mirror of
				https://github.com/telekom-security/tpotce.git
				synced 2025-10-24 17:24:44 +00:00 
			
		
		
		
	
		
			
	
	
		
			48 lines
		
	
	
	
		
			1.2 KiB
		
	
	
	
		
			JSON
		
	
	
	
	
	
		
		
			
		
	
	
			48 lines
		
	
	
	
		
			1.2 KiB
		
	
	
	
		
			JSON
		
	
	
	
	
	
|   | { | ||
|  |   "template" : "logstash-*", | ||
|  |   "version" : 60001, | ||
|  |   "settings" : { | ||
|  |     "index.refresh_interval" : "5s", | ||
|  |     "index.number_of_shards" : "1", | ||
|  |     "index.number_of_replicas" : "0" | ||
|  |   }, | ||
|  |   "mappings" : { | ||
|  |     "_default_" : { | ||
|  |       "dynamic_templates" : [ { | ||
|  |         "message_field" : { | ||
|  |           "path_match" : "message", | ||
|  |           "match_mapping_type" : "string", | ||
|  |           "mapping" : { | ||
|  |             "type" : "text", | ||
|  |             "norms" : false | ||
|  |           } | ||
|  |         } | ||
|  |       }, { | ||
|  |         "string_fields" : { | ||
|  |           "match" : "*", | ||
|  |           "match_mapping_type" : "string", | ||
|  |           "mapping" : { | ||
|  |             "type" : "text", "norms" : false, | ||
|  |             "fields" : { | ||
|  |               "keyword" : { "type": "keyword", "ignore_above": 256 } | ||
|  |             } | ||
|  |           } | ||
|  |         } | ||
|  |       } ], | ||
|  |       "properties" : { | ||
|  |         "@timestamp": { "type": "date"}, | ||
|  |         "@version": { "type": "keyword"}, | ||
|  |         "geoip"  : { | ||
|  |           "dynamic": true, | ||
|  |           "properties" : { | ||
|  |             "ip": { "type": "ip" }, | ||
|  |             "location" : { "type" : "geo_point" }, | ||
|  |             "latitude" : { "type" : "half_float" }, | ||
|  |             "longitude" : { "type" : "half_float" } | ||
|  |           } | ||
|  |         } | ||
|  |       } | ||
|  |     } | ||
|  |   } | ||
|  | } |