I am using Filebeat GA 5.0.0. I have log files having entries like;
<Jan 16, 2017 9:35:11 AM GMT> <field_a> <field_b> <field_c> <field_d> <field_e> <field_f> <field_g> <field_h> <field_i> <field_j> <field_k>
I dont want to populate fields
<field_f> in my elasticsearch. Currently, I am achieving this at Logstash, using
mutate. Is it possible to do this in FIlebeat, so that Filebeat removes these unwanted entries before shipping?
Thanks in advance.