How to Save Logs from Different Forward Nodes Separately in Security Onion #14097
Replies: 1 comment 1 reply
-
By default, data coming from multiple Forward Nodes is intermingled in the same Elasticsearch indices on the back end. Can you expand on your use case a little? Why do you want to store these logs separately? |
Beta Was this translation helpful? Give feedback.
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Hi everyone,
I am currently working with a distributed Security Onion setup and have multiple forward nodes (sensor nodes) sending logs to a central manager/search node. I want to know:
Thanks in advance for your help!
Beta Was this translation helpful? Give feedback.
All reactions