# Replace the @TimeStamp with actual time during a bulk Filebeat Send

**URL:** <https://discuss.elastic.co/t/replace-the-timestamp-with-actual-time-during-a-bulk-filebeat-send/269882>\
**Category:** Logstash\
**Created:** [April 12, 2021, 1:25pm UTC](https://discuss.elastic.co/t/replace-the-timestamp-with-actual-time-during-a-bulk-filebeat-send/269882 "2021-04-12T13:25:18Z")\
**Posts on this page:** 1\
**Showing post:** 4

<div class="post-metadata">

**Author:** ![Badger](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/badger/32/25190_2.png) [@Badger](https://discuss.elastic.co/u/Badger)\
**Post date:** [April 12, 2021, 11:22pm UTC](https://discuss.elastic.co/t/replace-the-timestamp-with-actual-time-during-a-bulk-filebeat-send/269882/4 "2021-04-12T23:22:37Z")

</div>

ISO8601 uses a [CasualISO8601Parser](https://github.com/logstash-plugins/logstash-filter-date/blob/815a4dc7a6d718feefe6eb9e67dc5234495f298d/src/main/java/org/logstash/filters/parser/CasualISO8601Parser.java#L34) and that defers to joda for what ISO8601 means. [joda](https://github.com/JodaOrg/joda-time/blob/e37246fb936b2c242812235dff53c749e18ec200/src/main/java/org/joda/time/format/ISODateTimeFormat.java#L488) does not agree that ' 03-MAR-21 03:46:10" is ISO8601 compliant.

Just change your date filter to have the actual format

```
date { match => ["timestamp", "dd-MMM-yy HH:mm:ss"] }
```

---

_[View the full topic](https://discuss.elastic.co/t/replace-the-timestamp-with-actual-time-during-a-bulk-filebeat-send/269882)._
