Hi all,
I'm building a basic SIEM for my home network using Fluentd, Loki, and Grafana.
My Unifi controller sends the logs to port 1514 on my fluentd server, however it sends loads of different lines from multiple devices and they're all in slightly different formats.
I've managed to pattern-match the main one I'm concerned about (inbound attempts to access the network), however I'd love to match the other lines as well.
At the moment, I'm using the regex_parser - do I need to have multiple parsers, one for each regex, or is the another way of doing it?
Thanks in advance,
Matt