Accepting messages in CEF format

(R) #1

Hi there,

I have devices which are logging and sending events to logstash in CEF format. Can someone confirm how do I accept messages with those? Does logstash support CEF input plugin?

Or is there any other alternative method available?

(Ry Biesemeyer) #2

It looks like logstash-codec-cef may be what you're looking for.

(system) #3

