Best way to parse the KV values in logs coming from winlog beat

(Mulligan) #1

Hi experts,

My windows event logs are coming through win log beat and have some key value pairs when i see the xml format of the logs. Is there a way i can parse these fields as key value pairs?

(Mark Walkom) #2

You need to use Logstash to break things apart and extract the KVs.

(system) #3

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.