I have been searching the web and elastic forum looking for solution, but it doesn't seem like people are having problem with the Transform function.
I'm using Transform to create summary tables to optimize queries. It's working if i were to create a new transformation. However, everyday a newly index with the same index pattern will be added to elasticsearch. I knowing that there is the capability to continuously perform transformation by checks for changes to source indices continuously . How should i configure to make it working?
The following are the indices, on each day, a new index will be added.
snort 2020-06-30 (newly added)
When doing transform, i chose the index pattern "snort*".
I want the "continuous transform function" to pick up new index pattern and update the transformed index.