I'm new in elastic stack , please i need a procedure how to extract all the source logs IP and status if possible, for example i have 10 servers linux redhat integrated in elastic with auditbeat and i have 10 windows integrated with winlogbeat how to extract all this servers with hostname and status with last event.
Is there a particular format you're looking to export it into? One possible way is to query the dataset in the Discover app in Kibana and either share the link or export to CSV:
You should be able to use Discover to see the data you need by selecting the relevant columns (i.e. ip and @timestamp) and the time range that you are interested in within the datepicker:
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.