# Logstash Syslog @timestamp incorrect

**URL:** <https://discuss.elastic.co/t/logstash-syslog-timestamp-incorrect/166658>\
**Category:** Logstash\
**Created:** [February 1, 2019, 2:04am UTC](https://discuss.elastic.co/t/logstash-syslog-timestamp-incorrect/166658 "2019-02-01T02:04:48Z")\
**Posts on this page:** 1\
**Showing post:** 7

<div class="post-metadata">

**Author:** ![BenB196](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/benb196/32/83401_2.png) [@BenB196](https://discuss.elastic.co/u/BenB196)\
**Post date:** [February 5, 2019, 6:50pm UTC](https://discuss.elastic.co/t/logstash-syslog-timestamp-incorrect/166658/7 "2019-02-05T18:50:10Z")

</div>

I was able to finally get this to set the correct time by using a very round about way.

```
mutate {
    add_field => ["received_at", "%{@timestamp}"]
}
grok {
    match => { "received_at" => "%{TIMESTAMP_ISO8601:timestampNoZ}Z" }
}
date {
    timezone => "America/New_York"
    match => ["timestampNoZ", "ISO8601"]
}
mutate {
    remove_field => ["received_at", "timestampNoZ"]
}

```

While I am sure that this can be cleaned up, it does work in getting the timestamp to be adjusted to the correct value.

---

_[View the full topic](https://discuss.elastic.co/t/logstash-syslog-timestamp-incorrect/166658)._
