-
Notifications
You must be signed in to change notification settings - Fork 18
Closed
Description
This is not an issue but a question!
I've got this working perfectly for CloudTrail logs - it's great! I'm trying to find a way to ship S3 bucket access logs using it - I've tried a combo of parseSpaces with the CloudFront type and no unzipping, and this does shove the data into ES, but there's no handling of the format to speak of. I've tried forcing it through an index template in ES but that's also pretty messy.
Is there an optimal way of shipping S3 access logs using lambda-stash or am I out of luck?
chrisharrisonkiwi
Metadata
Metadata
Assignees
Labels
No labels