From bf4067853638c5e7cfc92f6c3635b2f0311da755 Mon Sep 17 00:00:00 2001 From: Thomas Widhalm Date: Fri, 9 Aug 2019 18:28:12 +0200 Subject: [PATCH] Update README.md Fix a broken link --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 4d44eb8..e0588e6 100644 --- a/README.md +++ b/README.md @@ -15,7 +15,7 @@ If you need a jumpstart, this docs show you a simple configuration for [Filebeat ## Capabilities ## -The logs will be parsed and split into fields where we see a possible use. Field names are set according to Elastic Common Schema (ECS) wehere fit and stick to a nomenclature which should not interfere with your other field names. For details see the [docs](doc/doc/30-namingscheme.md). Short version: All fields which are not covered by ECS are subfields of the `icinga` field. +The logs will be parsed and split into fields where we see a possible use. Field names are set according to Elastic Common Schema (ECS) wehere fit and stick to a nomenclature which should not interfere with your other field names. For details see the [docs](doc/30-namingscheme.md). Short version: All fields which are not covered by ECS are subfields of the `icinga` field. In the `dashboards` directory there are some sample dashboards you can use with this ruleset.