Hi All,
I have enabled the Modular Input for Elasticsearch(ES) and I am able to get in the data.
My sample data is metric data that was collected using Metricbeats in ES.
Looking at the data ingested in Splunk, there are a lot of fields that are coming through.
Is it possible to selectively index the data into Splunk without changing the configuration or data indices on ES?