Hi Guys Maybe someone can point out where im going wrong with my Grok pattern here?
(?:%{SYSLOGTIMESTAMP:timestamp}|%TIMESTAMP_ISO8601:timestamp8601})(?:%{SYSLOGHOST:logsource}) (?:%{YEAR}): (?:%{MONTHNUM}):(?:%{MONTHDAY})- (?:%{HOUR}):(?:%{MINUTE}):(?:%{SECOND}) -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to graylog2+unsubscr...@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/graylog2/26703d72-8bcc-4c9c-ae92-521693b6d930%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.