I am trying to pars mail enable activity loga there are millions of logs in un even pattern I write some of the pattern and logs pars in well manner ans structured but now the issue is so many logs parsing fail and every time i have to add and update grok pattern if new log pattern is coming and now config file is very huge how i can handle this kind of situation
Thank you for your quick reply Actully this is email server response and getting change logs every email sent and it's response status of recipients and email status so I want some standard solution I am glad if you can help me on this..
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.