Searching Your Dataedit

You can search the indices that match the current index pattern by entering your search criteria in the Query bar. By default you can use Kibana’s standard query language which features autocomplete and a simple, easy to use syntax. Kibana’s legacy query language (based on Lucene query syntax) is still available for the time being under the options menu in the Query Bar. When this legacy query language is selected, the full JSON-based Elasticsearch Query DSL can also be used.

When you submit a search request, the histogram, Documents table, and Fields list are updated to reflect the search results. The total number of hits (matching documents) is shown in the toolbar. The Documents table shows the first five hundred hits. By default, the hits are listed in reverse chronological order, with the newest documents shown first. You can reverse the sort order by clicking the Time column header. You can also sort the table by the values in any indexed field. For more information, see Sorting the Documents Table.

To search your data, enter your search criteria in the Query bar and press Enter or click Search images/search-button.jpg to submit the request to Elasticsearch.