diff options
-rw-r--r-- | logstash/conf.d/11-apache-access.conf | 18 | ||||
-rw-r--r-- | logstash/kibana.json | 302 |
2 files changed, 256 insertions, 64 deletions
diff --git a/logstash/conf.d/11-apache-access.conf b/logstash/conf.d/11-apache-access.conf index 5fb8843..29880de 100644 --- a/logstash/conf.d/11-apache-access.conf +++ b/logstash/conf.d/11-apache-access.conf @@ -2,36 +2,28 @@ filter { if [type] == "apache-access" { grok { match => [ "message", "%{NEWAPACHELOG}" ] - patterns_dir => ["/etc/logstash/patterns.d"] break_on_match => false - + patterns_dir => ["/etc/logstash/patterns.d"] } grok { match => [ "request", '(?<git_repo_name>(.*?)\.git)' ] -# add_tag => [ "git-upload-pack" ] - break_on_match => false - + add_tag => [ "git-upload-pack" ] + break_on_match => false } grok { match => [ "request", '(?<http-smart>/(.*?)\.git/\git-upload-pack)'] add_tag => [ "http-smart" ] - break_on_match => false - + break_on_match => false } grok { - match => [ "request", '(?<http-dumb>\/git-ro.*\/((.*?)\.git\/info\/refs\?service=git-upload-pack))' ] + match => [ "request", '(?<http-dumb>/(.*?)\.git/info/refs\?service=git-upload-pack)'] add_tag => [ "http-dumb" ] break_on_match => false - } - mutate { - gsub => [ "git_repo_name", "\/git-ro*", "" ] - } - geoip { source => "clientip" target => "geoip" diff --git a/logstash/kibana.json b/logstash/kibana.json index 1ad8915..ae1b8ae 100644 --- a/logstash/kibana.json +++ b/logstash/kibana.json @@ -1,43 +1,60 @@ [ { - "_id": "git-daemon", + "_id": "api", "_type": "dashboard", "_source": { - "title": "git-daemon", + "title": "api", "hits": 0, "description": "", - "panelsJSON": "[{\"col\":4,\"id\":\"apache_git_access_git_us_dumb\",\"panelIndex\":1,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":1,\"id\":\"apache_git_access_git_us_smart\",\"panelIndex\":2,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":7,\"id\":\"git-upload-pack-IP-Address\",\"panelIndex\":3,\"row\":7,\"size_x\":4,\"size_y\":5,\"type\":\"visualization\"},{\"col\":7,\"id\":\"git_us_smart_dumb_git_protocol_pie_chart\",\"panelIndex\":4,\"row\":1,\"size_x\":4,\"size_y\":6,\"type\":\"visualization\"},{\"col\":1,\"id\":\"syslog_git_access_git_us_git_protocol\",\"panelIndex\":5,\"row\":6,\"size_x\":3,\"size_y\":6,\"type\":\"visualization\"},{\"col\":4,\"id\":\"git_upload_pack_tag_map\",\"panelIndex\":6,\"row\":6,\"size_x\":3,\"size_y\":6,\"type\":\"visualization\"},{\"id\":\"geo_by_city_country\",\"type\":\"visualization\",\"panelIndex\":7,\"size_x\":3,\"size_y\":4,\"col\":4,\"row\":12}]", + "panelsJSON": "[{\"id\":\"api_v1_v2\",\"type\":\"visualization\",\"panelIndex\":1,\"size_x\":5,\"size_y\":5,\"col\":1,\"row\":1},{\"id\":\"api-v1-and-v2\",\"type\":\"visualization\",\"panelIndex\":2,\"size_x\":5,\"size_y\":5,\"col\":6,\"row\":1}]", "optionsJSON": "{\"darkTheme\":false}", "uiStateJSON": "{}", "version": 1, "timeRestore": false, "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[{\"query\":{\"query_string\":{\"query\":\"*\",\"analyze_wildcard\":true}}}]}" + } + } + }, + { + "_id": "git-daemon-git-us", + "_type": "dashboard", + "_source": { + "title": "git-daemon-git-us", + "hits": 