SELKS icon indicating copy to clipboard operation
SELKS copied to clipboard

docker: update docker docs about adjusting different configs

Open pevma opened this issue 4 years ago • 3 comments

Update docker docs of how to adjust if needed:

  • suricata config
  • ES config (for example mem)
  • LS config (for example mem)

pevma avatar Nov 25 '21 06:11 pevma

Hi,

If possible, please include guide on how to edit logstash template to enrich IP addresses with ASN information.

If not, please at least share how to access and edit the config files in the docker to allow such enrichment.

Thank you.

happycoder81 avatar Dec 10 '21 09:12 happycoder81

Hi,

You can find that info here (how to adjust specific configs)
https://github.com/StamusNetworks/SELKS/wiki/Docker

pevma avatar Dec 10 '21 15:12 pevma

Hi @happycoder81, logstash config files can be found in SELKS/docker/containers-data/logstash.

yodapotatofly avatar Dec 10 '21 16:12 yodapotatofly