# How to replace @timestamp in kibana?

**URL:** <https://discuss.elastic.co/t/how-to-replace-timestamp-in-kibana/158660>\
**Category:** Elasticsearch\
**Created:** [November 28, 2018, 10:46pm UTC](https://discuss.elastic.co/t/how-to-replace-timestamp-in-kibana/158660 "2018-11-28T22:46:47Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Bala\_Chandrahas](https://avatars.discourse-cdn.com/v4/letter/b/7993a0/32.png) [@Bala\_Chandrahas](https://discuss.elastic.co/u/Bala_Chandrahas)\
**Post date:** [November 28, 2018, 10:46pm UTC](https://discuss.elastic.co/t/how-to-replace-timestamp-in-kibana/158660/1 "2018-11-28T22:46:47Z")

</div>

filter {

mutate {

split =\> [message, ","]

add\_field =\> {"Hostname" =\> "%{message[0]}"}

add\_field =\> {"Metric-Name" =\> "%{message[1]}"}

convert =\> { "message[2]" =\> "integer" }

add\_field =\> {"Metric\_timestamp" =\> "%{message[2]}"}

convert =\> { "Metric\_timestamp" =\> "integer" }

add\_field =\> {"Metric-value" =\> "%{message[3]}"}

}

date {

match =\> ["Metric\_timestamp","ISO8601"]

timezone =\> "America/New\_York"

target =\> "@timestamp"

}

}

I am using above format but it is not working and my data is in text file which is in below format  
hostname,metricname,2018-11-28T19:21:12,value.

I am getting "Metric\_timestamp" this field as string. either i need timestamp in date format or replace @timestamp.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 26, 2018, 10:46pm UTC](https://discuss.elastic.co/t/how-to-replace-timestamp-in-kibana/158660/2 "2018-12-26T22:46:58Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
