Map timestamp field of graylog with my parsed timestamp from message

How can I mapped or replace graylog timestamp field with my parsed timestamp from my log message,
I want to keep the log message time in timestamp field so that all filter I can do based on that.

I tried to create extractor and give name of field as timestamp which graylog was not taking,
other than that I tried many other fields to map or override with my data with same extractor way giving same name as of field, it is doing successfully,
can you help to understand this behaviour.


What did you do specifically? Please elaborate and provide examples and the real configuration.

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.