Discovering Your Dataedit

Using the Discover application, you can enter an Elasticsearch query to search your data and filter the results.

  1. Open Discover. The shakes* pattern is the current index pattern.
  2. Click the caret to the right of shakes*, and select ba*.
  3. In the search field, enter the following string:

    account_number:<100 AND balance:>47500

The search returns all account numbers between zero and 99 with balances in excess of 47,500. It returns results for account numbers 8, 32, 78, 85, and 97.

images/tutorial-discover-2.png

By default, all fields are shown for each matching document. To choose which fields to display, hover the mouse over the the list of Available Fields and then click add next to each field you want include.

For example, if you add the account_number field, the display changes to a list of five account numbers.

images/tutorial-discover-3.png