My certain fields are lost in logstash

Hi Guys,

I have kind of honeypot created on elasticstack and ran for almost 12 hours which unfortunately filled up my hard disk space hence what I did is deleted certain indices using DELETE API from console. However that deleted certain fields which are created for data enrichment.

Now I again data is pumping in but I see previouly I had 384 fields while now the fields are around 349, I did have other system steup as well which has 384 fileds.

Can someone tell me how do I restore the that patterns from other system?

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.