Hi,
I have configured aws clodutrail module using filebeat to push the logs to Elasticsearch. Logs are pushed to the elk. But am facing two issues.
- Messages are showing in string instead of json
- If i used processor and changed message to string. But the dashboard for cloudtrail is not satisfied with default ingest grok pattern.
Please help me to view the output in dashboard.