Event-based logging with privacyIDEA and Logstash

Keeping track of the system logs in a complex environment with many hosts and even more services can be challenging.
A sophisticated logging system with aggregation and filtering capabilities helps the administrator to stay ahead of things.
This article shows how to integrate privacyIDEA in the centralized logging system provided by the elastic stack

privacyIDEA 2.22 with a more flexible RADIUS integration

With privacyIDEA 2.22 we added the possibility to pass more useful userinformation to a RADIUS client like a VPN. The administrator can add a policy to include the resolver and the realm of a user who authenticated successfully. This response data can then be used in the FreeRADIUS plugin and modified by regular expressions to add any arbitrary RADIUS attribute in the RADIUS response, which then would be sent to the VPN. This additional information can be used by Cisco ASA, Citrix Netscaler or any other enterprise grade VPN to put the user into certain subnets or to assign resource to the user.