I installed Graylog 3.0, first I configured open source version, for my logs I override timestamp with pipelines, and its all work (Message Filter Chain -> Pipeline Processor). After this I decided to check enterprise version ( need to use Views), and I encountered an error.
In Enterprise/Extended Search timestamp is not override. I view the time when the logs came to the server ( so its not override via pipelines). So I have a different time for logs in Search and in Enterprise Search, can i fix this issue ? Or how I can to debug this?
Thank for answering me
P.S. Excuse me for my not perfect english.