This is probably something simple that I am missing.
Is there a way to filter out what are esentially blank log entries from syslog?
I get messages with the timestamp and hostname, process/PID but no data.
Unfortunatly, I don't think this will be fixed in the app anytime soon, so I need a way to filter this out at search time, unfortunatly the PID is in the log so that's not uniform, and I can't filter out based on what IS there, as that would filter out the messages that do have data. Example log lines below.
Jan 13 10:21:39 hostname.domain.com process[PID]: data is here that I want
Jan 13 10:21:39 hostname.domain.com process[PID]:
obviously I would want to keep the first, but discard the second