mirror of
https://github.com/telekom-security/tpotce.git
synced 2025-04-20 06:02:24 +00:00
go-pot:
- remove conflicting field ("type") - ranme duration => session_duration
This commit is contained in:
parent
c710aa83f0
commit
663b509e90
3 changed files with 7 additions and 1 deletions
3
docker/elk/logstash/dist/http_output.conf
vendored
3
docker/elk/logstash/dist/http_output.conf
vendored
|
@ -520,6 +520,9 @@ filter {
|
||||||
}
|
}
|
||||||
mutate {
|
mutate {
|
||||||
remove_field => ["ts"]
|
remove_field => ["ts"]
|
||||||
|
rename => {
|
||||||
|
"duration" => "session_duration"
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
3
docker/elk/logstash/dist/logstash.conf
vendored
3
docker/elk/logstash/dist/logstash.conf
vendored
|
@ -512,6 +512,9 @@ filter {
|
||||||
}
|
}
|
||||||
mutate {
|
mutate {
|
||||||
remove_field => ["ts"]
|
remove_field => ["ts"]
|
||||||
|
rename => {
|
||||||
|
"duration" => "session_duration"
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
2
docker/go-pot/dist/config.yml
vendored
2
docker/go-pot/dist/config.yml
vendored
|
@ -56,7 +56,7 @@ server:
|
||||||
# - device_brand: The type of device of the client (Inferred from the user agent)
|
# - device_brand: The type of device of the client (Inferred from the user agent)
|
||||||
# - phase: "start" or "end" depending on the phase of the request
|
# - phase: "start" or "end" depending on the phase of the request
|
||||||
# - duration: The duration of the request in milliseconds (Only available as a part of the end phase of a request)
|
# - duration: The duration of the request in milliseconds (Only available as a part of the end phase of a request)
|
||||||
fields_to_log: "timestamp,id,status,src_ip,method,path,qs,dest_port,type,host,user_agent,browser,browser_version,os,os_version,device,device_brand,phase,duration"
|
fields_to_log: "timestamp,id,status,src_ip,method,path,qs,dest_port,host,user_agent,browser,browser_version,os,os_version,device,device_brand,phase,duration"
|
||||||
|
|
||||||
# Configuration for logging related settings for go-pot
|
# Configuration for logging related settings for go-pot
|
||||||
logging:
|
logging:
|
||||||
|
|
Loading…
Reference in a new issue