Open ben-auo opened 5 days ago
https://github.com/FoxIO-LLC/LogSlash/blob/main/Vector/logslash-zeek_conn.toml#L27
As of Vector 0.32:
The to_timestamp function in VRL was deprecated. Instead, the following functions should be used: parse_timestamp to parse string timestamps from_unix_timestamp to parse integer timestamps
I solved with https://github.com/corelight/json-streaming-logs and .timestamp = parse_timestamp!(.ts, format: "%Y-%m-%dT%H:%M:%S%.fZ")
.timestamp = parse_timestamp!(.ts, format: "%Y-%m-%dT%H:%M:%S%.fZ")
https://github.com/FoxIO-LLC/LogSlash/blob/main/Vector/logslash-zeek_conn.toml#L27
As of Vector 0.32: