반응형

 

 

 

conf 파일

{
         
"network": {
           
"servers": [ "<logstash IP>:5000" ],
           
"timeout": 15,
           
"ssl ca": "C:/path/to/logstash-forwarder.crt"
         
},
         
"files": [
               
{
                 
"paths": [
                    
"C:/inetpub/logs/LogFiles/W3SVC*/*.log"
                  
],
                  
"fields": { "type": "iis-w3svc" }
               
},
               
{
                 
"paths": [
                   
"-"
                 
],
                 
"fields": { "type": "windows-event" }
               
}
         
]
       
}

 

반응형

+ Recent posts