# Create multiple events/docs from a single line

**URL:** https://discuss.elastic.co/t/create-multiple-events-docs-from-a-single-line/32578
**Category:** Logstash
**Created:** [October 20, 2015, 2:43pm UTC](https://discuss.elastic.co/t/create-multiple-events-docs-from-a-single-line/32578 "2015-10-20T14:43:40Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![luis.carvalho](https://avatars.discourse-cdn.com/v4/letter/l/d07c76/32.png) [@luis.carvalho](https://discuss.elastic.co/u/luis.carvalho)
#### Post date: [October 20, 2015, 2:43pm UTC](https://discuss.elastic.co/t/create-multiple-events-docs-from-a-single-line/32578/1 "2015-10-20T14:43:40Z")

</div>

Hi!  
I want to know if there is any filter plugin that can create multiple events/docs from a single line.

For example, in my input data I have a field with the next line:

**"field\_name":"AAA:AAAA:AAAA;BBBB:BBB:BBB;CCCC:CCCC:CCC"**

and I pretend to split by ";" to create new events like:

**{"@timestamp" =\> "XXXX",**  
**"@version" =\> "1",**  
**"message" =\> "AAA:AAAA:AAAA" }**

**{"@timestamp" =\> "XXXX",**  
**"@version" =\> "1",**  
**"message" =\> "BBBB:BBB:BBB" }**

**{"@timestamp" =\> "XXXX",**  
**"@version" =\> "1",**  
**"message" =\> "CCCC:CCCC:CCC" }**

I already try the multiline codec and works beautiful in the input part, but in the filter part it give me:

**"tags" =\> [**  
**[0] "multiline"**  
**]**

The code in the filter part is:

**multiline {**  
**pattern =\> ";"**  
**negate =\> true**  
**what =\> "next"**  
**source =\> "field\_name"**  
**}**

Thanks

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [July 6, 2017, 5:26am UTC](https://discuss.elastic.co/t/create-multiple-events-docs-from-a-single-line/32578/2 "2017-07-06T05:26:02Z")

</div>


