Logstash logs want in proper format

Hello Everyone

I am recieved message from some alerts and data is look like as belwo I want to set in proper looks can you please help any one ?

type=update&date_time=2022-04-27T04%3A11%3A06-05%3A00&initiated_from=admin&initiated_by=admin&list=0&contact%5Bid%5D=9&contact%5Bemail%5D=sureshb%40xxx.com&contact%5Bfirst_name%5D=suresh&contact%5Blast_name%5D=Bari&contact%5Bphone%5D=984898456&contact%5Bip%5D=0.0.0.0&contact%5Btags%5D=ContradoCommerce-customer&contact%5Bfields%5D%5B2%5D=Active&contact%5Bfields%5D%5B3%5D=1&contact%5Bfields%5D%5B4%5D=Yes&contact%5Bfields%5D%5B6%5D=%7C%7CDropShipper%7C%7CSeller%7C%7CStudent%7C%7C&contact%5Bfields%5D%5B5%5D=%7C%7CDropShipper%7C%7CSeller%7C%7CStudent%7C%7C&contact%5Bfields%5D%5B0%5D=Locked&contact%5Bfields%5D%5B8%5D=17-09-2021&contact%5Bfields%5D%5B9%5D=cdouk&contact%5Bcustomer_acct_name%5D=&contact%5Borgname%5D=&customer_acct_name=&customer_acct_id=0&orgname=&_url=%2Fin.php

Do you mean you want to separate all of these into their own field, using the & as a field separator?

@warkolm
Thank you for Reply

Yes you got exect point how can I achive that using logstash.?

Take a look at the CSV or dissect filters.

@warkolm

Thank you sir Give me Quick response

Solve this problem using KV and Mutate filter

1 Like

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.