With the field status in kibana . When I run packetbeat in the client , there are 1000 + fields are created in ES. Amongst them http status code , status , source_port are what I need . When I see the status it's always showing ok even though if the port is not listening .
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.