# Logstash dash "-" (hyphen) problem with aggregation

**URL:** <https://discuss.elastic.co/t/logstash-dash-hyphen-problem-with-aggregation/251947>\
**Category:** Logstash\
**Created:** [October 13, 2020, 6:12pm UTC](https://discuss.elastic.co/t/logstash-dash-hyphen-problem-with-aggregation/251947 "2020-10-13T18:12:29Z")\
**Posts on this page:** 1\
**Showing post:** 4

<div class="post-metadata">

**Author:** ![Badger](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/badger/32/25190_2.png) [@Badger](https://discuss.elastic.co/u/Badger)\
**Post date:** [October 13, 2020, 7:38pm UTC](https://discuss.elastic.co/t/logstash-dash-hyphen-problem-with-aggregation/251947/4 "2020-10-13T19:38:21Z")

</div>

Well the event that goes to rabbitmq will not have computer\_tag since that mutate is only applied to the events that are discarded, not the event created by aggregate. Move the mutate after the aggregate.

Generally your aggregate looks good. I would add event.cancel to the code option of the aggregate and change push\_previous\_map\_as\_event to push\_map\_as\_event\_on\_timeout

Which logstash version. I wonder if you are hitting [this](https://github.com/elastic/logstash/pull/12204) issue.

---

_[View the full topic](https://discuss.elastic.co/t/logstash-dash-hyphen-problem-with-aggregation/251947)._
