mirror of
https://github.com/crowdsecurity/crowdsec.git
synced 2025-05-15 22:04:03 +02:00
16 lines
629 B
Text
16 lines
629 B
Text
line: Sep 19 18:33:22 scw-d95986 sshd[24347]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=1.2.3.4
|
|
├ s00-raw
|
|
| └ 🟢 crowdsecurity/syslog-logs (+12 ~9)
|
|
├ s01-parse
|
|
| └ 🟢 crowdsecurity/sshd-logs (+8 ~1)
|
|
├ s02-enrich
|
|
| ├ 🟢 crowdsecurity/dateparse-enrich (+2 ~2)
|
|
| ├ 🟢 crowdsecurity/geoip-enrich (+10)
|
|
| └ 🟢 crowdsecurity/whitelists (unchanged)
|
|
├-------- parser success 🟢
|
|
├ Scenarios
|
|
├ 🟢 crowdsecurity/ssh-bf
|
|
├ 🟢 crowdsecurity/ssh-bf_user-enum
|
|
├ 🟢 crowdsecurity/ssh-slow-bf
|
|
└ 🟢 crowdsecurity/ssh-slow-bf_user-enum
|
|
|