Sha256: 686ddf95052b85a86bc4b19dea12582b0fca8ffce2f128e2281a200216ef1505

Contents?: true

Size: 1.06 KB

Versions: 44

Compression:

Stored size: 1.06 KB

Contents

# JUNOS 11.4 RT_FLOW patterns
RT_FLOW_EVENT (RT_FLOW_SESSION_CREATE|RT_FLOW_SESSION_CLOSE|RT_FLOW_SESSION_DENY)

RT_FLOW1 %{RT_FLOW_EVENT:event}: %{GREEDYDATA:close-reason}: %{IP:src-ip}/%{INT:src-port}->%{IP:dst-ip}/%{INT:dst-port} %{DATA:service} %{IP:nat-src-ip}/%{INT:nat-src-port}->%{IP:nat-dst-ip}/%{INT:nat-dst-port} %{DATA:src-nat-rule-name} %{DATA:dst-nat-rule-name} %{INT:protocol-id} %{DATA:policy-name} %{DATA:from-zone} %{DATA:to-zone} %{INT:session-id} \d+\(%{DATA:sent}\) \d+\(%{DATA:received}\) %{INT:elapsed-time} .*

RT_FLOW2 %{RT_FLOW_EVENT:event}: session created %{IP:src-ip}/%{INT:src-port}->%{IP:dst-ip}/%{INT:dst-port} %{DATA:service} %{IP:nat-src-ip}/%{INT:nat-src-port}->%{IP:nat-dst-ip}/%{INT:nat-dst-port} %{DATA:src-nat-rule-name} %{DATA:dst-nat-rule-name} %{INT:protocol-id} %{DATA:policy-name} %{DATA:from-zone} %{DATA:to-zone} %{INT:session-id} .*

RT_FLOW3 %{RT_FLOW_EVENT:event}: session denied %{IP:src-ip}/%{INT:src-port}->%{IP:dst-ip}/%{INT:dst-port} %{DATA:service} %{INT:protocol-id}\(\d\) %{DATA:policy-name} %{DATA:from-zone} %{DATA:to-zone} .*

Version data entries

44 entries across 42 versions & 3 rubygems

Version Path
fluent-plugin-grok-parser-2.1.3 patterns/junos
logstash-patterns-core-4.1.0 patterns/junos
fluent-plugin-grok-parser-2.1.2 patterns/junos
fluent-plugin-grok-parser-2.1.1 patterns/junos
fluent-plugin-grok-parser-2.1.0 patterns/junos
fluent-plugin-grok-parser-2.0.1 patterns/junos
fluent-plugin-grok-parser-2.0.0 patterns/junos
fluent-plugin-grok-parser-1.0.0 patterns/junos
logstash-patterns-core-4.0.2 patterns/junos
fluent-plugin-grok-parser-0.3.1 patterns/junos
fluent-plugin-grok-parser-0.3.0 patterns/junos
logstash-patterns-core-4.0.1 patterns/junos
logstash-patterns-core-2.0.5 patterns/junos
logstash-patterns-core-2.0.4 patterns/junos
fluent-plugin-grok-parser-0.2.0 patterns/junos
logstash-input-beats-2.0.2 vendor/jruby/1.9/gems/logstash-patterns-core-2.0.2/patterns/junos
logstash-input-beats-0.9.2 vendor/jruby/1.9/gems/logstash-patterns-core-0.4.0/patterns/junos
logstash-input-beats-0.9.2 vendor/jruby/1.9/gems/logstash-patterns-core-2.0.2/patterns/junos
logstash-input-beats-0.9.1 vendor/jruby/1.9/gems/logstash-patterns-core-0.4.0/patterns/junos
logstash-input-beats-0.9.1 vendor/jruby/1.9/gems/logstash-patterns-core-2.0.2/patterns/junos