And it creates an element of inconvenience for me to create a search. I think I've done something wrong, set it up wrong somewhere. There are even fields with the prefix "suricata".
Hi, I think the problem is in the pipeline, maybe is missing from elastic, so the fields are not renamed, transformed, etc; this tutorial let you check all the steps for collecting the logs:
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.