Forward alerts to external elasticseach instance #935
Answered
by
roman-werner
roman-werner
asked this question in
Q&A
-
Hello, I am running T-POT in a VM. I would like to forward the alerts to another VM which is running Elasticsearch and Kibana. I was editing the "/opt/tpot/docker/elk/logstash/dist/logstash.conf" file to forward it to the other elastic search instance and restarted the docker "logstash". Without success. Any ideas? Thanks a lot in advance. T-Pot: 20.06 |
Beta Was this translation helpful? Give feedback.
Answered by
roman-werner
Nov 16, 2021
Replies: 1 comment
-
https://github.com/telekom-security/tpotce/wiki/Reconfigure-logstash.conf |
Beta Was this translation helpful? Give feedback.
0 replies
Answer selected by
roman-werner
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
https://github.com/telekom-security/tpotce/wiki/Reconfigure-logstash.conf