Skip to content

Conversation

@kgeller
Copy link
Contributor

@kgeller kgeller commented Mar 1, 2022

Backports the following commits to 8.2:

- Add additional fields for RFC 5424 messages (log.syslog.version,
log.syslog.msgid, log.syslog.data)
- Add log.syslog.hostname, log.syslog.appname, and log.syslog.procid
for hostname, process name, and process ID fields present in syslog
messages, respectively. These fields are added since it is not always
known that user wants these values copied to the more general ECS fields
(host.hostname, process.name, process.pid).
- Updating changelog entry to 8.2

Co-authored-by: Kylie Geller <[email protected]>
# Conflicts:
#	experimental/generated/csv/fields.csv
#	generated/csv/fields.csv
@kgeller kgeller merged commit 396be41 into elastic:8.2 Mar 1, 2022
@kgeller kgeller deleted the backport/8.2/pr-1793 branch March 1, 2022 19:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants