Compare commits

..

2 commits

Author SHA1 Message Date
dz
d2fe64be19
Merge 36b2e47d0d into 6faf600d40 2025-07-03 10:39:24 -04:00
t3chn0m4g3
6faf600d40 Fix logstash logging issue, introduced with Sentrypeer 4.0.4
Similar to #1807
2025-07-03 10:48:18 +02:00
2 changed files with 14 additions and 8 deletions

View file

@ -698,12 +698,15 @@ filter {
remove_field => ["event_timestamp"] remove_field => ["event_timestamp"]
} }
mutate { mutate {
rename => { split => ["source_ip", ":"]
"source_ip" => "src_ip" rename => { "destination_ip" => "dest_ip" }
"destination_ip" => "dest_ip"
}
add_field => { "dest_port" => "5060" } add_field => { "dest_port" => "5060" }
} }
mutate {
add_field => { "src_ip" => "%{[source_ip][0]}" }
add_field => { "src_port" => "%{[source_ip][1]}" }
remove_field => ["source_ip"]
}
} }
# Tanner # Tanner

View file

@ -698,12 +698,15 @@ filter {
remove_field => ["event_timestamp"] remove_field => ["event_timestamp"]
} }
mutate { mutate {
rename => { split => ["source_ip", ":"]
"source_ip" => "src_ip" rename => { "destination_ip" => "dest_ip" }
"destination_ip" => "dest_ip"
}
add_field => { "dest_port" => "5060" } add_field => { "dest_port" => "5060" }
} }
mutate {
add_field => { "src_ip" => "%{[source_ip][0]}" }
add_field => { "src_port" => "%{[source_ip][1]}" }
remove_field => ["source_ip"]
}
} }
# Tanner # Tanner