# Kibana Customized filters

**URL:** https://discuss.elastic.co/t/kibana-customized-filters/25113
**Category:** Kibana
**Created:** [July 8, 2015, 5:43am UTC](https://discuss.elastic.co/t/kibana-customized-filters/25113 "2015-07-08T05:43:23Z")
**Posts on this page:** 5
**Page:** 1

<div class="post-metadata">

### Author: ![abathula](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/abathula/32/3595_2.png) [@abathula](https://discuss.elastic.co/u/abathula)
#### Post date: [July 8, 2015, 5:43am UTC](https://discuss.elastic.co/t/kibana-customized-filters/25113/1 "2015-07-08T05:43:23Z")

</div>

Hi All,

I am new to working on the Kibana, I need a field in kibana i.e, **Loglevel** search type fileld. How to customize the field in Kibana. Is it possible...???

Thanks in advance...

---

<div class="post-metadata">

### Author: ![tbragin](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tbragin/32/45166_2.png) [@tbragin](https://discuss.elastic.co/u/tbragin)
#### Post date: [July 8, 2015, 5:56am UTC](https://discuss.elastic.co/t/kibana-customized-filters/25113/2 "2015-07-08T05:56:28Z")

</div>

Are you trying to create a field based on parsing of a log line or a syslog record? If so, you should create this field at index time using something like Logstash.

---

<div class="post-metadata">

### Author: ![abathula](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/abathula/32/3595_2.png) [@abathula](https://discuss.elastic.co/u/abathula)
#### Post date: [July 8, 2015, 6:16am UTC](https://discuss.elastic.co/t/kibana-customized-filters/25113/3 "2015-07-08T06:16:06Z")

</div>

Thanks @tbragin. Actually I want to parse a log line of log file.You told me that create a filter in logstash using logstash configuration file right ?? can you see the below URL for as i want in my requirement.

In [http://logstash.openstack.org/](http://logstash.openstack.org/) this link, leftside some fileds are present. Find the **loglevel** filed is there. As same as i want in my requirement also.

---

<div class="post-metadata">

### Author: ![abathula](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/abathula/32/3595_2.png) [@abathula](https://discuss.elastic.co/u/abathula)
#### Post date: [July 8, 2015, 10:06am UTC](https://discuss.elastic.co/t/kibana-customized-filters/25113/4 "2015-07-08T10:06:38Z")

</div>

Hi @tbragin @magnusbaeck , Please can you see the below problem.Fileld is added into Kibana but it's not getting data form that message.Field is going to hidden into kibana fields section.

**Log:**

2015-04-17 23:35:46,932 [10] DEBUG Component.MessageHandler - ID already exists

**Pattern:**

- see the below configuration.

filter{  
grok {  
match =\> { "message" =\> "(?m)%{TIMESTAMP\_ISO8601:time} [%{NUMBER:thread}] %{LOGLEVEL:loglevel} - %{GREEDYDATA:msg} " }  
}

mutate {  
add\_field =\> {  
"loglevel" =\> "%{LOGLEVEL:loglevel}"  
}  
}  
}

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [July 6, 2017, 2:16pm UTC](https://discuss.elastic.co/t/kibana-customized-filters/25113/5 "2017-07-06T14:16:52Z")

</div>


