So I have Filebeat pumping from a few IIS Servers into Kibana (YAY!)
My question is this:
Once I have a filter that makes say, 100,000 log-lines filtered down into 1,000, is there a way I can output the "Message" variable (Which is basically just the raw log line) to just a bigass list either in the Kibana interface or with a CSV?
Sometimes there are items that I really just want to see the raw data on because I can't figure things out without putting my eyes on the log lines. Do I have a way to do this?