Elasticseach filter on logstash not working?


I'm trying to use the elastic search filter on logstash for make some Data Enrichment.

I got two indexes, and my goal it's get some data from one of them and add it to the other.

I configured a logstash filter who search in my elasticsearch and if there is a match the output goes to the index.

But my filter it's not working propery because when I test the filter i got this error

[WARN ] 2020-10-02 19:23:09.536 [[main]>worker2] elasticsearch - Failed to query elasticsearch for previous event {:index=>"logstash-*", :error=>"Unexpected character ('%' (code 37)): expected a valid value (number, String, array, object, 'true', 'false' or 'null')\n

here it's my settings and files


This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.