Hi,
I have UFs on a few ec2 aws instances, reading logs from /temp.
I want to regex and only send logs containing ERROR and WARN on to the HF and then on to the indexers.
I want to the filter to occur closest to the source to reduce the amount of data being sent.
Is it possible to regex in the inputs.conf of the UF? If so please explain.
Thank you
↧