newbee question:
I use grok filtering to parse Cisco syslog file. Has you see in the capture screen i create new field with the end "_dan" . But thoses fiels are not index. I cannot find the way to index these fields.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.