Filebeat modules

Hello, when I enable filebeat module, for example nginx module, in Kibana appears about 7217 fields. How to get fields that related just to nginx access.log or error.log ? OR when I enable system module, also appears about 7200 fields. Mostly of htis appeared fields unusable.

That 7K are the total possible fields..think of schema.. but only the fields necessary will be filled in on each document...

What version are you on? In Discover it should used / available vs empty

If want list of the fields check

My version of elasticsearch and filebeat is 8.12.1. What I need to do with schema, How to change it under certain logs?

вт, 5 мар. 2024 г., 00:04 Stephen Brown via Discuss the Elastic Stack <notifications@elastic.discoursemail.com>:

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.