diff --git a/utils/elk/logstash-kippo.conf b/utils/elk/logstash-kippo.conf index 7b67ade..a1d4388 100644 --- a/utils/elk/logstash-kippo.conf +++ b/utils/elk/logstash-kippo.conf @@ -1,11 +1,15 @@ - input { + # this is the actual live log file to monitor file { - path => ["/home/michel/src/kippo-git/log/kippo.json", "/home/kippo/kippo-git/log/kippo.json"] -# path => ["/home/michel/src/kippo-git/log/kippo.json"] + path => ["/home/kippo/kippo-git/log/kippo.json"] codec => json type => "kippo" } + # this is to send old logs to for reprocessing + tcp { + port => 3333 + type => "kippo" + } } filter { @@ -16,7 +20,6 @@ filter { locale => "en" } - if [src_ip] { dns {