diff --git a/docker/dicompot/Dockerfile b/docker/dicompot/Dockerfile index 00a11c24..51a1fcd2 100644 --- a/docker/dicompot/Dockerfile +++ b/docker/dicompot/Dockerfile @@ -14,7 +14,7 @@ RUN sed -i 's/dl-cdn/dl-2/g' /etc/apk/repositories && \ cd /opt/go/ && \ git clone https://github.com/nsmfoo/dicompot.git && \ cd dicompot && \ - git checkout 17cddd73896e94fdfbfeb920023ccaf5aad5abbd && \ + git checkout 41331194156bbb17078bcc1594f4952ac06a731e && \ go mod download && \ go install -a -x github.com/nsmfoo/dicompot/server && \ # diff --git a/docker/elk/logstash/dist/logstash.conf b/docker/elk/logstash/dist/logstash.conf index 2e486f34..549ece19 100644 --- a/docker/elk/logstash/dist/logstash.conf +++ b/docker/elk/logstash/dist/logstash.conf @@ -321,6 +321,7 @@ filter { } mutate { rename => { + "ID" => "id" "IP" => "src_ip" "Port" => "src_port" "AETitle" => "aetitle" @@ -542,6 +543,11 @@ if "_grokparsefailure" in [tags] { drop {} } convert => { "status" => "integer" } } } + if [id] { + mutate { + convert => { "id" => "string" } + } + } # Add T-Pot hostname and external IP if [type] == "Adbhoney" or [type] == "Ciscoasa" or [type] == "CitrixHoneypot" or [type] == "ConPot" or [type] == "Cowrie" or [type] == "Dicompot" or [type] == "Dionaea" or [type] == "ElasticPot" or [type] == "Fatt" or [type] == "Glutton" or [type] == "Honeysap" or [type] == "Honeytrap" or [type] == "Heralding" or [type] == "Honeypy" or [type] == "Ipphoney" or [type] == "Mailoney" or [type] == "Medpot" or [type] == "P0f" or [type] == "Rdpy" or [type] == "Suricata" or [type] == "Tanner" {