In the conditional that wraps the drop filter, don't match the datetimein field against the regexp. You've destroyed its contents with the previous filter operations. Match the message field.
In the conditional that wraps the drop filter, don't match the datetimein field against the regexp. You've destroyed its contents with the previous filter operations. Match the message field.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.