Kibana Search Query

Hi,

I'm trailing ELK at the moment within the insurance space, have an issue and wondering if Kibana can solve it. Our software creates two messages that identify the start and finish of a quotation that I'm easily able to identify within Kibana.

I'm were wondering if it’s possible, on receipt of the “finish” message for Elastic to search back for the most recent “start” message for the same user and to visualise this as a time period on a graph/and send this information to a 3rd party software.

Many thanks,

Chris

Kibana can not do this, but you can do this in the Elastic stack with the enrichment processor.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.