[Lognorm] Escape [ and ]
Фадеев Виталий Львович
fvl at mail.ru
Wed Jun 10 08:10:27 CEST 2015
Hi!
I want to log all from apache. I use custom log in apache that looks like:
[2015-06-09 18:27:07 197 NOVT] [192.168.1.67] [192.168.1.67] [192.168.1.254] [818] [/var/www/host/css/button.css] [192.168.1.67] [HTTP/1.1] [1] [-] [GET] [5064] [?v=0] [GET /css/button.css?v=0 HTTP/1.1] [-] [200] [200] [0] [/css/button.css] [hostname.domain] [hostname.domain] [+] [1540] [1138] [" http://hostname.domain/index.html "] ["Mozilla/5.0 (Windows NT 6.1; WOW64; rv:38.0) Gecko/20100101 Firefox/38.0"]
For example, i create test.log that contains:
[2015-06-09 16:47:34 830 NOVT]
and test.rb:
rule=:[%date:date-iso% %time:time-24hr% %microsec:number% %timezone:char-to:]%
If i try i get:
$ lognormalizer -r test.rb -e json < test.log
{ "originalmsg": "[2015-06-09 16:47:34 830 NOVT]", "unparsed-data": "]" }
How to parse data between [ and ] ?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.adiscon.net/pipermail/lognorm/attachments/20150610/578b189e/attachment.html>
More information about the Lognorm
mailing list