Hi, Is there a way to control the alert level which is stored by elasticsearch? I know you can do this through rsyslog, but is it possible through logstash.conf?
With 200+ clients and they are generating around 2GB of data a day! Regards, -- --- You received this message because you are subscribed to the Google Groups "ossec-list" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
