# Indexing in Curator

**URL:** <https://discuss.elastic.co/t/indexing-in-curator/163669>\
**Category:** Elasticsearch\
**Created:** [January 10, 2019, 7:28am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669 "2019-01-10T07:28:15Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Shafiq](https://avatars.discourse-cdn.com/v4/letter/s/f05b48/32.png) [@Shafiq](https://discuss.elastic.co/u/Shafiq)\
**Post date:** [January 10, 2019, 7:28am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669/1 "2019-01-10T07:28:15Z")

</div>

Hi There,

I’m new to Elasticsearch and trying to create new index in Elasticsearch using curator 5.6.0. im getting error “Schema error: extra keys not allowed @ data['action’]”  
Below is the action file configuration

actions:  
filebeat:  
action: create\_index  
description: \>-  
Creating index as "Filebeat" name and it will be Time based indexing  
options:  
name: '\<filebeat-{now/d+1d}\>'  
extra\_settings:  
settings:  
number\_of\_shards: 5  
number\_of\_replicas: 2  
continue\_if\_exception: True  
disable\_action: False

```
winlogbeat: 
description: >-
  Creating index as "Filebeat" name and it will be Time based indexing
options:
  name: "<winlogbeat-{now/d+1d}>"
  extra_settings:
    settings:
      number_of_shards: 5
      number_of_replicas: 2
      continue_if_exception: True
      disable_action: False
```

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 10, 2019, 8:06am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669/2 "2019-01-10T08:06:47Z")

</div>

Hi @Shafiq,

`winlogbeat` should create the index for you. I guess you could create it in advance using e.g. `curator` but I can't think of a benefit doing it that way.

Why exactly do you want to create the index using `curator`?

---

<div class="post-metadata">

**Author:** ![Shafiq](https://avatars.discourse-cdn.com/v4/letter/s/f05b48/32.png) [@Shafiq](https://discuss.elastic.co/u/Shafiq)\
**Post date:** [January 10, 2019, 9:18am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669/3 "2019-01-10T09:18:04Z")

</div>

Hi A\_B,

I have installed Elasticsearch 6.5.4 on a windows server. And I want Winlogbeat data and Filebeat data to be stored in Elasticsearch in Time based indexing so that I can delete the data older than 2 months.

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 10, 2019, 9:22am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669/4 "2019-01-10T09:22:10Z")

</div>

Ok, then you do not need `curator` to _create_ indices. Use it only to delete indices older than 2 months. Filebeat and Winlogbeat will create the Elasticsearch indices if they do not exist.

---

<div class="post-metadata">

**Author:** ![Shafiq](https://avatars.discourse-cdn.com/v4/letter/s/f05b48/32.png) [@Shafiq](https://discuss.elastic.co/u/Shafiq)\
**Post date:** [January 10, 2019, 9:30am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669/5 "2019-01-10T09:30:31Z")

</div>

Thanks A\_B for the help

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 7, 2019, 9:30am UTC](https://discuss.elastic.co/t/indexing-in-curator/163669/6 "2019-02-07T09:30:37Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
