From 63be77ce53f9140eb500d9b901140b1eee13327d Mon Sep 17 00:00:00 2001 From: VictorRobellini <39597627+VictorRobellini@users.noreply.github.com> Date: Sat, 6 Mar 2021 00:21:21 -0500 Subject: [PATCH] Read in all the logs! from_beginning = true csv_timestamp_column = "timestamp" csv_timestamp_format = "ts-syslog" --- config/additional_config.conf | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/config/additional_config.conf b/config/additional_config.conf index b944d97..af5603b 100644 --- a/config/additional_config.conf +++ b/config/additional_config.conf @@ -11,7 +11,9 @@ name_suffix = "_ipblock" data_format = "csv" csv_delimiter = "," - from_beginning = false + from_beginning = true + csv_timestamp_column = "timestamp" + csv_timestamp_format = "ts-syslog" csv_tag_columns = ["geoip_code","feed_name","src_ip"] csv_column_names = ["timestamp","rulenum","interface","friendlyname","action","ip_version","protocolid","protocol","src_ip","dest_ip","src_port","dest_port","direction","geoip_code","ip_alias_name","ip_evaluated","feed_name","resolvedhostname","clienthostname","asn","duplicateeventstatus"] @@ -19,8 +21,10 @@ files = ["/var/log/pfblockerng/dnsbl.log"] name_suffix = "_dnsbl" data_format = "csv" - from_beginning = false csv_delimiter = "," + from_beginning = false + csv_timestamp_column = "timestamp" + csv_timestamp_format = "ts-syslog" csv_tag_columns = ["src_ip","tld"] csv_column_names = ["blocktype","timestamp","domain","src_ip","req_agent","blockmethod","blocklist","tld","feed_name","duplicateeventstatus"]