Hi Team,
I am trying to sending logs from couple of my windows servers using filebeat to elasticsearch directly. The index patterns are getting created by default ( filebeat-7.10.2-2021.08.16) however I want to create a custom index name for each of the servers. also I want them to be on monthly index.
I tried with the below since I have my ILM policy disabled
output.elasticsearch.index: "solrlogsuat.35-%{[agent.version]}-%{+yyyy.MM}"
setup.template.name: "solrlogsuat.35"
setup.template.pattern: "solrlogsuat.35-*"
Once I restart, the filebeat seems to run fine however I dont see the index getting created in ES. Can someone pls help