Just wanted to say thanks again for your help David.
I've updated my gist with the working Elasticsearch index template that
takes into account the fact that additional fields created by grok in
Logstash are sent into Elasticsearch to be indexed in the '@fields' object
--
You received this message because you are subscribed to the Google Groups "elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an email to elasticsearch+unsubscribe@googlegroups.com.
For more options, visit https://groups.google.com/groups/opt_out.