File: //usr/share/filebeat/module/sophos/utm/manifest.yml
module_version: "1.0"
var:
- name: paths
- name: tags
default: ["sophos.utm", "forwarded"]
- name: syslog_host
default: localhost
- name: syslog_port
default: 9549
- name: input
default: udp
- name: community_id
default: true
- name: tz_offset
default: local
- name: rsa_fields
default: true
- name: keep_raw_fields
default: false
- name: debug
default: false
ingest_pipeline: ingest/pipeline.yml
input: config/input.yml
requires.processors:
- name: geoip
plugin: ingest-geoip
- name: user_agent
plugin: ingest-user_agent