Logstash output plugin syslog enquiry


Dear all,

I am trying to using plugin syslog to forward the log to other place instead of elasticsearch. But I find the log as follow

Mar 5 15:39:55 Mar 05 07:39:53 [-]: connect from localhost

The first second date and IP is the original host. May I know is it possible to remove the fist data and ip from the log or any other way to forward original log to other place?


(system) #2

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.