Logo
Resources
Documentation Portal Ideas Portal Guardsix Academy License Portal
Resources
Documentation Portal Ideas Portal Guardsix Academy License Portal
Sign in
  1. Guardsix Servicedesk
  2. Products Hub
  3. Marketplace

Grok Process Plugin

Standard

The Gork integration tokenizes the key values present in the logs with the key values defined in the GROK library.

Release Details

Version: 3.0.2
Release date: 30th October, 2024
Supported On: Logpoint 7.5.0 and later
SHA 256: ee9411f6f9a6525e3a1f5822d545db615dccfd7d28c3b5eec760f20fb92d7db9
Download

Enhancement

LP-45648
MongoDB is upgraded for enhanced security and improved performance.

Installation

Follow these steps to install the Grok Process Plugin v3.0.1:

  1. Download the Grok Process Plugin package provided above in the Download section.
  2. Install the package by importing the pak file to Logpoint under Settings >> System >> Applications

Past Release

For Logpoint v6.3 to v7.4.2 ▾
Version: 3.0.1
Release date: 2018-07-30
Supported On: Logpoint v6.3.0 and later
SHA 256: 8c249c9898ff618729af26c8a84354bf68308437f0a1d050708334898f2be268
Download

Bug Fix

Previously, if any of the events did not match the pattern of the grok process command, the search was not terminated. This has been fixed.

Usage Information

Syntax: | process grok("pattern")

For example, "| process grok("%{WORD:action} by %{WORD:user} from %{IP:source_address}")" query tokenizes the log message as per the provided pattern and creates the action, user and source_address fields.  

Support

If you have any questions or require assistance, create a support ticket.

Comments

Article is closed for comments.

Follow

Related articles

  • Incapsula
  • InRange Process Plugin
  • Halon Mail Security and Firewall Appliance
  • GoogleCloudPlatform
  • Oracle
Consent Required To Proceed
By clicking “I Agree & Download”, you confirm that you are authorized to act on behalf of your organization and you give explicit consent for Guardsix to share your organization’s customer name and log source count with NXLog for the sole purposes of entitlement management, compliance verification, and support delivery related to the embedded NXLog technology in the Guardsix SIEM solution.

This data will not be used for sales or marketing and will not be shared with other third parties. You may withdraw your consent at any time by contacting Guardsix Support; withdrawal will not affect processing already performed.
Cancel I Agree & Download
Privacy policy    EULA    Terms of service   
Copyright © , Guardsix. All rights reserved.

Note: We use cookies that are essential for the smooth functioning of our website.