0, + "description": "", + "panelsJSON": "[{\"col\":4,\"id\":\"apache_git_access_git_us_dumb\",\"panelIndex\":1,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":1,\"id\":\"apache_git_access_git_us_smart\",\"panelIndex\":2,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":7,\"id\":\"git_us_smart_dumb_git_protocol_pie_chart\",\"panelIndex\":4,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":1,\"id\":\"syslog_git_access_git_us_git_protocol\",\"panelIndex\":5,\"row\":6,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"id\":\"geo_by_city_country_git_us\",\"type\":\"visualization\",\"panelIndex\":8,\"size_x\":3,\"size_y\":2,\"col\":8,\"row\":8},{\"id\":\"git-upload-pack-IP-Address_git_us\",\"type\":\"visualization\",\"panelIndex\":9,\"size_x\":4,\"size_y\":5,\"col\":4,\"row\":6},{\"id\":\"git_upload_pack_tag_map_git_us\",\"type\":\"visualization\",\"panelIndex\":10,\"size_x\":3,\"size_y\":2,\"col\":8,\"row\":6}]", + "optionsJSON": "{\"darkTheme\":false}", + "uiStateJSON": "{\"P-3\":{\"spy\":{\"mode\":{\"fill\":false,\"name\":null}}}}", + "version": 1, + "timeRestore": false, + "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[{\"query\":{\"query_string\":{\"analyze_wildcard\":true,\"query\":\"*\"}}}]}" } } }, { - "_id": "api", + "_id": "git-daemon-git-ie", "_type": "dashboard", "_source": { - "title": "api", + "title": "git-daemon-git-ie", "hits": 0, "description": "", - "panelsJSON": "[{\"id\":\"api_v1_v2\",\"type\":\"visualization\",\"panelIndex\":1,\"size_x\":5,\"size_y\":5,\"col\":1,\"row\":1},{\"id\":\"api-v1-and-v2\",\"type\":\"visualization\",\"panelIndex\":2,\"size_x\":5,\"size_y\":5,\"col\":6,\"row\":1}]", + "panelsJSON": "[{\"col\":4,\"id\":\"apache_git_access_git_ie_dumb\",\"panelIndex\":1,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":1,\"id\":\"apache_git_access_git_ie_smart\",\"panelIndex\":2,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":7,\"id\":\"git_ie_smart_dumb_git_protocol_pie_chart\",\"panelIndex\":4,\"row\":1,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"col\":1,\"id\":\"syslog_git_access_git_ie_git_protocol\",\"panelIndex\":5,\"row\":6,\"size_x\":3,\"size_y\":5,\"type\":\"visualization\"},{\"id\":\"geo_by_city_country_git_ie\",\"type\":\"visualization\",\"panelIndex\":8,\"size_x\":3,\"size_y\":2,\"col\":8,\"row\":8},{\"id\":\"git-upload-pack-IP-Address_git_ie\",\"type\":\"visualization\",\"panelIndex\":9,\"size_x\":4,\"size_y\":5,\"col\":4,\"row\":6},{\"id\":\"git_upload_pack_tag_map_git_ie\",\"type\":\"visualization\",\"panelIndex\":10,\"size_x\":3,\"size_y\":2,\"col\":8,\"row\":6}]", "optionsJSON": "{\"darkTheme\":false}", - "uiStateJSON": "{}", + "uiStateJSON": "{\"P-3\":{\"spy\":{\"mode\":{\"fill\":false,\"name\":null}}}}", "version": 1, "timeRestore": false, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"filter\":[{\"query\":{\"query_string\":{\"query\":\"*\",\"analyze_wildcard\":true}}}]}" + "searchSourceJSON": "{\"filter\":[{\"query\":{\"query_string\":{\"analyze_wildcard\":true,\"query\":\"*\"}}}]}" } } }, { - "_id": "apache_git_accesss_git_us_dumb", + "_id": "\"-slash-api-slash-\"-AND-\"publish\"", "_type": "search", "_source": { - "title": "apache_git_accesss_git_us_dumb", + "title": "\"/api/\" AND \"publish\"", "description": "", "hits": 0, "columns": [ @@ -49,15 +66,15 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"query\":{\"query_string\":{\"analyze_wildcard\":true,\"query\":\"*\"}},\"filter\":[{\"$state\":{\"store\":\"appState\"},\"meta\":{\"alias\":null,\"disabled\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"negate\":false,\"value\":\"http-dumb\"},\"query\":{\"match\":{\"tags\":{\"query\":\"http-dumb\",\"type\":\"phrase\"}}}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"/api/\\\" AND \\\"publish\\\"\",\"analyze_wildcard\":true}}}" } } }, { - "_id": "\"-slash-api-slash-\"-AND-\"publish\"", + "_id": "\"-slash-api-slash-v2\"", "_type": "search", "_source": { - "title": "\"/api/\" AND \"publish\"", + "title": "\"/api/v2\"", "description": "", "hits": 0, "columns": [ @@ -69,15 +86,15 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"/api/\\\" AND \\\"publish\\\"\",\"analyze_wildcard\":true}}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"/api/v2/publish\\\"\",\"analyze_wildcard\":true}}}" } } }, { - "_id": "apache_git_accesss_git_us_smart", + "_id": "\"-slash-api-slash-v3\"", "_type": "search", "_source": { - "title": "apache_git_accesss_git_us_smart", + "title": "\"/api/v3\"", "description": "", "hits": 0, "columns": [ @@ -89,15 +106,15 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"verb\",\"value\":\"POST\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"verb\":{\"query\":\"POST\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"git-upload-pack\\\"\",\"analyze_wildcard\":true}}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"/api/v3/publish\\\"\",\"analyze_wildcard\":true}}}" } } }, { - "_id": "\"-slash-api-slash-v3\"", + "_id": "apache_git_accesss_git_ie_smart", "_type": "search", "_source": { - "title": "\"/api/v3\"", + "title": "apache_git_accesss_git_ie_smart", "description": "", "hits": 0, "columns": [ @@ -109,15 +126,15 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"/api/v3/publish\\\"\",\"analyze_wildcard\":true}}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"verb\",\"value\":\"POST\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"verb\":{\"query\":\"POST\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-ie.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-ie.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"git-upload-pack\\\"\",\"analyze_wildcard\":true}}}" } } }, { - "_id": "git_upload_pack_tag", + "_id": "apache_git_accesss_git_ie_dumb", "_type": "search", "_source": { - "title": "git_upload_pack_tag", + "title": "apache_git_accesss_git_ie_dumb", "description": "", "hits": 0, "columns": [ @@ -129,15 +146,15 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"value\":\"git-upload-pack\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"tags\":{\"query\":\"git-upload-pack\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"*\",\"analyze_wildcard\":true}}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"query\":{\"query_string\":{\"analyze_wildcard\":true,\"query\":\"*\"}},\"filter\":[{\"$state\":{\"store\":\"appState\"},\"meta\":{\"alias\":null,\"disabled\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"negate\":false,\"value\":\"http-dumb\"},\"query\":{\"match\":{\"tags\":{\"query\":\"http-dumb\",\"type\":\"phrase\"}}}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.name\",\"value\":\"git-ie.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.name\":{\"query\":\"git-ie.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647}}" } } }, { - "_id": "\"-slash-api-slash-v2\"", + "_id": "syslog_git_accesss_git_ie_git_protocol", "_type": "search", "_source": { - "title": "\"/api/v2\"", + "title": "syslog_git_accesss_git_ie_git_protocol", "description": "", "hits": 0, "columns": [ @@ -149,7 +166,7 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"/api/v2/publish\\\"\",\"analyze_wildcard\":true}}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"query\":{\"query_string\":{\"query\":\"*\",\"analyze_wildcard\":true}},\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"type\",\"value\":\"syslog\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"type\":{\"query\":\"syslog\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"value\":\"git-protocol\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"tags\":{\"query\":\"git-protocol\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-ie.