# Can we create two GeoIP Filters in one logstash config file?

**URL:** <https://discuss.elastic.co/t/can-we-create-two-geoip-filters-in-one-logstash-config-file/42849>\
**Category:** Logstash\
**Created:** [February 26, 2016, 12:55pm UTC](https://discuss.elastic.co/t/can-we-create-two-geoip-filters-in-one-logstash-config-file/42849 "2016-02-26T12:55:09Z")\
**Posts on this page:** 1\
**Showing post:** 13

<div class="post-metadata">

**Author:** ![vikas\_gopal](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vikas_gopal/32/47661_2.png) [@vikas\_gopal](https://discuss.elastic.co/u/vikas_gopal)\
**Post date:** [July 15, 2016, 3:09pm UTC](https://discuss.elastic.co/t/can-we-create-two-geoip-filters-in-one-logstash-config-file/42849/13 "2016-07-15T15:09:38Z")

</div>

I can suggest couple of things

1. Not sure if ES 2.3 support "path": "full" for geoip anymore((remove "path": "full" )), so you just need to do something like following in your template

"dst\_geoip" : {"type" : "object","dynamic": true,"properties" : {"location" : { "type" : "geo\_point" }}},  
"src\_geoip" : {"type" : "object","dynamic": true,"properties" : {"location" : { "type" : "geo\_point" }}}

1. When I was using database in logstash 1.5.4 I used following, you need to check if it works for latest LS

geoip {  
source =\> "src"  
target =\> "geoip"  
database =\> "E:\Geo\_database\11-02-2016\GeoLiteCity.dat"  
add\_field =\> ["[geoip][coordinates]", "%{[geoip][longitude]}" ]  
add\_field =\> ["[geoip][coordinates]", "%{[geoip][latitude]}" ]  
}  
mutate {  
convert =\> ["[geoip][coordinates]", "float"]  
}

1. Make sure you are using template\_overwrite =\> "true" in LS

Let me know if it works also check this post [Problems with geoip configuration](https://discuss.elastic.co/t/problems-with-geoip-configuration/28767/25)

---

_[View the full topic](https://discuss.elastic.co/t/can-we-create-two-geoip-filters-in-one-logstash-config-file/42849)._
