<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How do I pull a log file directly in as a metric? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406845#M94091</link>
    <description>&lt;P&gt;You can try using uberagent app.&lt;BR /&gt;
&lt;A href="https://splunkbase.splunk.com/app/1448/"&gt;https://splunkbase.splunk.com/app/1448/&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 04 Oct 2018 06:07:02 GMT</pubDate>
    <dc:creator>iamarkaprabha</dc:creator>
    <dc:date>2018-10-04T06:07:02Z</dc:date>
    <item>
      <title>How do I pull a log file directly in as a metric?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406843#M94089</link>
      <description>&lt;P&gt;All, &lt;/P&gt;

&lt;P&gt;I am playing with metricbeat and I am happy camper with it. I was wondering if there was a way to pull the metricbeat logs in directly as a metric rather than as a log? &lt;/P&gt;

&lt;P&gt;Example logs &lt;BR /&gt;
2017-12-17T18:54:16.241-0500 INFO logp/core_test.go:13 unnamed global logger&lt;BR /&gt;
2017-12-17T18:54:16.242-0500 INFO [example] logp/core_test.go:16 some message&lt;BR /&gt;
2017-12-17T18:54:16.242-0500 INFO [example] logp/core_test.go:19 some message {"x": 1}&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 21:29:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406843#M94089</guid>
      <dc:creator>daniel333</dc:creator>
      <dc:date>2020-09-29T21:29:19Z</dc:date>
    </item>
    <item>
      <title>Re: How do I pull a log file directly in as a metric?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406844#M94090</link>
      <description>&lt;P&gt;Maybe you wanna have a look at Splunk 7.2.0 newest feature "log-to-metrics conversion":&lt;BR /&gt;
&lt;A href="http://docs.splunk.com/Documentation/Splunk/7.2.0/Metrics/L2MOverview"&gt;http://docs.splunk.com/Documentation/Splunk/7.2.0/Metrics/L2MOverview&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Pre 7.2.0 you need to write props/transforms: &lt;A href="http://docs.splunk.com/Documentation/Splunk/7.1.3/Metrics/GetMetricsInOther"&gt;http://docs.splunk.com/Documentation/Splunk/7.1.3/Metrics/GetMetricsInOther&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Oct 2018 02:12:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406844#M94090</guid>
      <dc:creator>back2root</dc:creator>
      <dc:date>2018-10-04T02:12:46Z</dc:date>
    </item>
    <item>
      <title>Re: How do I pull a log file directly in as a metric?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406845#M94091</link>
      <description>&lt;P&gt;You can try using uberagent app.&lt;BR /&gt;
&lt;A href="https://splunkbase.splunk.com/app/1448/"&gt;https://splunkbase.splunk.com/app/1448/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Oct 2018 06:07:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-do-I-pull-a-log-file-directly-in-as-a-metric/m-p/406845#M94091</guid>
      <dc:creator>iamarkaprabha</dc:creator>
      <dc:date>2018-10-04T06:07:02Z</dc:date>
    </item>
  </channel>
</rss>

