Hi i am generating a config file and from that config file i am able to parse the data form the log but for the event time which is getting parsed from the log file can we change the format of the date after parsing before sending it to elasticsearch.
You can't configure the format of the
@timestamp field, but for other fields you can do anything you want. How to do that depends on the details.
But I think worrying about the timestamp format is a waste of time. ISO8601 is great for storing data and if you want specific formatting that's up to the presentation layer.
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.