sof-elk icon indicating copy to clipboard operation
sof-elk copied to clipboard

pfsnese softflow not properly being parsed by SOF-ELK through live ingestion

Open bdorr1105 opened this issue 2 years ago • 0 comments

I was attending the 6 Jun class at Fort Gordon with Mr. Hagen as our instructor. I set up SOF-ELK to receive netflow v9 from my pfsense Firewall and conducted a tcpdump to view logs coming across. SO-ELK was seeing the logs, however, there was no data being parsed. SOF-ELK only picked up flows and that is it. Please help

bdorr1105 avatar Jun 14 '22 16:06 bdorr1105