# \_dateparsefailure in Kibana

**URL:** https://discuss.elastic.co/t/dateparsefailure-in-kibana/266149
**Category:** Kibana
**Created:** [March 3, 2021, 6:14pm UTC](https://discuss.elastic.co/t/dateparsefailure-in-kibana/266149 "2021-03-03T18:14:57Z")
**Posts on this page:** 3
**Page:** 1

<div class="post-metadata">

### Author: ![kund0831](https://avatars.discourse-cdn.com/v4/letter/k/2bfe46/32.png) [@kund0831](https://discuss.elastic.co/u/kund0831)
#### Post date: [March 3, 2021, 6:14pm UTC](https://discuss.elastic.co/t/dateparsefailure-in-kibana/266149/1 "2021-03-03T18:14:57Z")

</div>

Hi, Good evening

I'm parsing json logs to elasticsearch using logstash json filter. I'm getting \_dataparsefailure in Kibana dashboard and I couldn't see any error logs in logstash regarding this.

`time format in logs : "2021-03-02T18:30:00.007Z"`

`Logstash input configuration is:`

```auto
> 
> filter {
> if "dev" in [tags] {
> json {
> source => "message"
> }
> mutate {
> rename => ["timestamp", "logtime"]
> }
> date {
> match => ["logtime", "YYYY-MM-dd HH:mm:ss.SSS", "YYYY-MM-dd HH:mm:ss.SS"]
> target => "logtime"
> }
> }
> }

```

`filebeat log output:`

```auto
> {
> "log" => {
> "offset" => 586,
> "file" => {
> "path" => "/home/kund0831/json-dev.log"
> }
> },
> "host" => {
> "name" => "kund0831"
> },
> "@version" => "1",
> "logtime" => "2021-03-02T18:30:00.035Z",
> "message" => "hello",
> "@timestamp" => 2021-03-03T17:50:41.770Z,
> "agent" => {
> "name" => "kund0831",
> "ephemeral_id" => "e6db5177-2beb-4fc5-b227-e20203de9acb",
> "version" => "7.10.2",
> "id" => "a6d5bbd9-5b06-469e-9733-917cd833a230",
> "hostname" => "kund0831",
> "type" => "filebeat"
> },
> "tags" => [
> [0] "dev",
> [1] "beats_input_codec_plain_applied",
> [2] "_dateparsefailure"
> ],
> "ecs" => {
> "version" => "1.6.0"
> },
> "input" => {
> "type" => "log"
> },
> "level" => "info",
> "label" => "Multitenancy"
> }

```

Can someone help on this why I'm getting \_dateparsefailure in tags in Kibana?  
How can I fix this?

Thanks

---

<div class="post-metadata">

### Author: ![matw](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/matw/32/13913_2.png) [@matw](https://discuss.elastic.co/u/matw)
#### Post date: [March 4, 2021, 8:02am UTC](https://discuss.elastic.co/t/dateparsefailure-in-kibana/266149/2 "2021-03-04T08:02:09Z")

</div>

Hi and welcome to our community

This doesn't seem to be a Kibana related question, you shared a filebeat log output with `_dateparsefailure`. This seems to be the origin of this message. How is your ingest pipeline configured?  
logs in JSON format -\> filebeat -\> logstash -\> Elasticsearch

Thx & Best,  
Matthias

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [April 1, 2021, 8:02am UTC](https://discuss.elastic.co/t/dateparsefailure-in-kibana/266149/3 "2021-04-01T08:02:44Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
