Skip to content

Instantly share code, notes, and snippets.

@ephrin
Created March 15, 2024 10:48
Show Gist options
  • Save ephrin/bf6371f3790c95e998f10f5ba2332b44 to your computer and use it in GitHub Desktop.
Save ephrin/bf6371f3790c95e998f10f5ba2332b44 to your computer and use it in GitHub Desktop.
Grok postfix Datadog rules
queued %{date("yyyy-MM-dd'T'HH:mm:ss.SSSSSSZZ"):date} %{notSpace:hostname} %{notSpace:source}/%{notSpace:proc}\[%{integer:op}\]\: %{notSpace:procCode}\: %{data:attr:keyvalue} \(%{data:message}\)
cleaned %{date("yyyy-MM-dd'T'HH:mm:ss.SSSSSSZZ"):date} %{notSpace:hostname} %{notSpace:source}/%{notSpace:proc}\[%{integer:op}\]\: %{notSpace:procCode}\: %{data:attr:keyvalue}
daemon %{date("yyyy-MM-dd'T'HH:mm:ss.SSSSSSZZ"):date} %{notSpace:hostname} %{notSpace:source}/%{notSpace:proc}\[%{integer:op}\]\:\s+%{data:message}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment