Hello. I want to index following logs in elasticsearch:
message1 correlation1 urlfield message2 correlation6 message3 correlation1 message4 correlation1
I want documents message3 and message4 to contain the urlfield field of the first correlation1 (message1) document.
How to do it? I can not use logstash because logs are balanced to multiple logstashes and are out of order so I probably must to do it somehow on elasticsearch site...
I use following components: elasticsearch, logstash, kibana.