Kibana Notes

From Federal Burro of Information
Jump to navigationJump to search

ES on AWS

Comes wth kibnana.

send some app logs from app to firehose, then to es.

as it lands in ES the time field is "time" rather than say @timetamp , or @time.

this is important with you want to do timelion stuff.

You will need to change a config , Management - Advanced Settings:

set : timelion:es.timefield to "time" ( not @time ).

Stacked Graph on values

Buckets X-axiz-> Data histogram

Then "Add sub bucket" -> "Split series" -> "Terms" -> $fieldname

Dump settings

curl -X GET -s http://${HOST}:9200/.kibana/_settings | python3 -m json.tool

Also See