Yeah so it seems parsing is fine, most likely your syslog have lines we dont care about, the only one I can see from the image is sshd but depending on how you configured it (accept keys only) we may not see password brute forcing.
iiAmLoz
4
Related topics
| Topic | Replies | Views | Activity | |
|---|---|---|---|---|
| Parser syslog-logs.yaml has no name,author or description. Skipping? | 5 | 643 | November 6, 2020 | |
| Crowdsec parser issues | 3 | 1340 | January 3, 2025 | |
| Help: having only unparsed logs | 7 | 5564 | April 8, 2021 | |
| Sshd-logs parser: problems with log files | 3 | 2413 | November 10, 2022 | |
| Crowdsec and Traefik | 7 | 5732 | March 13, 2022 |