Covert logs to JSON in output section of Logstash before it leaves output

Hello ELkan's

Hope all are safe!!!

I'm using kustos output plugin to forward logs to azure data explore which only supports json format, I want to convert my syslog input logs on TCP port to JSON only in kustos output section not in other outputs.
I dont want to convert to input section because it will impact my other outputs in conf.
please advice better approach.
thank you in advance!!


Use multiple pipelines and a forked path pattern.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.