From that point and on everything broke, nothing is getting indexed anymore and even when I delete the current indices the process doesnt start. I can see Apache talking to Redis however Logstash is not talking to Redis and obviously I cant see anything in Kibana. I went over this --> Geo_Point Field Exists, But Kibana Can't Find It but I am not sure what I have to do ?
Regarding the geo stuff I can see the fields with (?) next in Kibana meaning that these arent indexed (?). Either way the error message that I was getting back was: geopoint was not there. I went over this ( Geo_point - no compatible types ) and also this ( Geo_Point Field Exists, But Kibana Can't Find It ) but I need a bit more light to understand what I have to do... I can definitely see 'clientip' field since I have already configured some Kibana dashboards with that...
I am using logstash version 5.0.1
For the second problem nevermind I managed to delete the indices and do everything from scratch so it works now. Still I dont have the geolocation though Is there another guide that I can follow?
The question mark, in my experience, means that Kibana doesn't have knowledge of that field. You can usually go to the Settings area of Kibana for your index pattern and click the refresh button to resolve that problem.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.