Hi, i use the elk stack and i have machines in utc time, machines in pst time and some in eastern time. I wanted to know how you guys deal with this with your elk stack. (btw, i can't put everything in utc)
Even when i use the timezone option in the date filters, it doesn't look like it's working. Everything gets the 000 value
In Kibana everything is shown in the same timezone (utc).
match => [ "syslog_timestamp", "MMM dd HH:mm:ss", "MMM d HH:mm:ss", "MMM dd yyyy HH:mm:ss", "MMM d yyyy HH:mm:ss", "MMM d HH:mm:ss" ]
timezone => "America/Montreal"
In Kibana, i'm based on the timestamp when searching for data.
Thanks for the help