SELKS
SELKS copied to clipboard
docker: update docker docs about adjusting different configs
Update docker docs of how to adjust if needed:
- suricata config
- ES config (for example mem)
- LS config (for example mem)
Hi,
If possible, please include guide on how to edit logstash template to enrich IP addresses with ASN information.
If not, please at least share how to access and edit the config files in the docker to allow such enrichment.
Thank you.
Hi,
You can find that info here (how to adjust specific configs)
https://github.com/StamusNetworks/SELKS/wiki/Docker
Hi @happycoder81, logstash config files can be found in SELKS/docker/containers-data/logstash.