The default analyzer is standard. If I change it to keyword I can get regex working. But I want both to work simultaneously. For ex, Lets say I push this event to elasticsearch via logstash "this is my new string". In kibana search, If I look for message:"string", it should return me "this is my new string" If I look for message:"this.*string", it should return me "this is my new string"
How should I configure my index? If I mark the field as "not_analyzed" search for "new string" will fail. I want fix and regex to both work. Can I get combination of keyword+standard analyzer to work? -- You received this message because you are subscribed to the Google Groups "elasticsearch" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/108e209b-64ce-40b8-81f0-cd67b8b0fd77%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
