I have a certain logsource that has multiple different line formats,
Instead of making multiple full match log lines, I tried to do the
following: grok { match => { "Message" => [ "Action
Group:%{DATA:action_group}\\r", "Authorization
result:%{DATA:a...