A newer version is available. For the latest information, see the current release documentation.
fingerprint processor generates a fingerprint of an event based on a
specified subset of its fields.
The value that is hashed is constructed as a concatenation of the field name and
field value separated by
|. For example
Nested fields are supported in the following format:
processors: - fingerprint: fields: ["field1", "field2", ...]
The following settings are supported:
- List of fields to use as the source for the fingerprint. The list will be alphabetically sorted by the processor.
(Optional) Whether to ignore missing fields. Default is
(Optional) Field in which the generated fingerprint should be stored. Default is
(Optional) Algorithm to use for computing the fingerprint. Must be one of:
xxhash. Default is
(Optional) Encoding to use on the fingerprint value. Must be one of
base64. Default is
Intro to Kibana
ELK for Logs & Metrics