Need advice

Dear all,

I need some advice.

I have two hosts and i would like to create visual dashboard on exceptions on them.

So, i have created query, but can't visualize my query. Please help

What specific problems are you having?

Mark, imagine i have a lot of hosts and logs from them on ES. So, i need create visualization of exceptions on every host. What should be aggregations of Y-ray and X-ray, bucket aggregations?

field for host is host, field for log content is message.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.