Logstash grok 与路径匹配的GROK模式
这是我的示例URL 正在尝试仅提取查询/错误日志。为此,我在格罗克·彭定康下面尝试过Logstash grok 与路径匹配的GROK模式,logstash-grok,Logstash Grok,这是我的示例URL 正在尝试仅提取查询/错误日志。为此,我在格罗克·彭定康下面尝试过 (%{URIPROTO}://%{URIHOST}(?<path>/[^/]+/[^/]+/[^/]+)) 但我希望路径应该是/query/errorLogs。试试这个: (%{URIPROTO}://%{URIHOST}(?<first_path>/[^/]+)%{GREEDYDATA:path}) (%{URIPROTO}://%{URIHOST}(?<first_path
(%{URIPROTO}://%{URIHOST}(?<path>/[^/]+/[^/]+/[^/]+))
但我希望路径应该是/query/errorLogs。试试这个:
(%{URIPROTO}://%{URIHOST}(?<first_path>/[^/]+)%{GREEDYDATA:path})
(%{URIPROTO}://%{URIHOST}(?<first_path>/[^/]+)%{GREEDYDATA:path})
port 8080
first_path /abc2
path /query/errorLogs