I have 200 million lines of data(about port scanning). I want ES to return those "ip" who open not only one port at the same time(order by count). But, considering the volume of data and very little docs have same value on "ip" field, obviously I get an out of memory error. Is there any way to finish my query mission.
-- You received this message because you are subscribed to the Google Groups "elasticsearch" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/c15fcb9d-14f0-4eac-ba33-4b46d21c75a0%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
