EXTRACTJSON 匹配JSON类型数据。 CHINAID 匹配中国居民身份证号。 USERNAME 匹配字母、数字和._-组合。 USER 匹配字母、数字和._-组合。 EMAILLOCALPART 匹配邮箱从开头到@字符前内容,如123456@alibaba.com,匹配内容为123456。

grok

Read more

input { file { path => [ "/mnt/logs/ids/dns.log" ] sincedb_path => "/dev/null" start_position => "beginning" #Поменять на end# tags => ["dns"] } file { path => [ "/mnt/logs/ids/fast.log" ] sincedb_path => "/dev/null" start_position => "beginning" #Поменять на end# tags => ["ids"] }

Suricata Logstash fast.log

Read more

wget https://mirrors.bfsu.edu.cn/apache/tomcat/tomcat-8/v8.5.73/bin/apache-tomcat-8.5.73.tar.gz tar xvf apache-tomcat-8.5.73.tar.gz mv apache-tomcat-8.5.73 tomcat8 cd tomcat8/bin

centos drawio

Read more

V