Can't filter with winlogbeat.event_id on kibana

Can't filter with winlogbeat.event_id on kibana.

Have restarted my winlogbeat service on my windowss server 2012 and also my ELK server.

Any way out pls.

What is the error in the logs when you restart winlogbeat ? Would you mind sharing more information - like logs, version, steps to reproduce etc ?

Thanks
Rashmi

I'm using a ELK 7.1.1 and winglogbeat 7.1.1.

Logs.

So finally got the solution

I delete the indices for winlogbeat in elasticsearch

curl -XDELETE http://localhost:9200/winlogbeat*

Glad it worked after deleting the indices..
Thanks for posting your solution...

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.