Skip to content

Commit

Permalink
Update suricata.common
Browse files Browse the repository at this point in the history
  • Loading branch information
TOoSmOotH authored Jan 19, 2024
1 parent 40d0411 commit 08486e2
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions salt/elasticsearch/files/ingest/suricata.common
Original file line number Diff line number Diff line change
Expand Up @@ -4,6 +4,7 @@
{ "json": { "field": "message", "target_field": "message2", "ignore_failure": true } },
{ "rename": { "field": "message2.pkt_src", "target_field": "network.packet_source","ignore_failure": true } },
{ "rename": { "field": "message2.proto", "target_field": "network.transport", "ignore_failure": true } },
{ "lowercase": { "field": "network.transport", "ignore_failure": true } },
{ "rename": { "field": "message2.in_iface", "target_field": "observer.ingress.interface.name", "ignore_failure": true } },
{ "rename": { "field": "message2.flow_id", "target_field": "log.id.uid", "ignore_failure": true } },
{ "rename": { "field": "message2.src_ip", "target_field": "source.ip", "ignore_failure": true } },
Expand Down

0 comments on commit 08486e2

Please sign in to comment.