Hi Team,
I'm hoping one of you can get me out of this misery ...
I have packetbeat set up on my M$ DNS servers and is collecting some really helpful info.
My elasticSearch cluster is running separately and seems to be working fine.
My windows box can connect to it and is passing WinLogBeat info as well as the PacketBeat stuff I mentioned.
My problem is, I can't seem to get anything out of the FIleBeat "CEF Microsoft DNS Overview" dashboard. The dashboard is there, just no data.
I've set up filebeat on my windows box as described in the "Quick Setup" guide. Its trying to feed data directly to my ES cluster [no logstash].
My guess is that my data sources are messed up in the filebeat config on the windows box.
Cany anyone give me a clue what's missing?
Thanks
Chip.