Closed punisherVX closed 5 years ago
Changing logstash logging from daily timestamped indexes to monthly.
Fixed in v3.4
Reduced number of threat-* indexes. Threat indexes are now done by month, rather than day. New format is threat-
Sep 2018 is threat-2018.09 Oct 2018 is threat-2018.10
This is controlled by the logstash pan-sfn.conf file in the Output stanza.
Continuous shard exceptions in Kibana when process intensive visualizations are used in Dashboards. This is due to the amount of data across indexes.