我如何在logstash-elasticsearch过滤插件中使用聚合

时间:2018-05-30 06:48:28

标签: logstash elasticsearch-plugin logstash-configuration

if[type] == "mytype"    {       elasticsearch       {
                hosts => ["192.168.1.1:9200"]
                index => "my_index"
                query_template => "/logstash/my_query.json"
                 aggregation_fields => 
                 {
                 "seqnumber" => "find_seqnumber"
                 }
          }
    }

为什么要为我返回此错误? ::

  

未知设置elasticsearch的“aggregation_fields”

在logstash日志中

1 个答案:

答案 0 :(得分:0)

这是答案链接:

弹性搜索过滤器插件版本解决了这个问题

<强> https://discuss.elastic.co/t/how-can-i-use-aggregation-in-logstash-elasticsearch-filter-plugin/133805/5