Ingest and Process Apache Common Logs for Elasticsearch
Ingests Apache HTTP Server access logs (Common Log Format) and optimizes them for Elasticsearch. Parses CLF fields, filters health check and static asset requests, maps HTTP status codes to OTLP severity levels, masks sensitive data, removes high-cardinality fields, adds Elastic Common Schema fields, samples successful responses, deduplicates error bursts, and batches the results for delivery to Elasticsearch.
Pipeline
Pipeline details are currently unavailable.
Related Blueprints
Deduplicate Windows Events Rendering Info
Windows EventsData ReductionDeduplicationNormalization
Enrich FortiGate Security Events
FortigateSecurityEnrichmentMITRE ATT&CK
Enrich Okta Security Logs
OktaJSONSecurityEnrichmentMITRE ATT&CK
Enrich Palo Alto Security Events
Palo AltoSecurityEnrichmentMITRE ATT&CK