Hi! I use Filebeat on a central Syslog server which collects logs from all network devices. Filebeat is configured to collect the logs (which are arrenged by days in the month) from this server and sends them to Logstash.
The log.file.path fileld's value is the following: /var/log/remote/device name/.
I would like to split the device name from the log.file.path field and make a new field for this which will be the device name field. And later visualize in Kibana.
I didn't found anything similar to this so far. Thank you for in advance!
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.