From 0ecebd3f1fcf8ecbb82e640a14297e81fa60878c Mon Sep 17 00:00:00 2001 From: "madhav.pandya" Date: Wed, 13 Nov 2024 14:55:42 +0530 Subject: [PATCH] Resolved PR comments. --- .../assets/logs/cisco-secure-web-appliance.yaml | 6 ++---- 1 file changed, 2 insertions(+), 4 deletions(-) diff --git a/cisco_secure_web_appliance/assets/logs/cisco-secure-web-appliance.yaml b/cisco_secure_web_appliance/assets/logs/cisco-secure-web-appliance.yaml index e74549d43d379..bcab3dba9f097 100644 --- a/cisco_secure_web_appliance/assets/logs/cisco-secure-web-appliance.yaml +++ b/cisco_secure_web_appliance/assets/logs/cisco-secure-web-appliance.yaml @@ -1,7 +1,5 @@ id: cisco-secure-web-appliance metric_id: cisco-secure-web-appliance -# If for some reason id must be different than app_id, add the app_id in this field instead. -# If id and app_id already match, this field can be left blank. backend_only: false facets: - groups: @@ -374,10 +372,10 @@ pipeline: sources: - syslog.severity - type: pipeline - name: Processing of l4tm logs. + name: Processing of l4tm logs enabled: true filter: - query: "service:l4tm_logs " + query: "service:l4tm_logs" processors: - type: grok-parser name: Parse l4tm logs