How to drop or skip certain log events

(Suresh Kumar Kumaresan) #1


In Splunk, there is an option to skip/drop log events based on the regular expansion pattern.

For example, we would like to exclude heartbeat.jsp log events from getting indexed in Graylog.

Do we have this option in Graylog2, if yes could you please share some doc links or details?


(Jochen) #2

Yes, you can drop messages in a pipeline rule:

(Suresh Kumar Kumaresan) #3

Thanks a lot @jochen

