# How to create multiple pattern dissect processor - Ingest pipeline

**URL:** <https://discuss.elastic.co/t/how-to-create-multiple-pattern-dissect-processor-ingest-pipeline/237688>\
**Category:** Elasticsearch\
**Created:** [June 18, 2020, 6:06pm UTC](https://discuss.elastic.co/t/how-to-create-multiple-pattern-dissect-processor-ingest-pipeline/237688 "2020-06-18T18:06:13Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Mohan\_vel](https://avatars.discourse-cdn.com/v4/letter/m/49beb7/32.png) [@Mohan\_vel](https://discuss.elastic.co/u/Mohan_vel)\
**Post date:** [June 18, 2020, 6:06pm UTC](https://discuss.elastic.co/t/how-to-create-multiple-pattern-dissect-processor-ingest-pipeline/237688/1 "2020-06-18T18:06:13Z")

</div>

I have created the ingest pipeline to dissect the incoming message with single pattern but the challenge is going with multiple patterns. Given my pipeline for reference.

```auto
    PUT _ingest/pipeline/dissectpipeline
    {
      "description" : "split message content",
        "processors" : [
          {
            "dissect" : {
              "field" : "message",
              "pattern" : "%{agentId}:%{agentId}"
            }
          }
        ]
      }
    }

```

Using above pipeline i am dissecting the agentId for example

Incoming message : "agentId:agent003"

```auto
    After dissecting : 
    {
    "agentId":"agent003"
    } 

```

Ultimately this is working fine but how to add multiple pattern to dissect processor pipeline like agentId i have few more fields like **statuscode, servicename, userRole** likewise and ensure those fields should be available for the visualization in kibana.

Could someone help me to achieve this? Thanks in advance.

---

<div class="post-metadata">

**Author:** ![Mohan\_vel](https://avatars.discourse-cdn.com/v4/letter/m/49beb7/32.png) [@Mohan\_vel](https://discuss.elastic.co/u/Mohan_vel)\
**Post date:** [June 22, 2020, 1:50pm UTC](https://discuss.elastic.co/t/how-to-create-multiple-pattern-dissect-processor-ingest-pipeline/237688/2 "2020-06-22T13:50:11Z")

</div>

Hi Guys,  
Any update.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 20, 2020, 1:50pm UTC](https://discuss.elastic.co/t/how-to-create-multiple-pattern-dissect-processor-ingest-pipeline/237688/3 "2020-07-20T13:50:20Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
