protocol | hostname | port |
---|---|---|
syslog udp/tcp | logstash.linux.bfh.ch | 514 |
beats | logstash.linux.bfh.ch | 5044 |
echo "*.* @@logstash.linux.bfh.ch:514" >> /etc/rsyslog.d/logstash.conf
winlogbeat installation and configuration for windows system
installation configuration the following changes have to be made in the configuration file:
comment output.elasticsearch and following definitions of this output.
uncomment output.logstash and put logstash.linux.bfh.ch:5044 as host.