Logstash grok filter for mailbox.log zimbra server

hi i am triying to build a pattern fro this log line in mailbox.log for zimbra

2017-04-03 20:31:09,256 INFO [LmtpServer-3] [ip=;] lmtp - Delivering message: size=1517 bytes, nrcpts=1, sender=admin@server.tn, msgid=20170403183049.4581C40F490F@zimbra.server.tn

this is how far i got in making the pattern
ZIMBRA_MAILBOXLOG %{YEAR:year}-%{MONTHNUM:month}-%{MONTHDAY:day} %{TIME:time},(?[d]*) %{WORD:loglevel} [%{DATA:class}] [%{IP:client}]

any help please to complete it thanks :slight_smile:

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.