How can I define IP? Accually I have both, IPv4 and IPv6, but looks like in Kibana can I use CIDR notation for IPv4 only, what in fact is fine. But my field name is like "layers.ip.ip_src" and I am goting error:
The index pattern pcap-* does not contain any of the following compatible field types: ip
I am using logstash config as in article https://www.elastic.co/blog/analyzing-network-packets-with-wireshark-elasticsearch-and-kibana
I guess that I need somehow define it in logstash, that field X is ip, but how? I am new in logstash (and in fact kibana and elastic too).