The problem might be with ordering of the processors. The script processor for powershell creates the process.command_line field. So to drop based on that field you would need to do the drop after the script runs.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.