From 365c565023c2a2dcc191c9415833bf4e9d61168d Mon Sep 17 00:00:00 2001 From: Phrozyn Date: Mon, 17 Dec 2018 10:58:39 -0600 Subject: [PATCH] updating key fields for pulseguardian events to move source_ip to sourceipaddress. --- mq/esworker_papertrail.py | 2 ++ 1 file changed, 2 insertions(+) diff --git a/mq/esworker_papertrail.py b/mq/esworker_papertrail.py index 99db53d9..b1172f4d 100755 --- a/mq/esworker_papertrail.py +++ b/mq/esworker_papertrail.py @@ -256,6 +256,8 @@ class taskConsumer(object): event['summary'] = event['details']['message'] if 'severity' in event['details']: event['severity'] = event['details']['severity'] + if 'source_ip' in event['details']: + event['sourceipaddress'] = event['details']['source_ip'] else: event['severity'] = 'INFO' event['category'] = 'syslog'