HI Team,
WE are using ELK 6.4.0 in production and by using Rsyslog service we are sending log from application server to logstash.
In application log we have multline data and we are not sure which we can use to send the log.
Sample log:
[ERROR ] 2020-11-20 starts like this
startmsg.regex="<<what need to be parse to match above log>>"