Event enrichment using logstash


are there any plugins I can use to enrich my log entries , eg , querying other sources or files to get more data and create fields based on that ?


Yes, there are quite a few. Have a look at the list of filter plugins. Which ones that are suitable depends on what you want to do, but general ones are jdbc_static, jdbc_streaming and translate.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.