Hello all,
I am using Filebeat 7.12.1 with the system module
The logs send in Elastic without problem, but some failed authentication logs from pam_unix(sshd:auth) are not parsed.
Do you know why?
Thank you very much !
Guillaume
Hello all,
I am using Filebeat 7.12.1 with the system module
The logs send in Elastic without problem, but some failed authentication logs from pam_unix(sshd:auth) are not parsed.
Do you know why?
Thank you very much !
Guillaume
Nobody has any ideas ? 
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.