Hi,
How to write grok match for following date in logstash:
20161219T003209.939-05:00
I have tried following but it is giving "_dateparsefailure:"
date{
match => [ "timestamp" , "yyyyMMddHHmmss.SSSZ" ]
}
Any help please!!!
Hi,
How to write grok match for following date in logstash:
20161219T003209.939-05:00
I have tried following but it is giving "_dateparsefailure:"
date{
match => [ "timestamp" , "yyyyMMddHHmmss.SSSZ" ]
}
Any help please!!!
your format has T in the middle, so you need this instead:
filter { date { match => [ "message" , "yyyyMMdd'T'HHmmss.SSSZ" ] } }
Sry for the delayed reply, this pattern worked
Thanks alot !!
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.