d2a9a91175
Indices not yet included
20 lines
407 B
YAML
20 lines
407 B
YAML
logsources:
|
|
windows:
|
|
product: windows
|
|
index: logstash-windows-*
|
|
windows-application:
|
|
product: windows
|
|
service: application
|
|
conditions:
|
|
EventLog: Application
|
|
windows-security:
|
|
product: windows
|
|
service: security
|
|
conditions:
|
|
EventLog: Security
|
|
windows-sysmon:
|
|
product: windows
|
|
service: sysmon
|
|
conditions:
|
|
EventLog: Microsoft-Windows-Sysmon
|