-
Download the
docker-composefile -
Create the
datafolder. -
Start the docker stack:
sudo docker compose up -d
-
Update the destination URL in the config.yml and run DNScollector from source and generate some DNS logs from your DNS server with DNStap protocol.
go run . -config docs/_integration/elasticsearch/config.yml -
Go to kibana web interface through
http://127.0.0.1:5601 -
Click on
Explore on my ownandDiscover -
Finally create index pattern
dnscollectorand choosednstap.timestamp-rfc33939ns