We are building a network topology map with all the Packetbeat instances. This information is stored in Elasticsearch and maps the IP and port of each Packetbeat instance to the name defined under
For each transaction, Packetbeat queries Elasticsearch to see if the network topology map includes the IP and port of the source and destination servers. If this information is available, the
client_server field in the output is set to the name of the Packetbeat running on the source server, and the
server field is set to the name of the Packetbeat running on the destination server.
By default topology map feature is disabled, so the
server fields are empty.
server is empty, then
ignore_outgoing doesn't work as it compares the name of the
server field with the local Packetbeat name.
Thank you for noticing it. I will fix it right away.