Installing Logstash on OPNsense

Started by spetrillo, June 26, 2019, 04:28:46 AM

Previous topic - Next topic
Has anyone been able to install an up to date rev of Logstash on OPNsense. I am trying to do this, and then have ES and Kibana on a separate Windows PC. The goal is to push all logs and data, so I can visualize it with Kibana.

I am new to FreeBSD and coming from Windows.

Why do you need logstash on the Firewall itself?
You have to export the logs, e.g. via Syslog to an exernal logstash instance.

It is my understanding that Surricata logs cannot go to syslog. Is that incorrect?


Ahhh got it...can we also configure the other Beats, like Metric/Packet/Heart on OPNsense?