Elastic 8.4 / PFSense Agent

So... I setup according to this pfSense | Elastic docs

Pointed my firewall at ELK stack

But 0 data

Are there any instructions on how to get this going?

You cant just forward syslogs to elasticsearch. You need a parser like filebeat or logstash to take the syslogs as input then output to elastucsearch.

So I have another linux box with Pfsense Fleet Agent on it and the PFSense firewall pointing to that box. However still nothing in the charts.