# How to search value with Wild card

**URL:** <https://discuss.elastic.co/t/how-to-search-value-with-wild-card/1447>\
**Category:** Kibana\
**Created:** [May 28, 2015, 8:49am UTC](https://discuss.elastic.co/t/how-to-search-value-with-wild-card/1447 "2015-05-28T08:49:52Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![vikas\_gopal](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vikas_gopal/32/47661_2.png) [@vikas\_gopal](https://discuss.elastic.co/u/vikas_gopal)\
**Post date:** [May 28, 2015, 8:49am UTC](https://discuss.elastic.co/t/how-to-search-value-with-wild-card/1447/1 "2015-05-28T08:49:52Z")

</div>

Hi Experts,

In my log I have a field "Customer". It has all the values in capital latter like "VIKAS". Now when I fire query in Kibana like Customer:"vikas" or Customer:"VIK\*" I got nothing . It works only when I do exact search like Customer:"VIKAS".

I have following question

1. How I can search value with wildcard, something like name start with vi OR VI ?

My Template is like

{  
"template\_vg":{  
"template" : "vg\*",  
"settings" : {  
"number\_of\_shards" : 5,  
"index.cache.field.type" : "soft",  
"index.refresh\_interval" : "5s",  
"index.store.compress.stored" : true,  
"index.query.default\_field" : "message",  
"index.routing.allocation.total\_shards\_per\_node" : 5,  
"index":{  
"analysis":{  
"analyzer":{  
"analyzer\_keyword":{  
"type": "custom",  
"tokenizer":"keyword",  
"filter":"lowercase"  
}  
}  
}  
}  
},  
"mappings" : {  
"_default_" : {  
"\_all" : {"enabled" : false},  
"properties" : {  
"Order\_ID": {"type": "string","index" :"not\_analyzed","doc\_values" : true},  
"Customer": {"type": "string","index" : "not\_analyzed","doc\_values" : true ,"analyzer":"analyzer\_keyword"},  
"Ordered\_On": {"type": "string","index" : "not\_analyzed","doc\_values" : true },  
"Required\_By": {"type": "string","index" : "not\_analyzed","doc\_values" : true },  
"Freight": {"type": "string","index" : "not\_analyzed","doc\_values" : true },  
"Shipped\_On": {"type": "string","index" : "not\_analyzed","doc\_values" : true },  
"Country": {"type": "string","index" : "not\_analyzed","doc\_values" : true },  
"Post\_Code": {"type": "string","index" : "not\_analyzed","doc\_values" : true }

```
			}
		}
	}
}

```

}

I read almost everything and got an idea that I need to use analyzer with Lowercase filter which will convert my values to lowercase then I can apply wildcard.But with the above analyzer for Customer field I still got nothing . Can someone help me to understand what I am doing wrong .

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [May 28, 2015, 9:17am UTC](https://discuss.elastic.co/t/how-to-search-value-with-wild-card/1447/2 "2015-05-28T09:17:13Z")

</div>

> [@vikas\_gopal](#):
>
> got an idea that I need to use analyzer with Lowercase filter which will convert my values to lowercase

That's correct. Not analysed means you need to query the exact same as what is in the value.

---

<div class="post-metadata">

**Author:** ![vikas\_gopal](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vikas_gopal/32/47661_2.png) [@vikas\_gopal](https://discuss.elastic.co/u/vikas_gopal)\
**Post date:** [May 28, 2015, 2:30pm UTC](https://discuss.elastic.co/t/how-to-search-value-with-wild-card/1447/3 "2015-05-28T14:30:05Z")

</div>

Wow That works...🙂 Thank you Warkolm

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 2:18pm UTC](https://discuss.elastic.co/t/how-to-search-value-with-wild-card/1447/4 "2017-07-06T14:18:57Z")

</div>


