Rinat
February 10, 2017, 3:22pm
#1
My scenario is as follows: rsyslog server collects logs from different Cisco gears. It then forwards it to Logstash as syslogs type.
Are there any configuration examples for Logstash to filter all the different Cisco devices? Any examples of filters/config files?
Running 5.1 on RHEL 6.
magnusbaeck
(Magnus Bäck)
February 13, 2017, 10:39am
#2
There are a bunch of Cisco patterns bundled with Logstash:
Rinat
February 13, 2017, 6:41pm
#3
Thanks!
My understanding is that I need to include those lines inside grok filter? How would I go about it?
Best regards,
Rinat
system
(system)
closed
March 13, 2017, 6:42pm
#4
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.