Need help with importing a custom logfile format #343
Unanswered
Cybercop-Training
asked this question in
Q&A
Replies: 1 comment
-
Hi! Thanks for your interest in expanding the project's capabilities! The best resource for insight on creating parsers is from @bedangSen, which he's published here: https://for572.com/sof-elk-customparser. What kind of platform(s) is/are generating the logs and how are you pulling them from the source (e.g. scp/etc)? That may help guide the answer to how to get them imported. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hello community
I got several logfiles that were exported from a firewall and proxy server.
I was searching for a solution which can help me in visualizing/analyzing logfiles and discovered the sof-elk projekt.
There are several predefined directories for logfiles. Is it possible to ad custom ones that doesn't match a categorie like azure,aws,kubernetes...?
If yes what can I do to get them imported in sof-elk?
Below you'll find two log samples:
Logfile 1 looks like this:
Lofgile 2 looks like this:
Thanks in advance for every help
Beta Was this translation helpful? Give feedback.
All reactions