pretty structured JSON showing all http information together like agent.version, agent.id, agent.type, agent.hostname and other dot separated "default" kibana fields.
Example of pretty printed JSON:
Why Kibana shows log, agent and other fields differently than my http fields (or fields separated from log message)? What can I do for pretty JSON view of my fields?
We are using last stable Kibana, Logstash, Filebeat versions (Kibana 7.5.2 - new installation and configuration without plugins)
Thanks a lot, best regards
RK
I hope that I found correct mapping. (GET /filebeat-7.5.1-2020.02.04/_mapping or Management - Index management - filebeat index and Mapping in the detail screen)
Thanks. Unfortunately, I'm not able to recreate the issue on v7.5.2. Because I am seeing properly nested JSON in Discover under my http object [1]. But I may be using a different module (nginx) than you, so maybe that's why my mapping [2] is different than yours.
Are you connecting Filebeat directly to Elasticsearch or through Logstash?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.