# Multiple filters are beeing ignored, trying to add multiple fields for cloudwatch

**URL:** <https://discuss.elastic.co/t/multiple-filters-are-beeing-ignored-trying-to-add-multiple-fields-for-cloudwatch/97935>\
**Category:** Logstash\
**Created:** [August 22, 2017, 3:10pm UTC](https://discuss.elastic.co/t/multiple-filters-are-beeing-ignored-trying-to-add-multiple-fields-for-cloudwatch/97935 "2017-08-22T15:10:30Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![randahlem](https://avatars.discourse-cdn.com/v4/letter/r/e495f1/32.png) [@randahlem](https://discuss.elastic.co/u/randahlem)\
**Post date:** [August 22, 2017, 3:10pm UTC](https://discuss.elastic.co/t/multiple-filters-are-beeing-ignored-trying-to-add-multiple-fields-for-cloudwatch/97935/1 "2017-08-22T15:10:30Z")

</div>

Hi,

Logstash version 6.0.0-beta1 and also latest stable has been tested.

i have the following pretty simple config:

```auto
input {
  http_poller {
    urls => {
        test1 => "http://localhost:3030/"
      }
    request_timeout => 60
    schedule => { cron => "* * * * * UTC"}
  }
}
filter {
    json {
       source => "message"
    }
    mutate {
      add_field => ["CW_metricname", "nodes"]
      add_field => ["CW_unit", "Count"]
      add_field => ["CW_value", "%{[total][nodes]}"]
    }
    mutate {
      add_field => ["CW_metricname", "incomingMessages"]
      add_field => ["CW_unit", "Count"]
      add_field => ["CW_value", "%{[total][incomingMessages]}"]
    }
    mutate {
      add_field => ["CW_metricname", "technicalErrors"]
      add_field => ["CW_unit", "Count"]
      add_field => ["CW_value", "%{[total][technicalErrors]}"]
    }
}
output {
    cloudwatch {
      access_key_id => ""
      secret_access_key => ""
      region => ""
    }
}

```

My problem is very simple, one the "nodes" value gets to cloud watch, all other new metrics/fields are just ignored.

I tried many things, but nothing is working anymore and I am not sure if its a bug or am i tackling it wrong.

The debug output does also look correct to me:

```auto
    },
       "@timestamp" => 2017-08-22T15:24:00.800Z,
         "CW_value" => [
        [0] "1",
        [1] "0",
        [2] "6"
    ],
          "CW_unit" => [
        [0] "Count",
        [1] "Count",
        [2] "Count"
    ],
         "@version" => "1",
    "CW_metricname" => [
        [0] "nodes",
        [1] "incomingMessages",
        [2] "technicalErrors"
    ]
}

```

Any help appriciated.

Thanks!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 19, 2017, 3:10pm UTC](https://discuss.elastic.co/t/multiple-filters-are-beeing-ignored-trying-to-add-multiple-fields-for-cloudwatch/97935/2 "2017-09-19T15:10:41Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
