Ingest and Process NGINX Logs for Elasticsearch
Ingests NGINX access logs (combined log format) and optimizes them for Elasticsearch. Parses the combined log format, filters health check and static asset requests, maps HTTP status codes to OTLP severity levels, masks sensitive data, adds Elastic Common Schema fields, samples successful responses, deduplicates error bursts, and batches the results for delivery to Elasticsearch.
Pipeline
Pipeline details are currently unavailable.
Related Blueprints
Deduplicate Windows Events Rendering Info
Windows EventsData ReductionDeduplicationNormalization
Enrich FortiGate Security Events
FortigateSecurityEnrichmentMITRE ATT&CK
Enrich Okta Security Logs
OktaJSONSecurityEnrichmentMITRE ATT&CK
Enrich Palo Alto Security Events
Palo AltoSecurityEnrichmentMITRE ATT&CK