Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Clarify using multiple syslog appenders to TCP input with multiline codec #367

Open
obaqazi-red opened this issue Aug 25, 2019 · 0 comments

Comments

@obaqazi-red
Copy link

Hello ,

We have many instances for an app that use syslog to send log4j2 logs to logstash.
we use TCP input with multiline codec to collect logs by timestamp into single event and then send it to elasticsearch .

The Question is does the multiline codec in the TCP input know from where this event came so it will not mix the event from different syslog clients ?

Best wishes

Capture

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant