Aug 29 2023 11:13 AM
I had previously applied ingestion time data transformation for few incoming logs in syslog table when I was using MMA agent for linux. Now I am moving to AMA for Linux servers.
How do I apply specific log filtering on AMA for linux logsources? such as if ip is 1.1.1.1 and it contains err logs, drop them.
I know it is possible in windows DCR but how can I built same DCR for linux in AMA to filter out them.
Sep 04 2023 12:17 AM