ive set up wazuh sending logs to graylog succesfully, created streams and indices that are working but for some reason specific logs are missing from in my fortigate stream but are in my archives stream, ive set the stream rules but it isnt working. even specifically matching all rules it still doesnt work please advise.
i even loaded a message to test the rules and it does show all green and that the message will be routed into this stream but it is still empty