# Deployed metricbeat by containerized but have beat.name and beat.name.keywords

**URL:** <https://discuss.elastic.co/t/deployed-metricbeat-by-containerized-but-have-beat-name-and-beat-name-keywords/160689>\
**Category:** Beats\
**Tags:** metricbeat\
**Created:** [December 13, 2018, 8:53am UTC](https://discuss.elastic.co/t/deployed-metricbeat-by-containerized-but-have-beat-name-and-beat-name-keywords/160689 "2018-12-13T08:53:11Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![wqy960504](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/wqy960504/32/38774_2.png) [@wqy960504](https://discuss.elastic.co/u/wqy960504)\
**Post date:** [December 13, 2018, 8:53am UTC](https://discuss.elastic.co/t/deployed-metricbeat-by-containerized-but-have-beat-name-and-beat-name-keywords/160689/1 "2018-12-13T08:53:11Z")

</div>

Hello!  
I have deployed elasticsearch, metricbeat and kibana in kubernetes by **containerized**.  
When I want to query data from elasticsearch by kibana, I find that there are  
**beat.name** and **beat.name.keyword**.  
what should I do to dispense **beat.name.keyword**.  
I also to see the fields.yaml in /etc/metricbeat and in the metricbeat.yml, I write  
**setup.template.fields: "/usr/share/metricbeat/fields.yml"**  
**setup.template.overwrite: true**  
But It is no effective.  
So ,please help me to solve this questions.Please!

---

<div class="post-metadata">

**Author:** ![ruflin](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ruflin/32/3116_2.png) [@ruflin](https://discuss.elastic.co/u/ruflin)\
**Post date:** [December 14, 2018, 9:34am UTC](https://discuss.elastic.co/t/deployed-metricbeat-by-containerized-but-have-beat-name-and-beat-name-keywords/160689/2 "2018-12-14T09:34:36Z")

</div>

Could you share your full config? It seems for some reason the template was not loaded which normally happens automatically. The template will only apply to new indices and not the ones you already started to ingest data.

---

<div class="post-metadata">

**Author:** ![wqy960504](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/wqy960504/32/38774_2.png) [@wqy960504](https://discuss.elastic.co/u/wqy960504)\
**Post date:** [December 17, 2018, 4:13am UTC](https://discuss.elastic.co/t/deployed-metricbeat-by-containerized-but-have-beat-name-and-beat-name-keywords/160689/3 "2018-12-17T04:13:20Z")

</div>

Hello，thanks you answer!  
In this question ,we tried a lot of solutions.We find ,if we used logstash ,and configuration metricbeat.yml ,like this :

 ![%E4%BC%81%E4%B8%9A%E5%BE%AE%E4%BF%A1%E6%88%AA%E5%9B%BE_15450196893317](https://us1.discourse-cdn.com/elastic/original/3X/a/b/ab6b67dccafd171d63880b91bde2a68f75b40b03.png)  
It will be make this problem，but if we not use logstash ,and use this config:  
 ![%E4%BC%81%E4%B8%9A%E5%BE%AE%E4%BF%A1%E6%88%AA%E5%9B%BE_15450197886905](https://us1.discourse-cdn.com/elastic/original/3X/0/7/077f41d17a428494c271e20608c5251d2f244f47.png)  
It will no problem.  
I do not know why?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 14, 2019, 4:13am UTC](https://discuss.elastic.co/t/deployed-metricbeat-by-containerized-but-have-beat-name-and-beat-name-keywords/160689/4 "2019-01-14T04:13:22Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
