Using ELK 7.14.0 release.
I'm trying to excludes lines from IIS access log files. I've tried several methods but It still will not work.
I've done that previously with logstash, but I prefer use a simplified architecture.
Last try was to include the following line in filebeat.yml:
processors: - drop_event: when.equals.http.request.method: OPTIONS
I'm tryng to exclude healthcheck lines like these:
2021-05-25 00:03:31 W3SVC2 prewww3 172.25.50.72 OPTIONS / - 80 - 172.25.50.123 HTTP/1.0 - - - - 200 0 0 226 22 2 -
Thanks for help,