Skip to content

Releases: pfelk/pfelk

23.08

14 Aug 12:02
6fe5606
Compare
Choose a tag to compare

What's Changed

New Contributors

Full Changelog: 23.03...v23.08

23.03

25 Mar 19:57
ebcbfc9
Compare
Choose a tag to compare
Update pfelk-installer.sh

22.04

13 Mar 20:00
a4e53a6
Compare
Choose a tag to compare

Incorporated default security (elastic) into the pfelk repo. Added more steps and inhibited script from doing a complete installation but it's a simple solution to getting started with OPNsense & pfSense remote logging.

22.01

27 Dec 17:21
ce59929
Compare
Choose a tag to compare

Data Streams, native ILM support and various tidying (more efficient logging)

20.10

17 Oct 23:10
2029572
Compare
Choose a tag to compare
Update docker-compose.yml

20.3a: Update pfelk-installer.sh

21 Feb 11:46
8bce9bd
Compare
Choose a tag to compare

Fixed a number of minor happy to glad changes and revised paths from master to main

20.3

16 Feb 01:18
e707a7c
Compare
Choose a tag to compare

Various updates and tweaks. This release was to capture the past several months of revisions. Additionally, the file structure was amended to allow for a more seamless install (docker/host). The pipelines.yml file points to the new conf file location (/etc/pfelk/conf.d) and those wishing to add multiple pipelines (e.g. Wazuh etc..) can now amend the pipelines.yml for additionally pipelines while utilizing the default conf.d folder (doesn't conflict with pfelk).

v6.0

18 Oct 21:27
80d9102
Compare
Choose a tag to compare

v6.0 2020/10/18
-LOGSTASH

  • conf files - Removed host filtering (mitigate issues with logs traversing via routers/containers)
    - Added observer fields for enhanced filtering for multiple firewall setups
  • grok pattern - Updated to conform to Elastic Common Schema (ECS) and aligned with pfsense Raw Filter Format

-ELASTICSEARCH

  • templates - Added index settings and mappings
    - Templates are dependent upon underlying templates
    -KIBANA
  • Visualizations - Updated and aligned with templates
  • Dashboards - Custom index pattern ID for each major template

v5.5.5: Rename index templates/PFELK to etc/logstash/conf.d/templates/pfelk.json

04 Oct 14:48
a11d3bd
Compare
Choose a tag to compare

Updated with latest configuration files.

  • Refined configuration files
  • Merged Suricata, Snort and Squid within 10-apps.conf
  • Added haproxy.json and pfelk.json tempaltes

v5.5.0

27 Aug 01:31
f4302d1
Compare
Choose a tag to compare

Updated with latest configuration files.

  • Supporting Squid
  • Supporting HAProxy
  • Enhanced Unbound
  • Rebuilt Dashboards
  • Reconfigured Configuration Files For Future Enrichment
  • Versioning skipped to match pfELK and pfELK Docker