Log alerts to a file or syslog #344
andrewbeard
started this conversation in
Ideas
Replies: 2 comments 6 replies
-
Thank you! Will be implemented in #348. |
Beta Was this translation helpful? Give feedback.
4 replies
-
Having also a alerts.log would be great for interacting both with splunk (in a encrypted way) for example or a third party script/binary. |
Beta Was this translation helpful? Give feedback.
2 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I'd like the ability to pipe alerts from nzyme into Splunk or Elasticsearch without using Greylog. If they could be dumped to a file (or syslog) I could configure a listener/etc and use the existing alerting mechanism I have for my IDS and pipe them into an SIEM. It looks like the existing log file just has the system status but nothing about analyzed traffic.
Any chance of making this available, possibly by an option in the alerting section of the config file?
Beta Was this translation helpful? Give feedback.
All reactions