I know a quite similar question was raised in Time between timestamp but a clear answer wasn't given there.
I would like to calculate the difference between every consecutive logs timestamp and insert the result as a new field in the latter log.
I guess the elapsed filter is my best bet, but I am rather new to logstash and I couldn't find out how I should do it.
Any help would be appreciated.
You can saved it in a variable of the ruby plugin (needs worker set to 1 like the elapsed plugin to give always the correct value)
it should be something like this:
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.