Hi,
I can read here and there that's possible to send data gathered by
ntopng to the trio software ELK to overcome the problems of history.
I did some research and as found in the archives of this mailing list, I
configured ntopng to send its data to ElasticSearch then I analyze with
Kibana.
Logstash has no role to play ?
I note that I have no record of outgoing packets. The value of
"OUT_BYTES" is always 0 in ElasticSearch.
Is there a specific parameter for --dump-flows option ?
There is my configuration file :
--dump-flows es;flows;ntopng-%d.%m.%
Y;http://localhost:9200/_bulk
--dns-mode 1
--interface em2
More generally, I don't find informations for configuring the couple
ntopng ELK.
Have you interesting links on the subject?
Thank' a lot
M SIMON
_______________________________________________
Ntop mailing list
[email protected]
http://listgateway.unipi.it/mailman/listinfo/ntop