Is there a documentation on standardized log format for OPNSense? I am trying to setup and ELK stack for OPNSense and would like to create rules based on the Log Format
This is a question I'd like to have answer to this as well. Sometime in the future I plan to deploy Syslog server and making filterlogs more readable would indeed be helpful.
Start with this config: https://github.com/fabianfrz/opnsense-logstash-config
And this plugin: https://github.com/fabianfrz/logstash-filter-opnsensefilter
This should already handle many things.