Hi all!
Now I am using logstash config that makes every day new index for all incoming data (from many hosts) with name like "filebeat-2018.10.25"
Config is:
input {
beats {
port => 5044
}
}
filter {
date {
match => [ "logdate", "ISO8601" ]
}
}
output {
elasticsearch {
hosts => ["localhost:9200"]
sniffing => true
manage_template => false
index => "%{[@metadata][beat]}-%{+YYYY.MM.dd}"
document_type => "log"
}
}
Tell me please what should I change in config to make Logstash create Index for every hostname every day (something like "my-server1-2018.10.24", "my-server2-2018.10.24)?