I am trying to push some of our logs to elasticsearch via logstash. Can some one let me know how can I drop the logs in logstash itself if the logs are not in proper json format , before they are being pushed to elasticsearch.
I can see a
_jsonparsefailure in thetags
array. But I am not sure how to search in thetags
string and drop the log event? Can someone let me know thefilter` config for the logstash?