Follow this simple steps to make your OS to trust a self-signed Certificate Authority
You can change an index name by reindexing its data to a different index and switching it to an alias, all behind the scenes with no downtime.
How do we match a large number of documents against a dynamic whitelist/blacklist in Elasticsearch?
It is useful sometimes to have day of week and day of month in fields that are separate from the
@timestamp so we can make aggregations or even machine learning jobs to find a potential correlation between your events and weekdays.
A common error people face when putting an Elasticsearch cluster to production has to do with memory locking. Tipically users would see errors like “Unable to lock JVM memory (ENOMEM). This can result in part of the JVM being swapped out. Increase RLIMIT_MEMLOCK (ulimit)” or “memory locking requested for elasticsearch process but memory is not locked”.