|
|
|
@ -53,7 +53,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "%{[fields][hostname]}-authlog-%{+YYYY.MM}"
|
|
|
|
index => "%{[fields][hostname]}-authlog-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -65,7 +65,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "uncategorized-authlog-%{+YYYY.MM}"
|
|
|
|
index => "uncategorized-authlog-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -77,7 +77,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "%{[fields][hostname]}-syslog-%{+YYYY.MM}"
|
|
|
|
index => "%{[fields][hostname]}-syslog-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -89,7 +89,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "uncategorized-syslog-%{+YYYY.MM}"
|
|
|
|
index => "uncategorized-syslog-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -101,7 +101,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "%{[stage]}-%{[kubernetes][namespace]}-%{[kubernetes][deployment][name]}-%{+YYYY.MM}"
|
|
|
|
index => "%{[stage]}-%{[kubernetes][namespace]}-%{[kubernetes][deployment][name]}-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -113,7 +113,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "%{[stage]}-%{[kubernetes][namespace]}-%{[kubernetes][daemonset][name]}-%{+YYYY.MM}"
|
|
|
|
index => "%{[stage]}-%{[kubernetes][namespace]}-%{[kubernetes][daemonset][name]}-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -125,7 +125,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "%{[stage]}-%{[kubernetes][namespace]}-%{[kubernetes][statefulset][name]}-%{+YYYY.MM}"
|
|
|
|
index => "%{[stage]}-%{[kubernetes][namespace]}-%{[kubernetes][statefulset][name]}-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -137,7 +137,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "uncategorized-kubernetes-%{[kubernetes][namespace]}-%{+YYYY.MM}"
|
|
|
|
index => "uncategorized-kubernetes-%{[kubernetes][namespace]}-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -149,7 +149,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "%{[container][name]}-%{+YYYY.MM}"
|
|
|
|
index => "%{[container][name]}-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -161,7 +161,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "uncategorized-%{[@metadata][beat]}-%{[@metadata][version]}-%{+YYYY.MM}"
|
|
|
|
index => "uncategorized-%{[@metadata][beat]}-%{[@metadata][version]}-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
@ -173,7 +173,7 @@ output {
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
user => "{{ elastic_admin_username }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
password => "{{ elastic_admin_password }}"
|
|
|
|
|
|
|
|
|
|
|
|
index => "uncategorized-%{+YYYY.MM}"
|
|
|
|
index => "uncategorized-%{+YYYY.MM.dd}"
|
|
|
|
|
|
|
|
|
|
|
|
manage_template => false
|
|
|
|
manage_template => false
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|