kibna grok pattern example

log

Aug  7 08:11:25 manager-1 jmx_exporter: level=info ts=2019-08-07T08:11:25.490066117Z caller=main.go:226 msg="Loaded config file"

pattern

%{
     SYSLOGTIMESTAMP:systime}\s+%{
     SYSLOGHOST:host}\s+%{
     PROG:service}:\s+level=(?<level>\w+)\s+ts=%{
     TIMESTAMP_ISO8601:timestamp}\s+caller=(?<thread>[\w+.:\d]+)%{
     GREEDYDATA:message}

log

Cassandra_au_log 2020-08-13 02:29:24.635-> client=10.120.113.126, user=anonymous, status=ATTEMPT, operation='SELECT * FROM system_schema.views'

pattern

%{
     PROG:service}\s+%{
     TIMESTAMP_ISO8601:logdate}->\s+client=%{
     IP:client},\suser=%{
     PROG:user},\sstatus=%{
     PROG:status},\soperation=%{
     GREEDYDATA:operation}

你可能感兴趣的:(kibna grok pattern example)