diff --git a/filebeat/docs/modules/aws.asciidoc b/filebeat/docs/modules/aws.asciidoc index 6f54a301433a..b58cd934b532 100644 --- a/filebeat/docs/modules/aws.asciidoc +++ b/filebeat/docs/modules/aws.asciidoc @@ -24,13 +24,14 @@ from network interfaces in AWS VPC. [float] === Example dashboard -This module comes with a sample dashboard for `s3access` fileset: +This module comes with several predefined dashboards. For example, here is the +dashboard for `s3access` fileset: [role="screenshot"] image::./images/filebeat-aws-s3access-overview.png[] [float] -==== `s3access` fileset settings +=== Module configuration Example config: @@ -38,9 +39,31 @@ Example config: ---- - module: aws s3access: - enabled: true - var.queue_url: https://sqs.us-west-1.amazonaws.com/123/queue-name - var.credential_profile_name: fb-aws + enabled: false + + # AWS SQS queue url + #var.queue_url: https://sqs.myregion.amazonaws.com/123456/myqueue + + # Profile name for aws credential + #var.credential_profile_name: fb-aws + + elb: + enabled: false + + # AWS SQS queue url + #var.queue_url: https://sqs.myregion.amazonaws.com/123456/myqueue + + # Profile name for aws credential + #var.credential_profile_name: fb-aws + + vpcflow: + enabled: false + + # AWS SQS queue url + #var.queue_url: https://sqs.myregion.amazonaws.com/123456/myqueue + + # Profile name for aws credential + #var.credential_profile_name: fb-aws ---- *`var.queue_url`*:: diff --git a/x-pack/filebeat/module/aws/_meta/docs.asciidoc b/x-pack/filebeat/module/aws/_meta/docs.asciidoc index 0210d0e2e946..e06f6d2c9278 100644 --- a/x-pack/filebeat/module/aws/_meta/docs.asciidoc +++ b/x-pack/filebeat/module/aws/_meta/docs.asciidoc @@ -19,13 +19,14 @@ from network interfaces in AWS VPC. [float] === Example dashboard -This module comes with a sample dashboard for `s3access` fileset: +This module comes with several predefined dashboards. For example, here is the +dashboard for `s3access` fileset: [role="screenshot"] image::./images/filebeat-aws-s3access-overview.png[] [float] -==== `s3access` fileset settings +=== Module configuration Example config: @@ -33,9 +34,31 @@ Example config: ---- - module: aws s3access: - enabled: true - var.queue_url: https://sqs.us-west-1.amazonaws.com/123/queue-name - var.credential_profile_name: fb-aws + enabled: false + + # AWS SQS queue url + #var.queue_url: https://sqs.myregion.amazonaws.com/123456/myqueue + + # Profile name for aws credential + #var.credential_profile_name: fb-aws + + elb: + enabled: false + + # AWS SQS queue url + #var.queue_url: https://sqs.myregion.amazonaws.com/123456/myqueue + + # Profile name for aws credential + #var.credential_profile_name: fb-aws + + vpcflow: + enabled: false + + # AWS SQS queue url + #var.queue_url: https://sqs.myregion.amazonaws.com/123456/myqueue + + # Profile name for aws credential + #var.credential_profile_name: fb-aws ---- *`var.queue_url`*:: diff --git a/x-pack/filebeat/module/aws/_meta/fields.yml b/x-pack/filebeat/module/aws/_meta/fields.yml index 2e06d62e35c8..42e845dae7da 100644 --- a/x-pack/filebeat/module/aws/_meta/fields.yml +++ b/x-pack/filebeat/module/aws/_meta/fields.yml @@ -1,5 +1,6 @@ - key: aws title: AWS + release: beta description: > Module for handling logs from AWS. fields: diff --git a/x-pack/filebeat/module/aws/elb/_meta/fields.yml b/x-pack/filebeat/module/aws/elb/_meta/fields.yml index 6825fceb3fda..c954eb4e9c10 100644 --- a/x-pack/filebeat/module/aws/elb/_meta/fields.yml +++ b/x-pack/filebeat/module/aws/elb/_meta/fields.yml @@ -1,5 +1,6 @@ - name: elb type: group + release: beta description: > Fields for AWS ELB logs. fields: diff --git a/x-pack/filebeat/module/aws/fields.go b/x-pack/filebeat/module/aws/fields.go index dabb7469725d..673654f355d1 100644 --- a/x-pack/filebeat/module/aws/fields.go +++ b/x-pack/filebeat/module/aws/fields.go @@ -19,5 +19,5 @@ func init() { // AssetAws returns asset data. // This is the base64 encoded gzipped contents of module/aws. func AssetAws() string { - return "eJzMWltv2zj2f++nOOjLJIDsP6ZT/LEI0AWc1EW99bbZ2J3ZfVJp8kjimiJVkrLjfPrFoS6+REqnqdxdP7SOKJ3zO/eLPII17q6Abd0LAC+9wiuY/LF4ASDQcSsLL42+gr++AAD4uxGlQkiMhYxpoaROQZnUQWJNTo+NXwAkEpVwV+GBEWiWY0OePn5X4BWk1pRFfaWDD33eBTIt5cBnXJ8esjhkg2rVXuti9QS7Q5bGBo7T+fUR1y7Oh9zp36ODBsIad1tjxcnZE0Dos8wwUASTgM8QlGECVkwxzdGOOwEQt2EB0OOdAIKSNq9gThev64uuBxazKfo4GGLMrB4W4uTuY4OwYlRZfO+gdGLxa4nOd+NT0nnUaIfFFbynpgw+Yx4scpQbFAERN1ojJwLdoAprvOFGDQuqodpt04vM+wKMBc+Ly25YtSLjwhqOzkmdxl7mOHbIO5EmyjD/DL8znikgyiA1OORGCwdOao4n2iO4NSiQbq/jUnupQIaLDrUHb4CBxZRMYpGk5mvUolvM+vB/SMwDMeikBgheKnV0wXlmPenBFUYLqdM+O9K5w/+2hA2OI9uFnP9IymNbBvUoibonqPeqq+TKXadYyuj0h6SqA+nQUhpyqZSshY1qaSv4pkCNRwJxZRz2uKFXLqY85jK2xvPKQfmcBFnOF9CyJEVzkxcKPZ7KBabDSzPmYIWoAZ1nKyVd1idaE36yGDbDzW6BCWHRucY0jRPtPR18Ror/RgZuEBbGnjr+j2ZhYz2pcwh0lLLHTRSNnWe+dDE3YuBGoCIMRPhxeF4cnj4O0OoBqocUv95Q9pUavvRC/9IpsXMq5rLIhi7Ui8UcKrpQugracr74v3C5NUJPa0OYzlOpiX1brb8bF8+MQx1ztP6sHVfFB4iPTCRnnloMJBegJHfkBM+F79BKNrByK5qgy3yF9syySM1NHsqrcjFTOHQykdpjihY2TJWhHFEGD3wOKupq19XCN3FcSRWBTBqJ+8sRfRPx6VA1gBwEOxCv+vceBJZxjOUp+R9kzY32qH1bMb78czTJH/RoSdxGM/EFMmSib+rKmecZitiWitopaaz0u6Hb9orq3sihd6JZPEwWNYTDUSdYk1X31Mfd8FnVJOE98tLjwJqtiENDHLYZ6uNS1wKGi8TYLbMigkTeoxg1lSECVvoMtQ8xOR6PL8cw88CZDoZjoa/coGWqUk9PHFoU0iL3cWkHziaf7+Z1hg4ar/mQ3LX4W+ZaFXSDQ2uNHVtkzjw3WXdCC3ShokvwSN+tMWp0CZPqEFdb235jnOw04EZl8Rul3g1aqEh/13plVfI1+thsBx/VOdNGS85CobUwe9tEWODV/OFMaTnWMHqasnB2vh1QRb+K+cPQIQero4rsmjKp+5YdFnPjMe5pux9d/jMxXhTMVlXRo9XoTxvwGmVf/myPf5JRW34RGAsMRsE9S32YZURzV28yqdYgQ1aiCThvKSmmqNEGEKsdTHL2YDRFjjdQavm1RLUDKQhpsgNkPHt6u2UKIiafnVd61NuSrZZcAjK0YYoXyBWjFp85WHya3I7bOyO4my6W4/fL5W2co8+MoO4/RFVMaCL4Y3q9mC2nT91iLFxPljfvx2+n8+lyOv50/bfpzbJb9DUOXIdfrnH3Egpm/YkzRaEIoKbpRQSQL0cvm4S7V5Uw6EAbD56Ga0ZAiBrL8VvREZdWDivLXUV49PludiQR6b5NLDk6x1LshkbzW1yNbQPuJHSZo5W8wnE4WLYarwfG/kJ6hvl3H4bTUFJvjMBDO2tT11rDeWlt79Zj59HF1GEPq7F6jGm3aYFPGMUjwHuuSkGJJah0vwLeoKW+9lCMB7SmJ42s/k3Nk5MP3Zr9kQUUEW1LbuBDE1bwwN79R3gyrMTOosmjTddpqZUaEiXTzO9HqKqt+cVBgdYV1P5tejzUl1bHzJpSi58Gn/kDB3YFFeuDJnxnSvt0DbGYoLVDV+ijYSb45l3Np563vj2RUmmPWdoXTwNC++zQjibE6clhcIPW0Tg19Iha06U2pl4ctpXnzxabmsRMfKvkZGbgzoYEuB+x/GEkxegVAd57I9571GLfcMHsbc+qTaaa+dJiXAsy8EqoId/oKYKFTH8PaOnL66iKI4r/MOx5czSXHiWJZ/eV1R4ydqX0AxewBXISbmFognAwZzu0cLFYzC+b5WcrnsbUeBnQkgTk/osu0eigZ6ewFzm8gDnbe+kG1THDYKAIJqXP3odYDXBP7qmi2EXwjxLtblG13nTfV/q76cUvCosj8g0U1OJdPt+0IaoqpsPqArUojNS+dct6JUlf2zjrX+idJZqWlmkXXnNUjha8T/odXCzni8s2mx14Wr2hPH2l1+bVgifKbAfcRfx+ewNE8rt2EGdRFiF5R0jmJnUNizHMEqrMZNWgGYEJK5Un/DnzUbjW6FE6eNU+QO0HjYYMeOm8yfue6PEJxrkp9fAFgHRe06Yq1rxvbEzQtzz3aJNz7Hz3+wCNfmvses8rYNtmkmfVr0osSxLJ6zfUxoqnN6lnWaCG3CwdMOcMrwJmK/0RvggmNzfT2yVlqLtp/1CsTPrU0PZspMqkKWXMemSrlduYN4JPHyL4+OntZDkJJfXD7Ja+95ndeabPavWGRVDtL481+wyviJoerKUtXVghhuy2M2XPL33WPnaWMyG6C8NzdnIFozI/UrhBBRfGylRqpi6bHebjl+S1OP0IhfM/BaGgoU9XJfoAZpMunsS5KfgZPYbSdIjD+q2DGzZ7uHKlcfi0u8dfMTinCJ4XcaJYOnBmWUmfM7euh7K2cBilzJYyzvLmFgLbK3j1ZvGvj9Gvf6H/RpObD9Gvb97NPkav39wtlt2Qz/eTyUprVzC73byO6N//D7Pa9N1k/OI/AQAA///J2TBE" + return "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" } diff --git a/x-pack/filebeat/module/aws/s3access/_meta/fields.yml b/x-pack/filebeat/module/aws/s3access/_meta/fields.yml index a236865dc1ed..e2403485bd2c 100644 --- a/x-pack/filebeat/module/aws/s3access/_meta/fields.yml +++ b/x-pack/filebeat/module/aws/s3access/_meta/fields.yml @@ -1,5 +1,6 @@ - name: s3access type: group + release: beta description: > Fields for AWS S3 server access logs. fields: diff --git a/x-pack/filebeat/module/aws/vpcflow/_meta/fields.yml b/x-pack/filebeat/module/aws/vpcflow/_meta/fields.yml index c03fa21c8617..1fbd4b37562f 100644 --- a/x-pack/filebeat/module/aws/vpcflow/_meta/fields.yml +++ b/x-pack/filebeat/module/aws/vpcflow/_meta/fields.yml @@ -1,5 +1,6 @@ - name: vpcflow type: group + release: beta description: > Fields for AWS VPC flow logs. fields: