Yeah so it seems parsing is fine, most likely your syslog have lines we dont care about, the only one I can see from the image is sshd but depending on how you configured it (accept keys only) we may not see password brute forcing.
iiAmLoz
4
Related topics
| Topic | Replies | Views | Activity | |
|---|---|---|---|---|
|
Parser syslog-logs.yaml has no name,author or description. Skipping?
|
5 | 626 | November 6, 2020 | |
| Crowdsec parser issues | 3 | 1195 | January 3, 2025 | |
|
Help: having only unparsed logs
|
7 | 5450 | April 8, 2021 | |
|
Sshd-logs parser: problems with log files
|
3 | 2352 | November 10, 2022 | |
| Crowdsec and Traefik | 7 | 5672 | March 13, 2022 |