elastic / elastic/integrations
[Logstash]: Logstash Logs dashboard do not have the fields `logstash.log.integration` and `source`
- Dominant language
- Handlebars
- Stars
- 333
- Forks
- 647
- Avg merge
- 3d 4h
- Merged PRs (30d)
- 209
Description
### Integration Name
Logstash [packages/logstash]
### Dataset Name
_No response_
### Integration Version
2.11.1
### Agent Version
8.19.19
### Agent Output Type
elasticsearch
### Elasticsearch Version
8.19.19
### OS Version and Architecture
NA
### Software/API Version
_No response_
### Error Message
In Kibana (Dashboards Logs Logstash) Logstash Logs, the fields `logstash.log.integration` and `source` are empty
### Event Original
_No response_
### What did you do?
Integration has just been installed as is.
### What did you see?
### What did you expect to see?
populated fields or no fields.
### Anything else?
In packages/logstash/kibana/search/logstash-cfaba090-cbda-11e7-9852-73e0a9df1bb6.json
The fields `logstash.log.integration` and `source` do not exist in the Logstash indices they should be removed from this Kibana object and replaced by relevant ones.
Contributor guide
Research direction
Start with packages/logstash/kibana/search/logstash-cfaba090-cbda-11e7-9852-73e0a9df1bb6.json and inspect the fields used by the Logstash Logs dashboard. Compare them with fields present in the Logstash indices, then update the dashboard object so it no longer references the empty fields and uses relevant existing ones. Done means the dashboard displays populated fields or omits unavailable fields.
Written by the indexing model from the issue text.
Assessment
- Domain
- observability-sre
- Issue type
- Bug
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Activity status
- Quiet
- Clarity
- Mostly clear
- Newbie friendliness
- 68/100