I don't know why there are no hits


#1

no hits

hits

management index pattern :


(David Pilato) #2

What is the mapping?


#3

this is 'put template' query

PUT _template/installstatus
{
"index_patterns": "installstatus-*",
"settings": {
"number_of_replicas": 1,
"number_of_shards":3
},
"mappings": {
"installstatus": {
"properties": {
"DomainID": {
"type": "long"
},
"UserID": {
"type": "keyword"
},
"DeviceID": {
"type": "keyword"
},
"RegDate": {
"type": "date",
"format": "yyyyMMddHHmmss"
},
"UpdateDate": {
"type": "date",
"format": "yyyyMMddHHmmss"
},
"InputDate": {
"type": "date",
"format": "yyyyMMddHHmmss"
},
"Status": {
"type": "keyword"
},
"ComputerName": {
"type": "text"
},
"OSCode": {
"type": "keyword"
},
"OSName": {
"type": "keyword"
},
"ServicePackVersion": {
"type": "keyword"
},
"IP": {
"type":"keyword"
},
"ClientVersion": {
"type":"keyword"
},
"FsdVersion": {
"type":"keyword"
},
"FsfdVersion": {
"type":"keyword"
},
"RemoteIP": {
"type":"keyword"
}
}
}
}
}


(Christian Dahlqvist) #4

As all timestamps in Elasticsearch are assumed (and must be) in UTC timezone, that date seems to be in the future, which is probably why it does not show up when searching the last 90 days.


#5

Aha, thank you so much!!!


(system) #6

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.