nixos-config/terranix/graylog
Ingolf Wagner 54bab918d7
init
2019-10-24 02:24:33 +02:00
..
config init 2019-10-24 02:24:33 +02:00
content-packs init 2019-10-24 02:24:33 +02:00
modules init 2019-10-24 02:24:33 +02:00
config.nix init 2019-10-24 02:24:33 +02:00
README.md init 2019-10-24 02:24:33 +02:00
shell.nix init 2019-10-24 02:24:33 +02:00

The idea

on all messages are pipelines which are quick and forward traffic to dedicated streams, on theses streams the more costly but also richer pipelines are triggered.

  • avoid extractors, because they are applied on every message.

Use Generic Geo Ip Location plugin (at the end)

this way I don't have to parse everything myself.

Use Content Packs

  • for nginx