About getting specific log and drop others

Before you post: Your responses to these questions will help the community help you. Please complete this template if you’re asking a support question.
Don’t forget to select tags to help index your topic!

1. Describe your incident:

i am getting logs of my router. router is sending a lot of logs. but i want to get specific logs like in message it says :500 or :4500. i have used rule in streams to my specific logs only but other logs are still getting stored in the server and storage is getting full.

2. Describe your environment:

  • OS Information: ubuntu 24.04

  • Package Version: graylog 7

  • Service logs, configurations, and environment variables:

3. What steps have you already taken to try and solve the problem?

i have taken steps in the pipeline to crate new rule to drop other log that i don’t want to recieve… but still recieving.

4. How can the community help?

community can help me by telling me the process of droping other logs. it would be a great help.

Helpful Posting Tips: Tips for Posting Questions that Get Answers [Hold down CTRL and link on link to open tips documents in a separate tab]

Hello,

The pipeline has an issue, because it’s the right way to discard logs.

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.