# Skip\_newline no effect in filestream parsers.multiline

**URL:** <https://discuss.elastic.co/t/skip-newline-no-effect-in-filestream-parsers-multiline/282913>\
**Category:** Beats\
**Tags:** docker, filebeat\
**Created:** [August 31, 2021, 12:07pm UTC](https://discuss.elastic.co/t/skip-newline-no-effect-in-filestream-parsers-multiline/282913 "2021-08-31T12:07:29Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![kenix](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kenix/32/93679_2.png) [@kenix](https://discuss.elastic.co/u/kenix)\
**Post date:** [August 31, 2021, 12:07pm UTC](https://discuss.elastic.co/t/skip-newline-no-effect-in-filestream-parsers-multiline/282913/1 "2021-08-31T12:07:29Z")

</div>

Context:

- [docker.elastic.co/beats/filebeat-oss:7.14.0](http://docker.elastic.co/beats/filebeat-oss:7.14.0) image
- mac os latest

Filebeat settings:

```auto
filebeat.inputs:
- type: filestream
  enabled: true
  paths:
  - /usr/var/log/foo.log
  parsers:
  - multiline:
      type: pattern
      pattern: '^[[:space:]]+(at|\.{3})[[:space:]]+|^(Caused|Wrapped) by:'
      negate: false
      match: after
      skip_newline: false

filebeat.config:
  modules:
    path: ${path.config}/modules.d/*.yml
    reload.enabled: false

output.kafka:
  # initial brokers for reading cluster metadata
  hosts:
  - 'localhost:9092'

```

Java stacktrace is recognised and brought into one line, but the concatenation drops line breaks and makes the resulting message not easily readable. Switching skip\_newline off or being left out doesn't help, although the documentation says it controls the concatenation behavior.

---

<div class="post-metadata">

**Author:** ![kvch](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kvch/32/72058_2.png) [@kvch](https://discuss.elastic.co/u/kvch)\
**Post date:** [September 3, 2021, 2:16pm UTC](https://discuss.elastic.co/t/skip-newline-no-effect-in-filestream-parsers-multiline/282913/2 "2021-09-03T14:16:11Z")

</div>

Could you please share example events and expected outputs?

---

<div class="post-metadata">

**Author:** ![kenix](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kenix/32/93679_2.png) [@kenix](https://discuss.elastic.co/u/kenix)\
**Post date:** [September 7, 2021, 1:48pm UTC](https://discuss.elastic.co/t/skip-newline-no-effect-in-filestream-parsers-multiline/282913/3 "2021-09-07T13:48:28Z")

</div>

False alarm: the line breaks are there. It was just the viewer we used didn't display them. You can close this one now.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 5, 2021, 3:48pm UTC](https://discuss.elastic.co/t/skip-newline-no-effect-in-filestream-parsers-multiline/282913/4 "2021-10-05T15:48:30Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
