Logstash filter and patterns for sudo
This is a simple filer and pattern for sudo logs in linux (tested on ubuntu logs)
There is an extra field added
sudo.allowed true or false for graphing and alerting
This is a simple filer and pattern for sudo logs in linux (tested on ubuntu logs)
sudo.allowed true or false for graphing and alerting