3.12.0
Starting from this version, Rsyslog support for TLS < 1.2 has been disabled. Log sources connecting to TLS enabled ports 6514 (Syslog) and 20515 (RELP) have to use TLS version 1.2 or newer.
- Improved parsing of
filebeatlogs. In particular, previously unparsed source file path will now be indexed in fieldmsg.filepathwhich will help distinguish between source files from which you are pulling logs usingfilebeat. - The limit for maximum count of allowed TCP sessions for TLS Syslog (port 6514) has been raised.
- Added an option to disable Filebeat/Winlogbeat config updates via registry setting. More here
- Dropped support of Rsyslog TLS < 1.2
- Deleted IP prefix list Kerio Connect.
- For Beats agents, the bulk delete action now respects filtered records
- filter beat agents
- select all filtered agents
- delete filtered agents