Hi all,
How can use logstash to convert an event like this:
{
"@timestamp": "2019-10-29T13:33:46.378Z",
"message": "p_name=yuval;p_surname=khalifa;p_age=41",
"host": "yuvalk",
"p_age": "41",
"@version": "1",
"p_surname": "khalifa",
"p_name": "yuval"
}
to this:
{
"security": {
"@timestamp": "2019-10-29T13:33:46.378Z",
"message": "p_name=yuval;p_surname=khalifa;p_age=41",
"host": "yuvalk",
"p_age": "41",
"@version": "1",
"p_surname": "khalifa",
"p_name": "yuval"
}
}
without handling each field individually by its name.
Is there a way to do that?