The default "Time Field" setting in 'timepicker' panel of Kibana 3 is set
to as - @timestamp. I'd like to set this to @fields.date which would be the
exact timestamp in a log entry. But when I set it to @fields.date I get a
blank dashboard as seen in the attached screenshot 'kibana-3.png'. Please
advise.
The default "Time Field" setting in 'timepicker' panel of Kibana 3 is set to
as - @timestamp. I'd like to set this to @fields.date which would be the
exact timestamp in a log entry. But when I set it to @fields.date I get a
blank dashboard as seen in the attached screenshot 'kibana-3.png'. Please
advise.
Sorry for that. Yes, @fields.date do exist. My data would look like:
{"@source":"file://loghost/logs/remote/mail/mail.log","@tags":["mx-mail","mx-mail3"],"@fields":{"date":["Aug
5
00:24:10"],"host":["mx-mail3"],"service":["postfix/smtpd[11985]"],"program":["postfix/smtpd"],"pid":["11985"],"message":["connect
from
unknown[113.160.101.48]"]},"@timestamp":"2013-08-05T00:24:10-04:00","@source_path":"/logs/remote/mail/mail.log","@source_host":"loghost","@message":"connect
from unknown[10.0.4.27]","@type":"postfix"}
The default "Time Field" setting in 'timepicker' panel of Kibana 3 is
set to
as - @timestamp. I'd like to set this to @fields.date which would be the
exact timestamp in a log entry. But when I set it to @fields.date I get a
blank dashboard as seen in the attached screenshot 'kibana-3.png'. Please
advise.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.