你的浏览器禁用了JavaScript, 请开启后刷新浏览器获得更好的体验!
输入关键字进行搜索
搜索:
没有找到相关结果
luohuanfeng
赞同来自:
touch1943
filter { if [fields][log_topic] == "wallet" { grok { match => ["message", "\[%{DATA:raw_datetime}\]\[%{DATA:Thread}\]\[%{DATA:Level}\] - %{DATA:ClassName} %{DATA:MethodName} %{DATA:Time_consuming} \[%{DATA:Parameters}\] %{GREEDYDATA:Result}"] remove_field => "message" } date { match => [ "raw_datetime", "YYYY-MM-dd HH:mm:ss,SSS" ] } mutate { remove_field => [ "raw_datetime" ] } } }
rockybean - Elastic Certified Engineer, ElasticStack Fans,公众号:ElasticTalk
date { match => [ "datetime", "YYYY-MM-dd HH:mm:ss,SSS" ], timezone => "Asia/Shanghai" }
yfj201232002 - 90后IT男
mrji1314 - 90后IT男
要回复问题请先登录或注册
90后IT男
6 个回复
luohuanfeng
赞同来自:
touch1943
赞同来自:
luohuanfeng
赞同来自:
rockybean - Elastic Certified Engineer, ElasticStack Fans,公众号:ElasticTalk
赞同来自:
yfj201232002 - 90后IT男
赞同来自:
mrji1314 - 90后IT男
赞同来自: