If you have both the start time (timestamp) and end time in the same event then this might help.
If you have the start time and end time in different events then an aggregate filter might work for you.
If you have both the start time (timestamp) and end time in the same event then this might help.
If you have the start time and end time in different events then an aggregate filter might work for you.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.