Tag Archives: grokk

How to extract filename from filebeat shipped logs

This post will show how to extract filename from filebeat shipped logs, using elasticsearch pipelines and grok. I will also show how to deal with the failures usually seen in real life. With that said lets get started.