I followed what someone else this here: Field [winlog.event_data.ProcessCreationTime] of type [keyword] does not support custom formats - #3 by andrewkroh
I refreshed the index pattern and that solved my issue. Thanks!
I followed what someone else this here: Field [winlog.event_data.ProcessCreationTime] of type [keyword] does not support custom formats - #3 by andrewkroh
I refreshed the index pattern and that solved my issue. Thanks!
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.