I'm new to elk and I'm trying to figure out how the grok match keyword works.
What I wonder is if I want to parse different line format, do I have to put multiple grok filters one after the other one and the first match that is ok will be used ? Or do I have to first filter my line format with a test and than apply a match keyword ?
In other word does match work as a pattern-matching selector or not ?
My aim is to analyse logs from different applications which have very different formats,
THanks in advance.