SInce updating to logstash 5.2 (from 2.x) glob is []

If i wanted to take the year and month from within the log to use as the index name in elasticsearch, how do i do that?

Just use %{+YYYY.MM} in the index option of your elasticsearch output.