I have generated logs in HPUX and shipped it to my elk server but logstash is reading those complete logs as one string. I want to split the GREEDYDATA field to generate specific fields. Is their any option in grok or any other way to do so? Is their anything like awk or substrings in grok?
Kindly refer the above screenshot. We want to separate the timestamp, hostname, message and the value fields.