# Logstash can not parse azure activity logs

**URL:** <https://discuss.elastic.co/t/logstash-can-not-parse-azure-activity-logs/76801>\
**Category:** Logstash\
**Created:** [February 28, 2017, 2:54pm UTC](https://discuss.elastic.co/t/logstash-can-not-parse-azure-activity-logs/76801 "2017-02-28T14:54:10Z")\
**Posts on this page:** 1\
**Showing post:** 2

<div class="post-metadata">

**Author:** ![111148](https://avatars.discourse-cdn.com/v4/letter/1/eb8c5e/32.png) [@111148](https://discuss.elastic.co/u/111148)\
**Post date:** [March 7, 2017, 4:08pm UTC](https://discuss.elastic.co/t/logstash-can-not-parse-azure-activity-logs/76801/2 "2017-03-07T16:08:16Z")

</div>

Hello,  
Found this topic. [Best way to parse json input?](https://discuss.elastic.co/t/best-way-to-parse-json-input/29809)

described there method works,

input {  
exec {  
command =\> "type c:\PT1H.json"  
codec =\> json  
interval =\> 60  
}  
}

but it reads only one entry from json and repeats this json record each time during the mentioned interval. (duplicates the same document in loop).

 ![](https://us1.discourse-cdn.com/elastic/original/3X/3/2/32446e1474e132ae7175fb0355c492a226e5c117.png)

Is there any method to read all entire json document from the begin till its end without time duplicates?

---

_[View the full topic](https://discuss.elastic.co/t/logstash-can-not-parse-azure-activity-logs/76801)._
