I am using ELK GA 5.0.0. I am consuming from Kafka topic using Logstash. Messages are JSON encoded. In the message, I have date field like
\t[05/Feb/2018:10:39:47 +0000]\t. In the grok filter, I am parsing it like;
_grokparsefailure error. To debug the issue, I tried;
It also created the same issue. Again, I tried;
Still no use. Finally, I tried;
This worked. So the issue is with
]. How can I properly escape this and fix the issue to use my first timestamp solution?