Hi
I am very new to elastic search and logstash so need guidance.
-
We are having different environment e.g dev1, dev2, test, For each environment there is log4 log file which contains soap/rest request.
-
I am able to parse those file using GROK pattern and able to save in ES.
-
Our Soap/REST and request/response is having one of the filed called transaction id
e.g message": [
<n:transactionId>f6095126-5397-4f60-8669-c17ff0486c74</n:transactionId>
remaining another 40 elements. ...
]
my search query should be "environment=? and transactionId=?"
How can I achieve this ?
Thanks