ELK to 6.4.0
YES! Index patterns can finally exported through Kibana! A joy to the ELK world :-)
2018-08-24 17:07:00 +00:00
1dd57d8022 NGINX logs are in /data/nginx/log/
Syslog should be viewed in Cockpit now, storing events of Syslog in ELK
is ineffective
2018-06-24 03:24:51 +02:00
37424eb541 cleanup 2018-05-29 12:06:20 +00:00
72313a600d include tanner patterns, tweaking 2018-05-29 12:05:07 +00:00
428ee43c18 prepare for tanner 2018-05-28 21:46:51 +00:00
3bea740632 tweaking 2018-05-09 16:43:37 +00:00
40244d3bcb ciscoasa, tweaking, hardening, logging, logstash 2018-04-27 23:10:45 +00:00
6e072980a0 start on elk6.x 2018-04-18 15:21:32 +00:00
446880de55 tweaking 2018-04-16 22:05:16 +00:00
c9a33870ff prep for 18.04 2018-03-25 18:35:32 +00:00
0d5d80b1e3 include docker repos
... skip emobility since it is a dev repo
2017-10-13 18:58:14 +00:00