# Custom Logs integration, drop\_fields processor doesn't work

**URL:** <https://discuss.elastic.co/t/custom-logs-integration-drop-fields-processor-doesnt-work/319228>\
**Category:** Elastic Agent\
**Created:** [November 17, 2022, 5:16pm UTC](https://discuss.elastic.co/t/custom-logs-integration-drop-fields-processor-doesnt-work/319228 "2022-11-17T17:16:04Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![luca.derugeriis](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/luca.derugeriis/32/127309_2.png) [@luca.derugeriis](https://discuss.elastic.co/u/luca.derugeriis)\
**Post date:** [November 17, 2022, 5:16pm UTC](https://discuss.elastic.co/t/custom-logs-integration-drop-fields-processor-doesnt-work/319228/1 "2022-11-17T17:16:04Z")

</div>

Hi everyone,  
I'm trying get a drop\_fields processor working inside Custom Logs integration in Elastic Agent.  
This is my configuration in the "processors" text area in the integration page on kibana.

```auto
- drop_fields:
    fields:
    - host.id

```

The same exact conguration is working with vanilla filebeat.  
I tried to put everything under "Custom configurations" with a processors: tag and to strip the fields to just a simple single field but it is not working.

This is my complete configuration

```auto
$ elastic-agent inspect output --output default --program filebeat

[default] filebeat:
filebeat:
  inputs:
  - exclude_lines:
    - ***
    id: ***
    index: ***
    meta:
      package:
        name: log
        version: 1.1.0
    name: ***
    package_policy_id: 0e083012-7e9e-4243-b820-7e9034974aac
    paths:
    - ***
    pipeline: ***
    processors:
    - add_fields:
        fields:
          input_id: logfile-logs-0e083012-7e9e-4243-b820-7e9034974aac
        target: '@metadata'
    - drop_fields:
        fields:
        - host.id
    - add_fields:
        fields:
          dataset: ***
          namespace: production
          type: logs
        target: data_stream
    - add_fields:
        fields:
          dataset: ***
        target: event
    - add_fields:
        fields:
          stream_id: logfile-log.log-0e083012-7e9e-4243-b820-7e9034974aac
        target: '@metadata'
    - add_fields:
        fields:
          id: 0133b77a-1244-49a5-98cb-466affd757c4
          snapshot: false
          version: 8.5.0
        target: elastic_agent
    - add_fields:
        fields:
          id: 0133b77a-1244-49a5-98cb-466affd757c4
        target: agent
    revision: 12
    type: log
output:
  elasticsearch:
    api_key: ***
    hosts:
    - https://***:9200
    - https://***:9200
    - https://***:9200
    - https://***:9200
    - https://***:9200
    - https://***:9200
    - https://***:9200
    - https://***:9200
    - https://***:9200
    ssl:
      certificate_authorities:
      - ***

```

I couldn't find anything relevant in the log files.

Thanks for helping out.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 15, 2022, 5:16pm UTC](https://discuss.elastic.co/t/custom-logs-integration-drop-fields-processor-doesnt-work/319228/2 "2022-12-15T17:16:38Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
