When I am collecting logs from Syslog and transferring those logs to kibana using filebeat, I am getting a tab named by message in row format as below mention:
You can surely use the KV filter plugin consider you dont use logstash you might want to setup an Elasticsearch ingest pipeline with filter processor like
Everything is working fine except the field split, I m not able to add whitespce in field_split. Please see the below mention screenshot. Can you please look into this and confirm what possible action I can perform?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.