Skip to content

Instantly share code, notes, and snippets.

View Shifter2600's full-sized avatar

Dallas Toth Shifter2600

  • Calgary Alberta Canada
View GitHub Profile
@elijahpaul
elijahpaul / pfsense2-2.grok
Last active January 29, 2019 13:37
pfsense2-2.grok
# GROK match pattern for logstash.conf filter: %{LOG_DATA}%{IP_SPECIFIC_DATA}%{IP_DATA}%{PROTOCOL_DATA}
# GROK Custom Patterns (add to patterns directory and reference in GROK filter for pfSense events):
# GROK Patterns for pfSense 2.2 Logging Format
#
# Created 27 Jan 2015 by J. Pisano (Handles TCP, UDP, and ICMP log entries)
# Edited 14 Feb 2015 by E. Paul
#
# Usage: Use with following GROK match pattern