We are using Filebeat for processing Syslog messages sent from switches. We know that the raw Syslog messages contain the hostname of the device (we tested it with RSyslog).
The problem is that Filebeat does not read the hostname field, only the IP Address. We are using the Cisco IOS module in Filebeat. Is it possible to add/enable this missing field? And why is Filebeat not parsing this field?
Could we maybe use another module that actually parses the hostname inside the messages? Or is this possible in Cisco IOS module?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.