Is there a package for pfSense and ELK stack
Lets assume I have the ELK stack running from https://www.elastic.co
Could there be a package to send the data to this server? It would mean the pfSense writes logfiles or sends them to the logserver. Then the logstash needs a config file to read the logfile format from the pfSense. The last feature in place would be a config file for Kibana to display the data for this great firewall.
Would be nice. Would just need to make a package that installs the "Beats" data shippers.
Well package no, but installing on a VM and putting together logstash, kibana, elastic search works flawless only the issue getting the web interface filtering with OpenVPN and snort