elastic / kibana

Your window into the Elastic Stack
https://www.elastic.co/products/kibana
Other
19.8k stars 8.19k forks source link

[Logs Explorer] Allow to filter by same or similar message #171599

Open ruflin opened 11 months ago

ruflin commented 11 months ago

The current logs details fly out does offer expand and copy on the message field. The same actions as on other fields should be available: Filter, filter out, field present. With the virtual columns upcoming, I don't think it should be possible to remove the field.

Screenshot 2023-11-21 at 08 03 51

In addition a powerful feature for message, is searching for similar patterns. This is currently found under the AI block on the bottom but similar messages can also be searched without AI. Currently this can be achived by going to pattern analysis and then click filter in / out pattern which leads to the result below (see screenshots).

The query that is created is simple, the challenge is figuring out what pattern the current log message belongs to we look at so this could be triggered directly from the flyout.

Screenshot 2023-11-21 at 08 04 19

Screenshot 2023-11-21 at 08 06 16

elasticmachine commented 11 months ago

Pinging @elastic/obs-ux-logs-team (Team:obs-ux-logs)