9ff9e35c12
Right now Rsyslog->ES will log like: logstash-YYYY.MM.DD.HH This creates a ton of indexes making search much harder. This commit removes the .HH so we have: logstash-YYYY.MM.DD This also patches the template to work with ES5 Change-Id: Iaef70f51601da504b769165e8593603adc484225 |
||
---|---|---|
.. | ||
browbeat-logstash-.json | ||
browbeat-perfkit-.json | ||
browbeat-rally-.json | ||
browbeat-shaker-.json | ||
README.rst |
ElasticSearch / Kibana Template
Template to instruct elasticSearch & Kibana to not processes some of our fields. For example, our UUIDs would turn into multiple strings due the default tokenizer's use of '-', '.', '/', etc. as token separators.