-
Story
-
Resolution: Won't Do
-
Medium
-
None
the data indexed in Elasticsearch have a limited interest:
The complete logĀ is usually included in the message field, whereas it should be parsed ( with a grok filter for example) in order to index each separate element.
Furthermore, some log errors containing Exception stack traces are stored in separated elements, and are consequentely unusable.