# Grok logstash JSON

**URL:** <https://discuss.elastic.co/t/grok-logstash-json/305152>\
**Category:** Logstash\
**Created:** [May 19, 2022, 9:11am UTC](https://discuss.elastic.co/t/grok-logstash-json/305152 "2022-05-19T09:11:55Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Roshan1](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/roshan1/32/102370_2.png) [@Roshan1](https://discuss.elastic.co/u/Roshan1)\
**Post date:** [May 19, 2022, 9:11am UTC](https://discuss.elastic.co/t/grok-logstash-json/305152/1 "2022-05-19T09:11:55Z")

</div>

EL 8.2  
Kibana 8.2

Hello Team,

could you please advise how to merge the 2 lines below and generate the GONK command?

```auto
{"log":"0.3817706468179257\r\n","stream":"stdout","time":"2022-05-18T10:37:31.746257847Z"}
{"log":"172.17.0.1 - - [18/May/2022 10:37:31] \"POST /face_match HTTP/1.1\" 200 -\r\n","stream":"stdout","time":"2022-05-18T10:37:31.746280386Z"}

Thanks,

Roshan
```

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 16, 2022, 9:12am UTC](https://discuss.elastic.co/t/grok-logstash-json/305152/2 "2022-06-16T09:12:25Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
