Initial setup of Logstash


(Thor Egil Ekeli) #1

Hi,

I am new to ELK and have a basic question about how to start. I have installed the ELK-stack on Ubuntu 18.04, and as a start I want to receive syslog from my Cisco ASA-devices into Logstash so that I can view the log data with Kibana, Kan anyone give me the exact steps I have to do to set this up? When I list installed plugins from the host I see a syslog-plugin but what do I need to do to receive data in logstash?

Br,

Thor-Egil


(Bardie) #2

This link can help

http://www.gregmefford.com/blog/2014/09/24/analyzing-cisco-asa-firewall-logs-with-logstash/


(Magnus B├Ąck) #3

https://www.elastic.co/guide/en/logstash/current/config-examples.html contains a syslog example.


(system) #4

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.