I am new to ES and logstash. I am getting some unwanted logs with source : "horizon-error" in Kibana. I want to drop those messages. Have tried below option, but no luck. Would really appreciate any help.
if "horizon" in [source] { drop{} } }
This is how my logstash.conf looks like.
input {
syslog { port => 5544 codec => json type => "infra" } }
filter {
if "horizon" in [source] { drop{} } }
output {
elasticsearch { hosts => ["localhost:9200"] index => "infra-%{cloudname}-%{+YYYY.MM.dd}" } }