# Logstash Index

**URL:** https://discuss.elastic.co/t/logstash-index/111474
**Category:** Logstash
**Created:** [December 13, 2017, 2:41am UTC](https://discuss.elastic.co/t/logstash-index/111474 "2017-12-13T02:41:41Z")
**Posts on this page:** 1
**Showing post:** 3

<div class="post-metadata">

### Author: ![ChrisChua](https://avatars.discourse-cdn.com/v4/letter/c/8baadc/32.png) [@ChrisChua](https://discuss.elastic.co/u/ChrisChua)
#### Post date: [December 13, 2017, 4:27pm UTC](https://discuss.elastic.co/t/logstash-index/111474/3 "2017-12-13T16:27:33Z")

</div>

Hi, thanks for replying.

I just noticed this thread [[ATTENTION] Logstash 6.0.0 - Known Issue Indexing to Elasticsearch 6.0](https://discuss.elastic.co/t/attention-logstash-6-0-0-known-issue-indexing-to-elasticsearch-6-0/108789)

After I adding the document type, now it can work but the result still not what I am expecting

```
[2017-12-13T10:17:54,533][INFO][o.e.c.m.MetaDataMappingService] [6p1K6V1] [%{[@metadata][beat]}-2017.12.14/iMGnWDl4QdCsN-jbdWXezg] create_mapping [doc]
[2017-12-13T10:17:58,651][INFO][o.e.c.m.MetaDataMappingService] [6p1K6V1] [%{[@metadata][beat]}-2017.12.14/iMGnWDl4QdCsN-jbdWXezg] update_mapping [doc]
[2017-12-13T10:18:05,290][INFO][o.e.c.m.MetaDataMappingService] [6p1K6V1] [%{[@metadata][beat]}-2017.12.14/iMGnWDl4QdCsN-jbdWXezg] update_mapping [doc]
[2017-12-13T10:19:36,614][INFO][o.e.c.m.MetaDataMappingService] [6p1K6V1] [%{[@metadata][beat]}-2017.12.14/iMGnWDl4QdCsN-jbdWXezg] update_mapping [doc]

```

Does the double quote or single quote affect the result?

```
elasticsearch { 
     hosts => ["localhost:9200"] 
     index => "%{[@metadata][beat]}-%{index_day}"
     document_type => doc
}
```

---

_[View the full topic](https://discuss.elastic.co/t/logstash-index/111474)._
