Title
#general
b

bhuvaneswari

12/23/2020, 1:37 PM
Is there any video how to add logstash into osquery?
defensivedepth

defensivedepth

12/23/2020, 5:12 PM
I am not aware of one, but Filebeat has an osquery module that makes shipping osquery logs to Elasticsearch really simple - https://www.elastic.co/guide/en/beats/filebeat/7.10/filebeat-module-osquery.html I also show you how to do a complete Osquery + Fleet + Filebeat + Elasticsearch + Kibana setup in my training - LearnOsquery.com