syslog raw message
<10>Jan 18 03:11:45 ipmi: Health EventLog | 2011/01/01 00:01:59 | 172.16.0.21 | Critical | General Chassis Intrusion - Assertion | Physical security (Chassis Intru) <14>Jan 18 03:11:46 ipmi: Health EventLog | 2020/02/25 22:16:02 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:11:47 ipmi: Health EventLog | 2020/02/25 22:42:17 | 172.16.0.21 | Information | Base OS/Hypervisor installation completed - Assertion | Base OS Boot/Installation Status () <10>Jan 18 03:11:48 ipmi: Health EventLog | 2020/02/25 22:42:46 | 172.16.0.21 | Critical | runtime critical stop (a.k.a. core dump, blue screen) - Assertion | OS Stop/Shutdown (FAN1) <14>Jan 18 03:11:49 ipmi: Health EventLog | 2020/02/25 23:25:10 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:11:50 ipmi: Health EventLog | 2020/02/25 23:33:04 | 172.16.0.21 | Information | Base OS/Hypervisor installation completed - Assertion | Base OS Boot/Installation Status () <10>Jan 18 03:11:51 ipmi: Health EventLog | 2020/02/25 23:37:03 | 172.16.0.21 | Critical | runtime critical stop (a.k.a. core dump, blue screen) - Assertion | OS Stop/Shutdown (FAN1) <12>Jan 18 03:11:52 ipmi: Health EventLog | 2019/12/16 05:49:01 | 172.16.0.21 | Warning | First AC Power on - Assertion | ACPowerOn (OEM) <12>Jan 18 03:11:53 ipmi: Health EventLog | 2019/12/16 05:49:00 | 172.16.0.21 | Warning | First AC Power on - Assertion | ACPowerOn (OEM) <10>Jan 18 03:11:54 ipmi: Health EventLog | 2020/11/10 03:35:53 | 172.16.0.21 | Critical | General Chassis Intrusion - Assertion | Physical security (Chassis Intru) <10>Jan 18 03:11:55 ipmi: Health EventLog | 2020/11/10 03:35:56 | 172.16.0.21 | Critical | Power Supply Failure detected - Assertion | Power supply (PS1 Status) <12>Jan 18 03:11:56 ipmi: Health EventLog | 2019/12/16 05:49:00 | 172.16.0.21 | Warning | First AC Power on - Assertion | ACPowerOn (OEM) <10>Jan 18 03:11:57 ipmi: Health EventLog | 2020/12/02 03:53:43 | 172.16.0.21 | Critical | General Chassis Intrusion - Assertion | Physical security (Chassis Intru) <10>Jan 18 03:11:58 ipmi: Health EventLog | 2020/12/02 03:53:46 | 172.16.0.21 | Critical | Power Supply Failure detected - Assertion | Power supply (PS1 Status) <14>Jan 18 03:11:59 ipmi: Health EventLog | 2020/12/03 04:37:45 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:00 ipmi: Health EventLog | 2020/12/03 05:04:20 | 172.16.0.21 | Information | Base OS/Hypervisor installation completed - Assertion | Base OS Boot/Installation Status () <12>Jan 18 03:12:01 ipmi: Health EventLog | 2020/12/23 02:30:53 | 172.16.0.21 | Warning | First AC Power on - Assertion | ACPowerOn (OEM) <10>Jan 18 03:12:02 ipmi: Health EventLog | 2020/12/23 02:31:46 | 172.16.0.21 | Critical | General Chassis Intrusion - Assertion | Physical security (Chassis Intru) <14>Jan 18 03:12:03 ipmi: Health EventLog | 2021/06/28 02:44:37 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <12>Jan 18 03:12:04 ipmi: Health EventLog | 2019/12/16 05:49:00 | 172.16.0.21 | Warning | First AC Power on - Assertion | ACPowerOn (OEM) <10>Jan 18 03:12:05 ipmi: Health EventLog | 2021/07/01 08:14:32 | 172.16.0.21 | Critical | General Chassis Intrusion - Assertion | Physical security (Chassis Intru) <14>Jan 18 03:12:06 ipmi: Health EventLog | 2021/07/01 08:15:25 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:07 ipmi: Health EventLog | 2021/07/01 08:24:16 | 172.16.0.21 | Information | Base OS/Hypervisor installation completed - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:08 ipmi: Health EventLog | 2021/07/07 00:59:17 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:09 ipmi: Health EventLog | 2021/07/07 01:09:51 | 172.16.0.21 | Information | Base OS/Hypervisor installation completed - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:10 ipmi: Health EventLog | 2021/07/07 04:00:55 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:11 ipmi: Health EventLog | 2021/07/07 04:17:42 | 172.16.0.21 | Information | Base OS/Hypervisor installation failed - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:12 ipmi: Health EventLog | 2021/07/07 04:31:28 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:13 ipmi: Health EventLog | 2021/07/07 04:38:17 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:14 ipmi: Health EventLog | 2021/07/07 04:45:43 | 172.16.0.21 | Information | Base OS/Hypervisor installation completed - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:15 ipmi: Health EventLog | 2021/07/07 08:16:14 | 172.16.0.21 | Information | Base OS/Hypervisor installation started - Assertion | Base OS Boot/Installation Status () <14>Jan 18 03:12:16 ipmi: Health EventLog | 2021/07/08 00:51:51 | 172.16.0.21 | Information | Base OS/Hypervisor installation aborted - Assertion | Base OS Boot/Installation Status () <10>Jan 18 03:12:17 ipmi: Health EventLog | 2019/12/16 05:50:34 | 172.16.0.21 | Critical | General Chassis Intrusion - Assertion | Physical security (Chassis Intru)
logstash json message
{ "@timestamp": "2022-01-18T04:12:15.386Z", "localtime": "2022-01-18 13:12:15 +0900", "ip": "172.16.0.20", "host": "2020000614-bmc", "message": "<14>Jan 18 04:07:24 ipmi: Maintenance EventLog | 2022/01/18 04:07:24 | 172.16.0.20 | Information | Web login was successful. | Web root(ADMIN) 172.16.0.3\n", } { "@timestamp": "2022-01-18T04:56:50.792Z", "localtime": "2022-01-18 13:56:50 +0900", "ip": "172.16.0.20", "host": "2020000614-bmc", "message": "<12>Jan 18 04:52:00 ipmi: Maintenance EventLog | 2022/01/18 04:52:00 | 172.16.0.20 | Warning | The user attempted to access BMC | Web root 172.16.0.3\n", } { "@timestamp": "2022-01-18T04:57:07.951Z", "localtime": "2022-01-18 13:57:07 +0900", "ip": "172.16.0.20", "host": "2020000614-bmc", "message": "<14>Jan 18 04:52:17 ipmi: Maintenance EventLog | 2022/01/18 04:52:17 | 172.16.0.20 | Information | Syslog was configured to disabled successfully. | Web root(ADMIN) 172.16.0.3\n", }