(Vikas Gopal) #1

Hi Experts,

I want to create a data table visualization in kibana , the challenge I am facing is with the data . My logs have two fields , dvc(IP), dvchost(full name). Now some logs has dvc field and some has dvchost , some has both . So user requirement is to see both the columns in a table , like he can search with an IP or with dvc name .So something like


(Tanya Bragin) #2

I don't think you can do exactly what you're describing in Kibana data table. I'd recommend storing a combined field that shows either of these (or both) and doing a table by that field.

(Vikas Gopal) #3

@tbragin Sorry I did not get it , what does it mean storing a combined field , do you mean at logstash level ?

(Tanya Bragin) #4

Yeah, Logstash. Kibana scripted fields could be used for this in the future as well, once ES scripting supports operating on strings.

