Graylog not parsing hostname in log messages

Hello,

I did find this post here but unfortunately I don’t see it resolved.

The screenshots look like firewall/switch messages? So you probably cant use a log shipper. If you could, FileBeat would be able to correct this issue with multi-line messages.

If this is correct and these messages/logs are from Firewall/Switch then a pipeline would be your best bet for correcting this.

Here are some links I found they might help.

https://graylog.zammad.com/help/en-us/15-pipeline-rule-samples

FileBeat