I am sending the logs from my file server with winlogbeat.
I just send the log with event 4663, to track file deletion, however, the Kibana view shows several temporary file events (* .tmp). Is it possible to do this filter in the Logstash input or some display filter in Kibana?
You can probably do it either way, but the exact implementation depends on what an example event looks like. Copy an example event from Kibana's JSON tab.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.