oxmox-dot-dev/crowdsec/acquis.d/host-ssh.yml
Florian Lüke 0c8bc1ac0a add crowdsec and crowdsec-bashboard (no bouncers)
Basic crowdsec and metabase dashboard setup is done. journalctl ssh
monitoring and alerts work. Need to check if other log sources work.

No bouncers active yet!
2023-10-15 18:29:32 +02:00

5 lines
96 B
YAML

source: journalctl
journalctl_filter:
- "_SYSTEMD_UNIT=ssh.service"
labels:
type: syslog