Hi! You may have seen my previous thread about populating the standard @timestamp. I managed this although, the standard @timestamp shows the local time. So if the event in a log file says something was done at 13.00 the timestamp field will show 16.00. Is there anyway to fix this or shouldn't I tamper with this?
Here is a picture for show.
Notice difference between the timestamp under the "time" field and the timestamp under the "_source" field.