kibana智能检索发送多次_msearch —— 配置index pattern,同时设置时间段,就知道到底是在哪些索引里去查找数据了

简介:
kibanasite/elasticsearch/log-*/_field_stats?level=indices
 
 
 返回:
{"_shards":{"total":600,"successful":600,"failed":0},"indices":{"log-2017.11.22-19-192.168.2.3-93004":{"fields":{"ReceiveDate":{"type":"date","max_doc":24117711,"doc_count":24117711,"density":100,"sum_doc_freq":-1,"sum_total_term_freq":24117711,"searchable":true,"aggregatable":true,"min_value":1511348400000,"min_value_as_string":"2017-11-22T11:00:00.000Z","max_value":1511351999000,"max_value_as_string":"2017-11-22T11:59:59.000Z"}}},"log-2017.11.22-19-192.168.2.3-93005":{"fields":{"ReceiveDate":{"type":"date","max_doc":24108636,"doc_count":24108636,"density":100,"sum_doc_freq":-1,"sum_total_term_freq":24108636,"searchable":true,"aggregatable":true,"min_value":1511348400000,"min_value_as_string":"2017-11-22T11:00:00.000Z","max_value":1511351999000,"max_value_as_string":"2017-11-22T11:59:59.000Z"}}},"log-2017.11.22-19-192.168.2.3-93002":{"fields":{"ReceiveDate":{"type":"date","max_doc":24123473,"doc_count":24123473,"density":100,"sum_doc_freq":-1,"sum_total_term_freq":24123473,"searchable":true,"aggregatable":true,"min_value":1511348400000,"min_value_as_string":"2017-11-22T11:00:00.000Z","max_value":1511351999000,"max_value_as_string":"2017-11-22T11:59:59.000Z"}}},"log-2017.11.22-19-192.168.2.3-93003":{"fields":{"ReceiveDate":{"type":"date","max_doc":24109946,"doc_count":24109946,"density":100,"sum_doc_freq":-1,"sum_total_term_freq":24109946,"searchable":true,"aggregatable":true,"min_value":1511348400000,"min_value_as_string":"2017-11-22T11:00:00.000Z","max_value":1511351999000,"max_value_as_string":"2017-11-22T11:59:59.000Z"}}},"log-2017.11.22-19-192.168.2.3-93001":{"fields":{"ReceiveDate":{"type":"date","max_doc":24111347,"doc_count":24111347,"density":100,"sum_doc_freq":-1,"sum_total_term_freq":24111347,"searchable":true,"aggregatable":true,"min_value":1511348400000,"min_value_as_string":"2017-11-22T11:00:00.000Z","max_value":1511351999000,"max_value_as_string":"2017-11-22T11:59:59.000Z"}}}}}
 
上述是按照小时建立的索引。























本文转自张昺华-sky博客园博客,原文链接:http://www.cnblogs.com/bonelee/p/7881031.html ,如需转载请自行联系原作者

相关文章
|
2月前
BurpSuite8.2 -- 查找包含id参数的URL
BurpSuite8.2 -- 查找包含id参数的URL
19 1
|
开发者 Python
列表的修改查询和删除|学习笔记
快速学习列表的修改查询和删除
85 0
列表的修改查询和删除|学习笔记
【TP5】在视图给url追加俩个参数
【TP5】在视图给url追加俩个参数
87 0
【TP5】在视图给url追加俩个参数
|
JavaScript
el-table分页数据+回显+勾选状态+记录数据(map实战)
el-table分页数据+回显+勾选状态+记录数据(map实战)
806 0
|
SQL Java 数据库连接
分页之查询条件保存到 PageBean 的 url 中| 学习笔记
快速学习分页之查询条件保存到 PageBean 的 url 中
146 0
|
JavaScript
Splunk 修改搜索后的每页回传数
页面以JS形式回传 默认是10、20、50 在JS中的键值为display.prefs.events.count 在脚本中修改 修改后的标签:
949 0
|
PHP
Laravel返回不重复的某个字段信息列表
->groupBy('brand_id') ->pluck('brand_id');  学习交流群:364976091
1735 0