elastic / elastic/integrations

[Logstash]: Logstash Logs dashboard do not have the fields `logstash.log.integration` and `source`

Open Beginner friendly
#20,422 0 comments 0 reactions 0 assignees View on GitHub
Integration:logstash needs:triage
Dominant language
Handlebars
Stars
333
Forks
647
Avg merge
3d 4h
Merged PRs (30d)
209

Description

### Integration Name

Logstash [packages/logstash]

### Dataset Name

_No response_

### Integration Version

2.11.1

### Agent Version

8.19.19

### Agent Output Type

elasticsearch

### Elasticsearch Version

8.19.19

### OS Version and Architecture

NA

### Software/API Version

_No response_

### Error Message

In Kibana (Dashboards Logs Logstash) Logstash Logs, the fields `logstash.log.integration` and `source` are empty

### Event Original

_No response_

### What did you do?

Integration has just been installed as is.

### What did you see?

Image

### What did you expect to see?

populated fields or no fields.

### Anything else?

In packages/logstash/kibana/search/logstash-cfaba090-cbda-11e7-9852-73e0a9df1bb6.json

The fields `logstash.log.integration` and `source` do not exist in the Logstash indices they should be removed from this Kibana object and replaced by relevant ones.

Contributor guide

Open the contributing guide

Research direction

Start with packages/logstash/kibana/search/logstash-cfaba090-cbda-11e7-9852-73e0a9df1bb6.json and inspect the fields used by the Logstash Logs dashboard. Compare them with fields present in the Logstash indices, then update the dashboard object so it no longer references the empty fields and uses relevant existing ones. Done means the dashboard displays populated fields or omits unavailable fields.

Written by the indexing model from the issue text.

Assessment

Domain
observability-sre
Issue type
Bug
Difficulty
2/5
Estimated time
1-3 hours
Activity status
Quiet
Clarity
Mostly clear
Newbie friendliness
68/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.