# Error while updating topbeat template

**URL:** https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413
**Category:** Elasticsearch
**Created:** [June 30, 2016, 1:41pm UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413 "2016-06-30T13:41:17Z")
**Posts on this page:** 6
**Page:** 1

<div class="post-metadata">

### Author: ![pvignesh92](https://avatars.discourse-cdn.com/v4/letter/p/bcef8e/32.png) [@pvignesh92](https://discuss.elastic.co/u/pvignesh92)
#### Post date: [June 30, 2016, 1:41pm UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413/1 "2016-06-30T13:41:17Z")

</div>

Hi.. Im trying to modify the topbeat template.. hav an additional field and need to make that analyzed. I modified the template to exclude my field name from not\_analysed by using unmatch

"match": "\*"  
"unmatch": "my\_field\_name"  
But Getting error unexpected character ('"' (code 34)): was expecting comma to separate object entries

Any help

---

<div class="post-metadata">

### Author: ![pvignesh92](https://avatars.discourse-cdn.com/v4/letter/p/bcef8e/32.png) [@pvignesh92](https://discuss.elastic.co/u/pvignesh92)
#### Post date: [June 30, 2016, 3:05pm UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413/2 "2016-06-30T15:05:59Z")

</div>

Is this the right way??? Kindly confirm

```
              "template1": {
                "mapping": {
                  "doc_values": true,
                      "ignore_above": 1024,
                          "index": "not_analyzed",
                             "type": "{dynamic_type}"
                          },
                   "match": "*" ,
                   "unmatch": "field_name"
            }
          }
       ],
```

---

<div class="post-metadata">

### Author: ![jpountz](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jpountz/32/45836_2.png) [@jpountz](https://discuss.elastic.co/u/jpountz)
#### Post date: [June 30, 2016, 5:32pm UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413/3 "2016-06-30T17:32:32Z")

</div>

This looks right. The above error message suggests that you forgot to put a comma somewhere in the json.

---

<div class="post-metadata">

### Author: ![pvignesh92](https://avatars.discourse-cdn.com/v4/letter/p/bcef8e/32.png) [@pvignesh92](https://discuss.elastic.co/u/pvignesh92)
#### Post date: [July 1, 2016, 4:34am UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413/4 "2016-07-01T04:34:31Z")

</div>

Couldn't figure out it

This is my topbeat template json. Could someone point where I missed

{  
"mappings": {  
"_default_": {  
"\_all": {  
"enabled": true,  
"norms": {  
"enabled": false  
}  
},  
"dynamic\_templates": [  
{  
"template1": {  
"mapping": {  
"doc\_values": true,  
"ignore\_above": 1024,  
"index": "not\_analyzed",  
"type": "{dynamic\_type}"  
},  
"match": "\*",  
"unmatch": "field\_name"  
}  
}  
],  
"properties": {  
"@timestamp": {  
"type": "date"  
},  
"cpu": {  
"properties": {  
"system\_p": {  
"doc\_values": "true",  
"type": "float"  
},  
"user\_p": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
},  
"fs": {  
"properties": {  
"used\_p": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
},  
"load": {  
"properties": {  
"load1": {  
"doc\_values": "true",  
"type": "float"  
},  
"load15": {  
"doc\_values": "true",  
"type": "float"  
},  
"load5": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
},  
"mem": {  
"properties": {  
"actual\_used\_p": {  
"doc\_values": "true",  
"type": "float"  
},  
"used\_p": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
},  
"proc": {  
"properties": {  
"cpu": {  
"properties": {  
"user\_p": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
},  
"mem": {  
"properties": {  
"rss\_p": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
}  
}  
},  
"swap": {  
"properties": {  
"used\_p": {  
"doc\_values": "true",  
"type": "float"  
}  
}  
}  
"taxonomy": {  
"properties": {  
"field1": {  
"doc\_values": "true",  
"type": "float"  
}

```
  }
}

```

},  
"settings": {  
"index.refresh\_interval": "5s"  
},  
"template": "topbeat-\*"  
}

---

<div class="post-metadata">

### Author: ![jpountz](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jpountz/32/45836_2.png) [@jpountz](https://discuss.elastic.co/u/jpountz)
#### Post date: [July 1, 2016, 8:06am UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413/5 "2016-07-01T08:06:32Z")

</div>

There is a missing comma right before "taxonomy".

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [July 5, 2017, 10:39pm UTC](https://discuss.elastic.co/t/error-while-updating-topbeat-template/54413/6 "2017-07-05T22:39:00Z")

</div>


