-
Feature
-
Resolution: Done
-
Minor
-
None
-
None
-
BU Product Work
-
Quay Enterprise
"When indexing Quay logs each line is treated as a seperate line. From the format of the logs there doesnt seem anyway to specifiy the pattern for identifying the start of a log message. I have the logs being indexed by Splunk but I want to define a pattern that is able to match single line messages as well as multi line message as per above.
How can I injest Quay logs into a log indexer in a meaningful way based on current Quay log format?
How can I reliably ensure I am indexing everything from the logs?
Does Redhat have any articles that explain how Quay logs can be captured, and subsequently indexed so that I can correlate real-time data?"