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-ie.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647}}" } } }, @@ -169,7 +186,87 @@ ], "version": 1, "kibanaSavedObjectMeta": { - "searchSourceJSON": "{\"index\":\"logstash-*\",\"query\":{\"query_string\":{\"query\":\"*\",\"analyze_wildcard\":true}},\"filter\":[{\"$state\":{\"store\":\"appState\"},\"meta\":{\"alias\":null,\"disabled\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"negate\":false,\"value\":\"git-upload-pack\"},\"query\":{\"match\":{\"tags\":{\"query\":\"git-upload-pack\",\"type\":\"phrase\"}}}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"type\",\"value\":\"syslog\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"type\":{\"query\":\"syslog\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647}}" + "searchSourceJSON": "{\"index\":\"logstash-*\",\"query\":{\"query_string\":{\"query\":\"*\",\"analyze_wildcard\":true}},\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"type\",\"value\":\"syslog\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"type\":{\"query\":\"syslog\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"value\":\"git-protocol\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"tags\":{\"query\":\"git-protocol\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-us.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-us.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647}}" + } + } + }, + { + "_id": "apache_git_accesss_git_us_smart", + "_type": "search", + "_source": { + "title": "apache_git_accesss_git_us_smart", + "description": "", + "hits": 0, + "columns": [ + "_source" + ], + "sort": [ + "@timestamp", + "desc" + ], + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"verb\",\"value\":\"POST\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"verb\":{\"query\":\"POST\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-us.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-us.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"\\\"git-upload-pack\\\"\",\"analyze_wildcard\":true}}}" + } + } + }, + { + "_id": "git_upload_pack_tag_git_ie", + "_type": "search", + "_source": { + "title": "git_upload_pack_tag_git_ie", + "description": "", + "hits": 0, + "columns": [ + "_source" + ], + "sort": [ + "@timestamp", + "desc" + ], + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-ie.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-ie.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"(tags: http-dumb) OR (tags: http-smart) OR (tags: git-protocol)\",\"analyze_wildcard\":true}}}" + } + } + }, + { + "_id": "git_upload_pack_tag_git_us", + "_type": "search", + "_source": { + "title": "git_upload_pack_tag_git_us", + "description": "", + "hits": 0, + "columns": [ + "_source" + ], + "sort": [ + "@timestamp", + "desc" + ], + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"index\":\"logstash-*\",\"filter\":[{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-us.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-us.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"(tags: http-dumb) OR (tags: http-smart) OR (tags: git-protocol)\",\"analyze_wildcard\":true}}}" + } + } + }, + { + "_id": "apache_git_accesss_git_us_dumb", + "_type": "search", + "_source": { + "title": "apache_git_accesss_git_us_dumb", + "description": "", + "hits": 0, + "columns": [ + "_source" + ], + "sort": [ + "@timestamp", + "desc" + ], + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"index\":\"logstash-*\",\"query\":{\"query_string\":{\"analyze_wildcard\":true,\"query\":\"*\"}},\"filter\":[{\"$state\":{\"store\":\"appState\"},\"meta\":{\"alias\":null,\"disabled\":false,\"index\":\"logstash-*\",\"key\":\"tags\",\"negate\":false,\"value\":\"http-dumb\"},\"query\":{\"match\":{\"tags\":{\"query\":\"http-dumb\",\"type\":\"phrase\"}}}},{\"meta\":{\"negate\":false,\"index\":\"logstash-*\",\"key\":\"beat.hostname\",\"value\":\"git-us.linaro.org\",\"disabled\":false,\"alias\":null},\"query\":{\"match\":{\"beat.hostname\":{\"query\":\"git-us.linaro.org\",\"type\":\"phrase\"}}},\"$state\":{\"store\":\"appState\"}}],\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647}}" } } }, @@ -204,14 +301,14 @@ } }, { - "_id": "apache_git_access_git_us_smart", + "_id": "api-v1-and-v2", "_type": "visualization", "_source": { - "title": "apache_git_access_git_us_smart", - "visState": "{\"title\":\"apache_git_access_git_us_smart\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"git_repo_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "title": "api v1 and v2", + "visState": "{\"title\":\"api v1 and v2\",\"type\":\"line\",\"params\":{\"shareYAxis\":true,\"addTooltip\":true,\"addLegend\":true,\"showCircles\":true,\"smoothLines\":false,\"interpolate\":\"linear\",\"scale\":\"linear\",\"drawLinesBetweenPoints\":true,\"radiusRatio\":9,\"times\":[],\"addTimeMarker\":false,\"defaultYExtents\":false,\"setYExtents\":false,\"yAxis\":{}},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"date_histogram\",\"schema\":\"segment\",\"params\":{\"field\":\"@timestamp\",\"interval\":\"auto\",\"customInterval\":\"2h\",\"min_doc_count\":1,\"extended_bounds\":{}}},{\"id\":\"3\",\"type\":\"filters\",\"schema\":\"group\",\"params\":{\"filters\":[{\"input\":{\"query\":{\"query_string\":{\"query\":\"\\\"/v2/\\\"\",\"analyze_wildcard\":true}}},\"label\":\"\"},{\"input\":{\"query\":{\"query_string\":{\"query\":\"\\\"/v3/\\\"\",\"analyze_wildcard\":true}}}}]}}],\"listeners\":{}}", "uiStateJSON": "{}", "description": "", - "savedSearchId": "apache_git_accesss_git_us_smart", + "savedSearchId": "\"-slash-api-slash-\"-AND-\"publish\"", "version": 1, "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[]}" @@ -234,14 +331,14 @@ } }, { - "_id": "api-v1-and-v2", + "_id": "apache_git_access_git_us_smart", "_type": "visualization", "_source": { - "title": "api v1 and v2", - "visState": "{\"title\":\"api v1 and v2\",\"type\":\"line\",\"params\":{\"shareYAxis\":true,\"addTooltip\":true,\"addLegend\":true,\"showCircles\":true,\"smoothLines\":false,\"interpolate\":\"linear\",\"scale\":\"linear\",\"drawLinesBetweenPoints\":true,\"radiusRatio\":9,\"times\":[],\"addTimeMarker\":false,\"defaultYExtents\":false,\"setYExtents\":false,\"yAxis\":{}},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"date_histogram\",\"schema\":\"segment\",\"params\":{\"field\":\"@timestamp\",\"interval\":\"auto\",\"customInterval\":\"2h\",\"min_doc_count\":1,\"extended_bounds\":{}}},{\"id\":\"3\",\"type\":\"filters\",\"schema\":\"group\",\"params\":{\"filters\":[{\"input\":{\"query\":{\"query_string\":{\"query\":\"\\\"/v2/\\\"\",\"analyze_wildcard\":true}}},\"label\":\"\"},{\"input\":{\"query\":{\"query_string\":{\"query\":\"\\\"/v3/\\\"\",\"analyze_wildcard\":true}}}}]}}],\"listeners\":{}}", + "title": "apache_git_access_git_us_smart", + "visState": "{\"title\":\"apache_git_access_git_us_smart\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"git_repo_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", "uiStateJSON": "{}", "description": "", - "savedSearchId": "\"-slash-api-slash-\"-AND-\"publish\"", + "savedSearchId": "apache_git_accesss_git_us_smart", "version": 1, "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[]}" @@ -249,14 +346,44 @@ } }, { - "_id": "git_us_smart_dumb_git_protocol_pie_chart", + "_id": "git_upload_pack_tag_map_git_us", "_type": "visualization", "_source": { - "title": "git_us_smart_dumb_git_protocol_pie_chart", - "visState": "{\"title\":\"git_us_smart_dumb_git_protocol_pie_chart\",\"type\":\"pie\",\"params\":{\"shareYAxis\":true,\"addTooltip\":true,\"addLegend\":true,\"isDonut\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"filters\",\"schema\":\"segment\",\"params\":{\"filters\":[{\"input\":{\"query\":{\"query_string\":{\"query\":\"type: syslog\",\"analyze_wildcard\":true}}},\"label\":\"GIT Protocol\"},{\"input\":{\"query\":{\"query_string\":{\"query\":\"verb: POST\",\"analyze_wildcard\":true}}},\"label\":\"Smart Protocol\"},{\"input\":{\"query\":{\"query_string\":{\"query\":\"tags: http-dumb\",\"analyze_wildcard\":true}}},\"label\":\"Dumb Protocol\"}]}}],\"listeners\":{}}", + "title": "git_upload_pack_tag_map_git_us", + "visState": "{\"aggs\":[{\"id\":\"1\",\"params\":{},\"schema\":\"metric\",\"type\":\"count\"},{\"id\":\"2\",\"params\":{\"autoPrecision\":true,\"field\":\"geoip.location\",\"precision\":2},\"schema\":\"segment\",\"type\":\"geohash_grid\"}],\"listeners\":{},\"params\":{\"addTooltip\":true,\"heatBlur\":15,\"heatMaxZoom\":16,\"heatMinOpacity\":0.1,\"heatNormalizeData\":true,\"heatRadius\":25,\"isDesaturated\":true,\"mapType\":\"Scaled Circle Markers\",\"wms\":{\"enabled\":false,\"options\":{\"attribution\":\"Maps provided by USGS\",\"format\":\"image/png\",\"layers\":\"0\",\"styles\":\"\",\"transparent\":true,\"version\":\"1.3.0\"},\"url\":\"https://basemap.nationalmap.gov/arcgis/services/USGSTopo/MapServer/WMSServer\"}},\"title\":\"git_upload_pack_tag_map_git_us\",\"type\":\"tile_map\"}", + "uiStateJSON": "{}", + "description": "", + "savedSearchId": "git_upload_pack_tag_git_us", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[]}" + } + } + }, + { + "_id": "git-upload-pack-IP-Address_git_us", + "_type": "visualization", + "_source": { + "title": "git-upload-pack-IP-Address_git_us", + "visState": "{\"title\":\"git-upload-pack-IP-Address_git_us\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"clientip.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "uiStateJSON": "{}", + "description": "", + "savedSearchId": "git_upload_pack_tag_git_us", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[]}" + } + } + }, + { + "_id": "git_upload_pack_tag_map_git_ie", + "_type": "visualization", + "_source": { + "title": "git_upload_pack_tag_map_git_ie", + "visState": "{\"aggs\":[{\"id\":\"1\",\"params\":{},\"schema\":\"metric\",\"type\":\"count\"},{\"id\":\"2\",\"params\":{\"autoPrecision\":true,\"field\":\"geoip.location\",\"precision\":2},\"schema\":\"segment\",\"type\":\"geohash_grid\"}],\"listeners\":{},\"params\":{\"addTooltip\":true,\"heatBlur\":15,\"heatMaxZoom\":16,\"heatMinOpacity\":0.1,\"heatNormalizeData\":true,\"heatRadius\":25,\"isDesaturated\":true,\"mapType\":\"Scaled Circle Markers\",\"wms\":{\"enabled\":false,\"options\":{\"attribution\":\"Maps provided by USGS\",\"format\":\"image/png\",\"layers\":\"0\",\"styles\":\"\",\"transparent\":true,\"version\":\"1.3.0\"},\"url\":\"https://basemap.nationalmap.gov/arcgis/services/USGSTopo/MapServer/WMSServer\"}},\"title\":\"git_upload_pack_tag_map_git_ie\",\"type\":\"tile_map\"}", "uiStateJSON": "{}", "description": "", - "savedSearchId": "git_upload_pack_tag", + "savedSearchId": "git_upload_pack_tag_git_ie", "version": 1, "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[]}" @@ -264,14 +391,14 @@ } }, { - "_id": "git-upload-pack-IP-Address", + "_id": "geo_by_city_country_git_ie", "_type": "visualization", "_source": { - "title": "git-upload-pack-IP-Address", - "visState": "{\"title\":\"git-upload-pack-IP-Address\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"clientip.