I have been running ELK for a while and during the course of learning, i have been exercising with some sample data stashed in Elasticsearch.
I used the below query once to delete a particular set of events in the Kibana Console.
POST logstash-2016.12.21/_delete_by_query
{
"query":{
"match":{ "path":"C:\Users\547213\elk\tutorialdata\vendor_sales\vendorsaleswithnewformats.LOG"
}
}
}
But this deleted entire events in the index instead of deleting the events with "path" matching up the phrase given above. Is it something wrong in the query?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.