Can't filter with winlogbeat.event_id on kibana.
Have restarted my winlogbeat service on my windowss server 2012 and also my ELK server.
Any way out pls.
Can't filter with winlogbeat.event_id on kibana.
Have restarted my winlogbeat service on my windowss server 2012 and also my ELK server.
Any way out pls.
What is the error in the logs when you restart winlogbeat ? Would you mind sharing more information - like logs, version, steps to reproduce etc ?
Thanks
Rashmi
So finally got the solution
I delete the indices for winlogbeat in elasticsearch
curl -XDELETE http://localhost:9200/winlogbeat*
Glad it worked after deleting the indices..
Thanks for posting your solution...
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.