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "title": "geo_by_city_country_git_ie", + "visState": "{\"title\":\"geo_by_city_country_git_ie\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"3\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"geoip.city_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"geoip.country_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", "uiStateJSON": "{}", "description": "", - "savedSearchId": "git_upload_pack_tag", + "savedSearchId": "git_upload_pack_tag_git_ie", "version": 1, "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[]}" @@ -279,14 +406,14 @@ } }, { - "_id": "git_upload_pack_tag_map", + "_id": "git-upload-pack-IP-Address_git_ie", "_type": "visualization", "_source": { - "title": "git_upload_pack_tag_map", - "visState": "{\"aggs\":[{\"id\":\"1\",\"params\":{},\"schema\":\"metric\",\"type\":\"count\"},{\"id\":\"2\",\"params\":{\"autoPrecision\":true,\"field\":\"geoip.location\",\"precision\":2},\"schema\":\"segment\",\"type\":\"geohash_grid\"}],\"listeners\":{},\"params\":{\"addTooltip\":true,\"heatBlur\":15,\"heatMaxZoom\":16,\"heatMinOpacity\":0.1,\"heatNormalizeData\":true,\"heatRadius\":25,\"isDesaturated\":true,\"mapType\":\"Scaled Circle Markers\",\"wms\":{\"enabled\":false,\"options\":{\"attribution\":\"Maps provided by USGS\",\"format\":\"image/png\",\"layers\":\"0\",\"styles\":\"\",\"transparent\":true,\"version\":\"1.3.0\"},\"url\":\"https://basemap.nationalmap.gov/arcgis/services/USGSTopo/MapServer/WMSServer\"}},\"title\":\"git_upload_pack_tag_map\",\"type\":\"tile_map\"}", + "title": "git-upload-pack-IP-Address_git_ie", + "visState": "{\"title\":\"git-upload-pack-IP-Address_git_ie\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"clientip.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", "uiStateJSON": "{}", "description": "", - "savedSearchId": "git_upload_pack_tag", + "savedSearchId": "git_upload_pack_tag_git_ie", "version": 1, "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[]}" @@ -294,18 +421,91 @@ } }, { - "_id": "geo_by_city_country", + "_id": "geo_by_city_country_git_us", "_type": "visualization", "_source": { - "title": "geo_by_city_country", - "visState": "{\"title\":\"geo_by_city_country\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"3\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"geoip.city_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"geoip.country_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "title": "geo_by_city_country_git_us", + "visState": "{\"title\":\"geo_by_city_country_git_us\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"3\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"geoip.city_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"geoip.country_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", "uiStateJSON": "{}", "description": "", - "savedSearchId": "git_upload_pack_tag", + "savedSearchId": "git_upload_pack_tag_git_us", "version": 