Logstash Downloads

Logstash is usually used to prepare the data before ingest to Elasticsearch. But Logstash has a lot of different input, filter and output plugins that can be used for various different use cases.

One use case could be to use Logstash as a script execution engine. This can be triggered via Watcher or Kibana Alerts and Actions to e.g. auto heal systems by restarting a machine. To achieve that Logstash needs to be able to accept Web Hook requests and decide based on the query parameters which script to execute.

Using this download you can make Logstash a REST endpoint that executes scripts or manually adds data in Elasticsearch.

Tested versions 7.14
ECS compliant

You must log in to submit a review.

Related downloads

Office 365 dashboards

A collection of Kibana dashboards to provide a holistic view of Microsoft Office 365 environments

Sigma Sysmon detection rules

A collection of rules based on the Sigma detection rules for Windows Sysmon events based on Winlogbeat data.

Google Cloud Log Ingestion dashboard

Canvas Board to analyze the log data collection of Google Cloud via Dataflow using the Google Cloud Metric module data

Watch for changes in IOWaits

A watch which alerts if the time spent by a hosts CPU in IOWait, has increased by more than than N% in the last Y mins.

Elastic Stack Monitoring Dashboard

Kibana dashboards that is showing the monitoring data collected by Elastics in built monitoring capabilities.

Sigma Zeek Detection rules

A collection of rules based on the Sigma rules for Zeek based on the Filebeat Zeek module.

These downloads could be also interesting for you

PI Hole Logstash Pipeline and Dashboard

A filter for Logstash parsing PI-Hole logs + Dashboard to visualize the data

Logstash REST to exec scripts

Make Logstash a REST endpoint that executes scripts or manually adds data in Elasticsearch.

Logstash Pipeline for Talend ESB & MDM

A Logstash Pipeline to collect json logs from Talend ESB & MDM.

Logstash Meraki Pipeline

Logstash Pipeline to load Meraki logs via Syslog into Elasticsearch

OpenSIEM Logstash Parsing

Logstash Parsing Configurations for Elastic SIEM parses many different sources into ECS