Hi,
I'm using input as UDP and storing the output in file. Events have a field "message" which is not having the complete value but it's truncated.
Example:
"message":" ...fkhfhftxt..."
Sample:
{
"@version": "1",
"@timestamp": "2019-10-10T07:32:32.968Z",
"message": "<14>Oct 10 07:32:17 AUE237hnnfhjc ...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...",
"host": "192.5.55.4"
}
How can I get the complete value? Or any way that I split the value into more fields and get complete value?
Please help.