# Is there documentation regarding the field names in the logs?

**URL:** <https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320>\
**Category:** Kibana\
**Created:** [September 3, 2021, 8:48pm UTC](https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320 "2021-09-03T20:48:57Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![a24](https://avatars.discourse-cdn.com/v4/letter/a/c2a13f/32.png) [@a24](https://discuss.elastic.co/u/a24)\
**Post date:** [September 3, 2021, 8:48pm UTC](https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320/1 "2021-09-03T20:48:57Z")

</div>

I am brand new to kibana. I am looking at my logs and there are some field names I am **not** familiar with. Is there documentation that will explain the field names to me?

thank you

---

<div class="post-metadata">

**Author:** ![bhavyarm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bhavyarm/32/22392_2.png) [@bhavyarm](https://discuss.elastic.co/u/bhavyarm)\
**Post date:** [September 3, 2021, 10:11pm UTC](https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320/2 "2021-09-03T22:11:44Z")

</div>

What kinda logs?  
Kibana logs? or you are looking at logs inside Kibana?

All our documentation is here - [Elastic Stack and Product Documentation | Elastic](https://www.elastic.co/guide/index.html)

Thanks,  
Bhavya

---

<div class="post-metadata">

**Author:** ![a24](https://avatars.discourse-cdn.com/v4/letter/a/c2a13f/32.png) [@a24](https://discuss.elastic.co/u/a24)\
**Post date:** [September 7, 2021, 2:23pm UTC](https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320/3 "2021-09-07T14:23:25Z")

</div>

To answer you question, I suppose it would be logs _within_ Kibana (the logs belong to another server). Here are the fields (picture attached) I would like to learn more about it. This is screenshot from in kibana. Would these fields be in the documentation you provided? thank you very much!

 ![Capture](https://us1.discourse-cdn.com/elastic/original/3X/e/f/ef3ab233b28ef7dc64e73f5669ca7bc2b818dc05.jpeg)

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [September 7, 2021, 2:44pm UTC](https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320/4 "2021-09-07T14:44:18Z")

</div>

The fields the kibana shows are the fields present in the elasticsearch documents, the names of these fields depends entirely on the source of your data and how you are ingesting it.

Some fields are [metadata fields](https://www.elastic.co/guide/en/elasticsearch//reference/current/mapping-fields.html) added by elasticsearch during indexing, like `_id`, `_index`, `_score`, `_type` and a few others.

Some could be added by the tool you are using to ingest, like the `@timestamp` that could be added by logstash or beats and `fields.*` [custom fields](https://www.elastic.co/guide/en/beats/filebeat/current/configuration-general-options.html#libbeat-configuration-fields) that can be added by filebeat.

The majority of the fields in a document is from the source of your data, so you need to check the source of your data to see what they are.

But, which fields are you talking about and are not familiar with?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 5, 2021, 2:44pm UTC](https://discuss.elastic.co/t/is-there-documentation-regarding-the-field-names-in-the-logs/283320/5 "2021-10-05T14:44:21Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
