diff --git a/README.md b/README.md index 10c2794..463e9f9 100644 --- a/README.md +++ b/README.md @@ -1,26 +1,26 @@ -## Installation on FreeBSD +## Installation on FreeBSD -#Configure Kafka topics (run on one kafka node) +# Configure Kafka topics (run on one kafka node) doc/kafka_topics.sh -#Initialize elasticsearch: +# Initialize elasticsearch curl -X PUT 'http://:9200/threatline' -d@doc/es_mapping.json -#Install service file: +# Install service file cp doc/threatline /usr/local/etc/rc.d/threatline -#Enable threatline: +# Enable threatline sysrc threatline_enable=YES sysrc threatline_agents="normalize enrich check archive" -#Start threatline: +# Start threatline service threatline start -#Monitor logs: +# Monitor logs tail -f /tmp/tl_worker.log -#Stages: +# Stages Normalize: Touch-up/rename fields, etc. Enrich: Enrich and part of the message. Check: Checks parts of message (now enriched) against known bad stuff.