Skip to content

Instantly share code, notes, and snippets.

@chateaulav
chateaulav / pfsense2-2.grok
Last active Apr 12, 2021 — forked from elijahpaul/pfsense2-2.grok
pfSense 2.2 GROK Pattern
View pfsense2-2.grok
# GROK match pattern for logstash.conf filter: %{PFSENSE_LOG_DATA}%{PFSENSE_IP_SPECIFIC_DATA}%{PFSENSE_IP_DATA}%{PFSENSE_PROTOCOL_DATA}
# GROK Custom Patterns (add to patterns directory and reference in GROK filter for pfSense events):
# GROK Patterns for pfSense 2.2 Logging Format
#
# Created 27 Jan 2015 by J. Pisano (Handles TCP, UDP, and ICMP log entries)
# Edited 14 Feb 2015 by Elijah Paul elijah.paul@gmail.com
# Edited 10 Mar 2015 by Bernd Zeimetz <bernd@bzed.de>
# Edited 11 Apr 2021 by Jonathan Race <racejg@chateaulav.dev>