Hi Julian,
according to the guys from graylog and the community this is the preferred solution.
See here for example: Searching imported logs by log timestamp, not time Graylog received the log
Do you use this already and is it working? (The set_field("timestamp", new_timestamp);
part)
I have the problem that I can’t store the DateTime object into graylogs timestamp field. If I do this graylog seems to start dropping the messages without any error.
Kind regards,
Thomas