Please do not share pictures of config files or logs.
From you configuration it looks like the log message is already parsed, yet the first screenshot shows that it is not parsed. Did you just added the processors?
Once you have the json correctly parsed you can configure the index name in output.elasticsearch.index: '%{[field.name]}. Problem is that your request_id is an array of strings, but we need a string. For extracting the ID from the array you will need this process that is currently in development.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.