Changes for version 0.4.3 - 2021-11-04

  • -Remove mutate from geoip on fail2ban. This removes the need for mappings in Elasticsearch. -Add back in GeoIP for Postfix.

Documentation

A utility for using templates for searching elasticsearch.

Modules

Provides a handy system for doing templated elasticsearch searches.
Provicdes support for fail2ban logs sucked down via beats.
Provicdes support for HTTP access logs sucked down via beats.
Provides postfix support for essearcher.
Provides syslog support for essearcher.