2025-07-04 09:00:19 +02:00

21 lines
511 B
Django/Jinja

---
sources:
in_logs_httpd:
type: file
include: ["/var/log/httpd/access_log", "/var/log/httpd/error_log"]
transforms:
format_logs_httpd:
type: remap
inputs: ["in_logs_httpd"]
source: |
if (.file == "/var/log/httpd/access_log"){
.http = parse_grok!(.message, "%{HOSTNAME:host} %{HTTPD_COMBINEDLOG}")
}
if (.file == "/var/log/httpd/error_log"){
.http = parse_apache_log!(.message, format:"error")
}
.service = "httpd"
.group = "web"