I want to write Grok Filter for 100 Unique type of logs. Currently i have written for syslog and one log of our application. So i need to write 99 more grok filter. Can you please let me know how i can make it easy.
As per my knowledge i need to write 99 grok filter and need to append them with earlier 2 filter. But it is very complicated way...Please suggest some better way to complete my task.
A single grok filter can list multiple expressions so you don't need 100 grok filters. See the example in the grok filter documentation.
If you don't want your configuration or logs to get garbled when posting here make sure you format it as preformatted text using Markdown notation or the </> toolbar button.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.