# Logstash Helm Deployment

**URL:** <https://discuss.elastic.co/t/logstash-helm-deployment/266060>\
**Category:** Logstash\
**Created:** [March 3, 2021, 7:14am UTC](https://discuss.elastic.co/t/logstash-helm-deployment/266060 "2021-03-03T07:14:59Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Karl\_Ofeiche](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/karl_ofeiche/32/78315_2.png) [@Karl\_Ofeiche](https://discuss.elastic.co/u/Karl_Ofeiche)\
**Post date:** [March 3, 2021, 7:14am UTC](https://discuss.elastic.co/t/logstash-helm-deployment/266060/1 "2021-03-03T07:14:59Z")

</div>

Hey everyone.  
I've been trying to send logs from an untangle firewall device to my ELK SIEM on Kubernetes. To do so I created a pipeline that I deployed as a ConfigMap and from here I'm stuck.  
Here's a part of the Helm values.yaml file to use when deploying logstash :

```auto
# Allows you to add any config files in /usr/share/logstash/config/
# such as logstash.yml and log4j2.properties
#
# Note that when overriding logstash.yml, `http.host: 0.0.0.0` should always be included
# to make default probes work.
logstashConfig: {}
# logstash.yml: |
# key:
# nestedkey: value
# log4j2.properties: |
# key = value

# Allows you to add any pipeline files in /usr/share/logstash/pipeline/
### ***warn*** there is a hardcoded logstash.conf in the image, override it first
logstashPipeline: {}
# logstash.conf: |
# input {
# exec {
# command => "uptime"
# interval => 30
# }
# }
# output { stdout { } }

# Custom ports to add to logstash
extraPorts: []
  # - name: beats
  # containerPort: 5001

service: {}
# annotations: {}
# type: ClusterIP
# ports:
# - name: beats
# port: 5044
# protocol: TCP
# targetPort: 5044
# - name: http
# port: 8080
# protocol: TCP
# targetPort: 8080

```

What am I supposed to modify here to add my pipeline config file to be integrated into Logstash to start seeing logs from Untangle ?  
(The name of the config file is untangle-syslog.conf / The name of the ConfigMap is untangle-syslog / The port I'm listening to is 514/UDP from Untangle)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 31, 2021, 7:15am UTC](https://discuss.elastic.co/t/logstash-helm-deployment/266060/2 "2021-03-31T07:15:40Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
