Field Grouping & Aggregation
Posted: Sat Feb 12, 2022 7:36 am
Hello,
We are currently undergoing a trial of the product
1) I presume we can create custom index patterns of our own and they will be maintained by the internal lifecycle mgt, as long as they are time-series based, just like the default logstash index pattern e.g.?
2) Does the Nagioslogserver implementation of the dashboard allow building visualizations on sub-groups based on specific fields? A typical use case we have is to capture all API logs showing the service called, the client who made the call and the duration. e.g assume we ingest the following fields into our index that captures all API calls. The field is computed by a ruby filter in logstash
Could we build dashboards that not only allow simple groupings but also subgrouping by entries in the fields e.g. an average response time per client? Or will this require ingesting specific indexes to allow those operations?
Thanks
Regards,
Dayo
We are currently undergoing a trial of the product
1) I presume we can create custom index patterns of our own and they will be maintained by the internal lifecycle mgt, as long as they are time-series based, just like the default logstash index pattern e.g.
Code: Select all
[myindexname]-YYYY.MM.DD
2) Does the Nagioslogserver implementation of the dashboard allow building visualizations on sub-groups based on specific fields? A typical use case we have is to capture all API logs showing the service called, the client who made the call and the duration. e.g assume we ingest the following fields into our index that captures all API calls. The
Code: Select all
[duration]
Code: Select all
[service] [client] [call_start] [call_end] [duration]
Thanks
Regards,
Dayo