Book Image

Learning Elasticsearch

By : Abhishek Andhavarapu
Book Image

Learning Elasticsearch

By: Abhishek Andhavarapu

Overview of this book

Elasticsearch is a modern, fast, distributed, scalable, fault tolerant, and open source search and analytics engine. You can use Elasticsearch for small or large applications with billions of documents. It is built to scale horizontally and can handle both structured and unstructured data. Packed with easy-to- follow examples, this book will ensure you will have a firm understanding of the basics of Elasticsearch and know how to utilize its capabilities efficiently. You will install and set up Elasticsearch and Kibana, and handle documents using the Distributed Document Store. You will see how to query, search, and index your data, and perform aggregation-based analytics with ease. You will see how to use Kibana to explore and visualize your data. Further on, you will learn to handle document relationships, work with geospatial data, and much more, with this easy-to-follow guide. Finally, you will see how you can set up and scale your Elasticsearch clusters in production environments.
Table of Contents (11 chapters)
10
Exploring Elastic Stack (Elastic Cloud, Security, Graph, and Alerting)

Using Kibana to discover

Kibana UI makes it very easy to explore and visualize your data. You can add filters based on the fields in the document in click of a button and inspect the document source. For each field, you can see the top five values and their field value statistics. In this section, we will discuss how to explore using Kibana. Open Kibana by going to http://localhost:5601/.

Before you can use an index in Kibana, you have to tell Kibana to use an index name or an index pattern. To do this, perform the following steps:

  1. Go to the Management tab on the left.
  2. Select Index Patterns
  3. In the Index Patterns page, select the +Add New button.
  1. Input the index name as chapter4, and select the time-field name as last_modified_date.
  2. Click on Create.

Now go to the Discover tab on the left navigation bar, and you should see a screen as shown here:

Since we configured the time...