According to access log doc this is not possible. You can use CLF and add RequestHost
/ RouterName
or use JSON format and divide the logs in post-processing.
You could just ingest everything with (open source) solutions like Elastic/ELK or Grafana/Loki.