We have a list of filebeat processors that can modify the data before it is being sent to the output, you can add them after the two processors you already have:
And if you need to copy a value from an existing field:
There should be a few yml examples in those docs as well
It gives me "path" => "{\"kafka\":{\"topic\":\"kafka-topic-test\",\"consumer_group\":\"logstash\",\"partition\":0,\"offset\":72,\"key\":\"null\",\"timestamp\":1720134475223}}"
there is no op_type in metadata... i don't know if i did something wrong ?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.