# Input multiline and json

**URL:** <https://discuss.elastic.co/t/input-multiline-and-json/74040>\
**Category:** Logstash\
**Created:** [February 6, 2017, 10:19am UTC](https://discuss.elastic.co/t/input-multiline-and-json/74040 "2017-02-06T10:19:40Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Rafael\_Marquez\_Diaz](https://avatars.discourse-cdn.com/v4/letter/r/ac91a4/32.png) [@Rafael\_Marquez\_Diaz](https://discuss.elastic.co/u/Rafael_Marquez_Diaz)\
**Post date:** [February 6, 2017, 10:19am UTC](https://discuss.elastic.co/t/input-multiline-and-json/74040/1 "2017-02-06T10:19:40Z")

</div>

Hi all,

My name is Rafa. I stared with logstash one week ago and I have a problem.

I need to read two types of logs from filebeat: json and multiline:

JSON:  
{ "op": "kudos", "trans": "71", "version": "6.7.1", "environment": "pro" }

MULTILINE:  
2017-01-26 11:20:02 UTC postgres postgres 127.0.0.1 22997 idle 1 0LOG: statement: SELECT datname,  
SELECT ,,,,

I'm looking for a way to read this two types if logs at the same time, but I don't find a way.

Can somebody help me?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 6, 2017, 10:19am UTC](https://discuss.elastic.co/t/input-multiline-and-json/74040/2 "2017-03-06T10:19:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
