Skip to content

Instantly share code, notes, and snippets.

View fefore's full-sized avatar

Arvind Hariharan fefore

View GitHub Profile
@fefore
fefore / log4net_filter
Last active October 31, 2017 00:35
[LOGSTASH] Grok Pattern for log4net logs
filter {
if [type] == "log4net" {
grok {
match => [ "message", "%{TIMESTAMP_ISO8601:timestamp} \[%{NUMBER:threadid}\] %{WORD:level}\s*%{DATA:class} \[%{DATA:NDC}\]\s+-\s+%{GREEDYDATA:message}" ]
}
mutate {
update => {
"type" => "log4net-log"
}
remove_field => [