Update README

This commit is contained in:
Shane
2018-11-10 18:32:29 +00:00
parent 525ecff602
commit 2d4155ffce

16
README
View File

@@ -1,24 +1,26 @@
Configure Kafka topics (run on one kafka node)
## Installation on FreeBSD
#Configure Kafka topics (run on one kafka node)
doc/kafka_topics.sh
Initialize elasticsearch:
#Initialize elasticsearch:
curl -X PUT 'http://<elasticsearch>:9200/threatline' -d@doc/es_mapping.json
Install service file (FreeBSD):
#Install service file:
cp doc/threatline /usr/local/etc/rc.d/threatline
Enable threatline:
#Enable threatline:
sysrc threatline_enable=YES
sysrc threatline_agents="normalize enrich check archive"
Start threatline:
#Start threatline:
service threatline start
Monitor logs:
#Monitor logs:
tail -f /tmp/tl_worker.log
Stages:
#Stages:
Normalize: Touch-up/rename fields, etc.
Enrich: Enrich and part of the message.
Check: Checks parts of message (now enriched) against known bad stuff.