# Elastic Common Schema Jobss Logs Implementation

**URL:** https://discuss.elastic.co/t/elastic-common-schema-jobss-logs-implementation/362002
**Category:** Elasticsearch
**Tags:** elastic-stack-monitoring, ecs-elastic-common-schema
**Created:** [June 25, 2024, 9:38am UTC](https://discuss.elastic.co/t/elastic-common-schema-jobss-logs-implementation/362002 "2024-06-25T09:38:57Z")
**Posts on this page:** 1
**Page:** 1

<div class="post-metadata">

### Author: ![kishorkumar](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kishorkumar/32/132930_2.png) [@kishorkumar](https://discuss.elastic.co/u/kishorkumar)
#### Post date: [June 25, 2024, 9:38am UTC](https://discuss.elastic.co/t/elastic-common-schema-jobss-logs-implementation/362002/1 "2024-06-25T09:38:57Z")

</div>

Hello i am injesting jboss logs to the elastic have some of the fields to grok, but i want to use the ELastic Common schema to store those

here is my log:

```auto
2024-06-25 11:59:50,358 ERROR [stderr] (default task-100) at org.jboss.xnio.nio@3.8.10.Final-redhat-00001//org.xnio.nio.WorkerThread.run(WorkerThread.java:591)

```

so i have handled some of the fields but don't know about the class names and methods of java if they are correctly mapped or not , i need little help to map them too

```auto
| grok message """^%{TIMESTAMP_ISO8601:@timestamp}%{SPACE}%{LOGLEVEL:log.level}%{SPACE}\[(?<log.logger>[^\]]+)\]%{SPACE}\((?<log.thread>[^)]+)\)%{SPACE}at %{JAVACLASS:className}@%{DATA:version}//%{JAVACLASS:fullClassName}\.%{JAVAMETHOD:log.origin.function}\(%{DATA:log.origin.file.name}:%{NUMBER:log.origin.file.line}\)"""

| grok log.origin.file.name """\.%{DATA:file.extension}$"""

| keep @timestamp,message,className,version,fullClassName,log.origin.function,log.origin.file.name,log.origin.file.line,file.extension

```
