To retrieve two particular values from logstash and perform mathematical operation


This is the log ,I need to retrieve the values xet(End Time) and xst(Start Time) alone and subtract xst from xet to get the duration,can I do this usuing grok

You can use grok but it's better to use a json filter (or possibly a json codec).

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.