Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

replace logstash with fluentd #103

Closed
mmguero opened this issue Jun 8, 2022 · 3 comments
Closed

replace logstash with fluentd #103

mmguero opened this issue Jun 8, 2022 · 3 comments
Assignees
Labels
beats Relating to Malcolm's use of Beats enhancement New feature or request logstash Relating to Malcolm's use of Logstash research Research or proof-of-concept for an idea sensor For issues dealing with the Hedgehog OS capture sensor

Comments

@mmguero
Copy link
Collaborator

mmguero commented Jun 8, 2022

Now that we're not using Elastic any more, it may make sense to replace Logstash with fluentd. See #102 for the client side of things. There is a lot of logic surrounding the logstash pipelines, though. We may decide to keep logstash (for now at least) as there is an official OpenSearch output plugin for it, even if we decide to move away from beats.

@mmguero mmguero added beats Relating to Malcolm's use of Beats enhancement New feature or request logstash Relating to Malcolm's use of Logstash research Research or proof-of-concept for an idea sensor For issues dealing with the Hedgehog OS capture sensor labels Jun 8, 2022
@mmguero mmguero self-assigned this Jun 8, 2022
@mmguero mmguero added this to Malcolm Jun 8, 2022
@mmguero mmguero moved this to Someday in Malcolm Jun 30, 2022
@mmguero
Copy link
Collaborator Author

mmguero commented Jun 15, 2023

If/when we decide to do this, actually fluent bit with [lua](https://docs.fluentbit.io/manual/pipeline/filters/lua] scripting will be the way we go, i think.

@mmguero
Copy link
Collaborator Author

mmguero commented Jun 15, 2023

@mmguero
Copy link
Collaborator Author

mmguero commented Nov 5, 2024

Kamino closed and cloned this issue to cisagov/Malcolm

@mmguero mmguero closed this as completed Nov 5, 2024
@github-project-automation github-project-automation bot moved this from Someday to Done in Malcolm Nov 5, 2024
@mmguero mmguero moved this from Done to Migrated in Malcolm Nov 5, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
beats Relating to Malcolm's use of Beats enhancement New feature or request logstash Relating to Malcolm's use of Logstash research Research or proof-of-concept for an idea sensor For issues dealing with the Hedgehog OS capture sensor
Projects
Status: Migrated
Development

No branches or pull requests

1 participant