# Custom Logs with Dashboard

**URL:** <https://community.graylog.org/t/custom-logs-with-dashboard/16045>\
**Category:** Graylog Central (peer support)\
**Created:** [June 23, 2020, 1:52pm UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045 "2020-06-23T13:52:16Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![m.ferrara](https://avatars.discourse-cdn.com/v4/letter/m/e47774/32.png) [@m.ferrara](https://community.graylog.org/u/m.ferrara)\
**Post date:** [June 23, 2020, 1:52pm UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/1 "2020-06-23T13:52:16Z")

</div>

Hi all,  
I installed from OVA a GrayLog v3.3.1.

I created a new input GELF UPD, and I can send the file log from windows.

I created a jason file log like this:  
{  
parameter1: value  
parameter2: value  
parameter3: value  
}

Now the problem is, when I see the output in GrayLog I see the variuable name and value in a single meaasege: “parameter1: value”.

How can configure it to view like this:  
parameter as name and its value as value?

Thanks.

---

<div class="post-metadata">

**Author:** ![jan](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/jan/32/11_2.png) [@jan](https://community.graylog.org/u/jan)\
**Post date:** [June 24, 2020, 8:46am UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/2 "2020-06-24T08:46:59Z")

</div>

he @m.ferrara

if you ingest to GELF, you need to ingest valid GELF messages and the codec will parse the key value pairs out. If that does not happen you need to configure one extractor OR a processing pipeline that parses that.

---

<div class="post-metadata">

**Author:** ![m.ferrara](https://avatars.discourse-cdn.com/v4/letter/m/e47774/32.png) [@m.ferrara](https://community.graylog.org/u/m.ferrara)\
**Post date:** [June 26, 2020, 7:51am UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/3 "2020-06-26T07:51:04Z")

</div>

Hi Jan,  
thank you so much for your reply.

Could you write me an example please?

Thanks for the support  
Marco

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [June 26, 2020, 8:31am UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/4 "2020-06-26T08:31:36Z")

</div>

Have you read this?  
[https://docs.graylog.org/en/3.3/pages/gelf.html#](https://docs.graylog.org/en/3.3/pages/gelf.html#)

---

<div class="post-metadata">

**Author:** ![m.ferrara](https://avatars.discourse-cdn.com/v4/letter/m/e47774/32.png) [@m.ferrara](https://community.graylog.org/u/m.ferrara)\
**Post date:** [June 26, 2020, 9:44am UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/5 "2020-06-26T09:44:06Z")

</div>

Hi Karlis,  
thanks for the reply.

I’m sorry but I’m very confused.

Is correct my configuration (input as GELF UDP) for my scope?  
Or I must configure new/different input in my GrayLog server, to read the JSON custom file?

Thanks for the support.  
Marco

---

<div class="post-metadata">

**Author:** ![shoothub](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/shoothub/32/6412_2.png) [@shoothub](https://community.graylog.org/u/shoothub)\
**Post date:** [July 2, 2020, 7:38am UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/6 "2020-07-02T07:38:35Z")

</div>

1. Your json file doesn’t use correct json syntax:  
correct one will be:  
{  
“parameter1”: “value”,  
“parameter2”: “value”,  
“parameter3”: “value2”  
}
2. If you want to use Gelf, you can need to follow it’s syntax, so you can send every parameter with \_ before parameter, ang graylog automatically parsed:  
`{ "version": "1.1", "host": "example.org", "short_message": "A short message", "level": 5, "_parameter1": "value", "_parameter2": "value", "_parameter3": "value" }`
3. You have also another option to parse message, if you send correct json, you can use JSON extractor on message field to extract fileds from json

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/3X/c/7/c7c09c6b5099570133d6502b83f50ba4430de5b6.png) [@system](https://community.graylog.org/u/system)\
**Post date:** [July 16, 2020, 7:38am UTC](https://community.graylog.org/t/custom-logs-with-dashboard/16045/7 "2020-07-16T07:38:38Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
