Don't use the obsolete grep filter; use conditionals instead, e.g. like this to delete all messages where the foo
field isn't equal to "bar":
if [foo] != "bar" {
drop { }
}
Don't use the obsolete grep filter; use conditionals instead, e.g. like this to delete all messages where the foo
field isn't equal to "bar":
if [foo] != "bar" {
drop { }
}
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.