Hello Mario,
You can use the grok filter for example.
This could be your pattern: \[%{GREEDYDATA:json}\]
It creates a field called json containing everything between the brackets.
Best regards
Wolfram
Hello Mario,
You can use the grok filter for example.
This could be your pattern: \[%{GREEDYDATA:json}\]
It creates a field called json containing everything between the brackets.
Best regards
Wolfram
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.