1, "kibanaSavedObjectMeta": { "searchSourceJSON": "{\"filter\":[]}" } } + }, + { + "_id": "apache_git_access_git_ie_smart", + "_type": "visualization", + "_source": { + "title": "apache_git_access_git_ie_smart", + "visState": "{\"title\":\"apache_git_access_git_ie_smart\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"git_repo_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "uiStateJSON": "{}", + "description": "", + "savedSearchId": "apache_git_accesss_git_ie_smart", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[]}" + } + } + }, + { + "_id": "apache_git_access_git_ie_dumb", + "_type": "visualization", + "_source": { + "title": "apache_git_access_git_ie_dumb", + "visState": "{\"title\":\"apache_git_access_git_ie_dumb\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"git_repo_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "uiStateJSON": "{\"spy\":{\"mode\":{\"name\":null,\"fill\":false}}}", + "description": "", + "savedSearchId": "apache_git_accesss_git_ie_dumb", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[]}" + } + } + }, + { + "_id": "syslog_git_access_git_ie_git_protocol", + "_type": "visualization", + "_source": { + "title": "syslog_git_access_git_ie_git_protocol", + "visState": "{\"title\":\"syslog_git_access_git_ie_git_protocol\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"git_repo_name.raw\",\"size\":500,\"order\":\"desc\",\"orderBy\":\"1\"}}],\"listeners\":{}}", + "uiStateJSON": "{}", + "description": "", + "savedSearchId": "syslog_git_accesss_git_ie_git_protocol", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[]}" + } + } + }, + { + "_id": "git_us_smart_dumb_git_protocol_pie_chart", + "_type": "visualization", + "_source": { + "title": "git_us_smart_dumb_git_protocol_pie_chart", + "visState": "{\"title\":\"git_us_smart_dumb_git_protocol_pie_chart\",\"type\":\"pie\",\"params\":{\"shareYAxis\":true,\"addTooltip\":true,\"addLegend\":true,\"isDonut\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"filters\",\"schema\":\"segment\",\"params\":{\"filters\":[{\"input\":{\"query\":{\"query_string\":{\"query\":\"(type:syslog AND tags: git-protocol)\",\"analyze_wildcard\":true}}},\"label\":\"GIT Protocol\"},{\"input\":{\"query\":{\"exists\":{\"field\":\"http-smart\"}}},\"label\":\"Smart Protocol\"},{\"input\":{\"query\":{\"exists\":{\"field\":\"http-dumb\"}}},\"label\":\"Dumb Protocol\"}]}}],\"listeners\":{}}", + "uiStateJSON": "{}", + "description": "", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[],\"index\":\"logstash-*\",\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"beat.hostname: \\\"git-us.linaro.org\\\"\",\"analyze_wildcard\":true}}}" + } + } + }, + { + "_id": "git_ie_smart_dumb_git_protocol_pie_chart", + "_type": "visualization", + "_source": { + "title": "git_ie_smart_dumb_git_protocol_pie_chart", + "visState": "{\"title\":\"git_ie_smart_dumb_git_protocol_pie_chart\",\"type\":\"pie\",\"params\":{\"shareYAxis\":true,\"addTooltip\":true,\"addLegend\":true,\"isDonut\":false},\"aggs\":[{\"id\":\"1\",\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"type\":\"filters\",\"schema\":\"segment\",\"params\":{\"filters\":[{\"input\":{\"query\":{\"query_string\":{\"query\":\"(type:syslog AND tags: git-protocol)\",\"analyze_wildcard\":true}}},\"label\":\"GIT Protocol\"},{\"input\":{\"query\":{\"exists\":{\"field\":\"http-smart\"}}},\"label\":\"Smart Protocol\"},{\"input\":{\"query\":{\"exists\":{\"field\":\"http-dumb\"}}},\"label\":\"Dumb Protocol\"}]}}],\"listeners\":{}}", + "uiStateJSON": "{}", + "description": "", + "version": 1, + "kibanaSavedObjectMeta": { + "searchSourceJSON": "{\"filter\":[],\"index\":\"logstash-*\",\"highlight\":{\"pre_tags\":[\"@kibana-highlighted-field@\"],\"post_tags\":[\"@/kibana-highlighted-field@\"],\"fields\":{\"*\":{}},\"require_field_match\":false,\"fragment_size\":2147483647},\"query\":{\"query_string\":{\"query\":\"beat.hostname: git-ie.linaro.org\",\"analyze_wildcard\":true}}}" + } + } } ]
\ No newline at end of file |