Skip to content

Commit

Permalink
Default Beats Kibana dashboards to KQL instead of Lucene (#11268)
Browse files Browse the repository at this point in the history
Closes #10969.

In Kibana as of 7.0, the default query language is no longer Lucene, but KQL (Kibana Query Language).

This PR updates all of the JSON objects to use the new language, and modifies any existing queries to the new syntax (if needed - most of them stayed the same).
  • Loading branch information
lukasolson authored and ruflin committed Mar 21, 2019
1 parent 6865403 commit 02d29c6
Show file tree
Hide file tree
Showing 83 changed files with 1,040 additions and 1,733 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@
"searchSourceJSON": {
"filter": [],
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -63,7 +63,7 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -115,7 +115,7 @@
"searchSourceJSON": {
"filter": [],
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -231,8 +231,8 @@
"highlightAll": true,
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": "*"
"language": "kuery",
"query": ""
},
"version": true
}
Expand All @@ -258,7 +258,7 @@
"filter": [],
"highlightAll": true,
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -82,7 +82,7 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -191,7 +191,7 @@
"highlightAll": true,
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand All @@ -218,7 +218,7 @@
"filter": [],
"highlightAll": true,
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -35,7 +35,7 @@
}
],
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -129,7 +129,7 @@
"searchSourceJSON": {
"filter": [],
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -223,7 +223,7 @@
"searchSourceJSON": {
"filter": [],
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -388,7 +388,7 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
}
}
Expand Down Expand Up @@ -545,7 +545,7 @@
"highlightAll": true,
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand Down Expand Up @@ -652,7 +652,7 @@
"highlightAll": true,
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand Down Expand Up @@ -782,7 +782,7 @@
"highlightAll": true,
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand All @@ -809,8 +809,8 @@
"filter": [],
"highlightAll": true,
"query": {
"language": "lucene",
"query": "*"
"language": "kuery",
"query": ""
},
"version": true
}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -8,14 +8,8 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"query": "*"
}
}
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -114,14 +108,8 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"query": "*"
}
}
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -253,14 +241,8 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"query": "*"
}
}
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -315,14 +297,8 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"query": "*"
}
}
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -377,15 +353,9 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"language": "kuery",
"query": "event.action:updated OR event.action:attributes_modified"
}
}
}
}
},
"savedSearchId": "a380a060-cb44-11e7-9835-2f31fe08873b-ecs",
Expand Down Expand Up @@ -540,8 +510,8 @@
],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": "*"
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -639,14 +609,8 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"query": "*"
}
}
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -744,14 +708,8 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"query": "*"
}
}
"language": "kuery",
"query": ""
}
}
},
Expand Down Expand Up @@ -835,15 +793,9 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"language": "kuery",
"query": "event.action:deleted"
}
}
}
}
},
"savedSearchId": "a380a060-cb44-11e7-9835-2f31fe08873b-ecs",
Expand Down Expand Up @@ -897,15 +849,9 @@
"filter": [],
"index": "auditbeat-*",
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"default_field": "*",
"language": "kuery",
"query": "event.action:created"
}
}
}
}
},
"savedSearchId": "a380a060-cb44-11e7-9835-2f31fe08873b-ecs",
Expand Down Expand Up @@ -992,7 +938,7 @@
"highlightAll": true,
"index": "auditbeat-*",
"query": {
"language": "lucene",
"language": "kuery",
"query": ""
},
"version": true
Expand All @@ -1019,13 +965,8 @@
"filter": [],
"highlightAll": true,
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"query": "*"
}
}
"language": "kuery",
"query": ""
},
"version": true
}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -448,11 +448,9 @@
},
"index": "filebeat-*",
"query": {
"query_string": {
"analyze_wildcard": true,
"language": "kuery",
"query": "event.dataset:apache.error"
}
}
}
},
"sort": [
Expand Down Expand Up @@ -494,11 +492,9 @@
},
"index": "filebeat-*",
"query": {
"query_string": {
"analyze_wildcard": true,
"language": "kuery",
"query": "event.dataset:apache.access"
}
}
}
},
"sort": [
Expand All @@ -521,13 +517,8 @@
"filter": [],
"highlightAll": true,
"query": {
"language": "lucene",
"query": {
"query_string": {
"analyze_wildcard": true,
"query": "*"
}
}
"language": "kuery",
"query": ""
},
"version": true
}
Expand Down
Loading

0 comments on commit 02d29c6

Please sign in to comment.