Skip to content

Conversation

@wiibaa
Copy link
Contributor

@wiibaa wiibaa commented Aug 16, 2015

Collect the original timestamp without altering its format (milliseconds in a long), leaving the @timestamp setting/formatting to the date filter. This could cover the use case described in elastic/logstash#995

Also I tried to describe in simple asciidoc the event schema that is produced by this input.
It would be great if you could provide a more advanced template on how to document "structured-inputs".

@growse
Copy link

growse commented Sep 1, 2015

Was just about to create something similar to this. Pipeline timestamp drift on log4j events is a problem we're facing at the moment, and this solves it quite nicely.

@jsvd
Copy link
Member

jsvd commented Sep 2, 2015

LGTM

@elasticsearch-bot
Copy link

Merged sucessfully into master!

jordansissel pushed a commit that referenced this pull request Sep 2, 2015
@wiibaa wiibaa deleted the event_schema branch September 2, 2015 18:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

4 participants