estceque.builtin
– Builtin processors and pipeline parser¶
- pydantic model estceque.builtin.AppendProcessor¶
Elasticsearch append processor.
See Append processor for more information.
- pydantic model estceque.builtin.BytesProcessor¶
Elasticsearch bytes processor.
See Bytes processor for more information.
- pydantic model estceque.builtin.CommunityIDProcessor¶
Elasticsearch Community ID processor.
See Community ID processor for more information.
- pydantic model estceque.builtin.ConvertProcessor¶
Elasticsearch convert processor.
See Convert processor for more information.
- field type: Literal['integer', 'long', 'float', 'double', 'string', 'boolean', 'ip', 'auto'] [Required]¶
- pydantic model estceque.builtin.CSVProcessor¶
Elasticsearch CSV processor.
See CSV processor for more information.
- field quote: Annotated[str, StringConstraints(min_length=1, max_length=1)] = '"'¶
- Constraints:
min_length = 1
max_length = 1
- pydantic model estceque.builtin.DateProcessor¶
Elasticsearch date processor.
See Date processor for more information.
- pydantic model estceque.builtin.DateIndexNameProcessor¶
Elasticsearch date index name processor.
See Date index name processor for more information.
- field date_rounding: Literal['y', 'M', 'w', 'd', 'h', 'm', 's'] [Required]¶
- pydantic model estceque.builtin.DissectProcessor¶
Elasticsearch dissect processor.
See Dissect processor for more information.
- field pattern: DissectPattern [Required]¶
- pydantic model estceque.builtin.DotExpander¶
Elasticsearch dot expander processor.
See Dot expander processor for more information.
- pydantic model estceque.builtin.DropProcessor¶
Elasticsearch drop processor.
See Drop processor for more information.
- pydantic model estceque.builtin.FailProcessor¶
Elasticsearch fail processor.
See Fail processor for more information.
- pydantic model estceque.builtin.FingerprintProcessor¶
Elasticsearch fingerprint processor.
See Fingerprint processor for more information.
- field method: Literal['MD5', 'SHA-1', 'SHA-256', 'SHA-512', 'MurmurHash3'] = 'SHA-1'¶
- pydantic model estceque.builtin.GeoIPProcessor¶
Elasticsearch GeoIP processor.
See GeoIP processor for more information.
- pydantic model estceque.builtin.GrokProcessor¶
Elasticsearch grok processor.
See Grok processor for more information.
- field ecs_compatibility: Literal['disabled', 'v1'] = 'disabled'¶
- pydantic model estceque.builtin.GsubProcessor¶
Elasticsearch gsub processor.
See Gsub processor for more information.
- pydantic model estceque.builtin.HTMLStripProcessor¶
Elasticsearch HTML strip processor.
See HTML strip processor for more information.
- pydantic model estceque.builtin.JoinProcessor¶
Elasticsearch join processor.
See Join processor for more information.
- pydantic model estceque.builtin.JSONProcessor¶
Elasticsearch JSON processor.
See JSON processor for more information.
- field add_to_root_conflict_strategy: Literal['replace', 'merge'] = 'replace'¶
- pydantic model estceque.builtin.KVProcessor¶
Elasticsearch KV processor.
See KV processor for more information.
- field field_split: re.Pattern [Required]¶
- field value_split: re.Pattern [Required]¶
- pydantic model estceque.builtin.LowercaseProcessor¶
Elasticsearch lowercase processor.
See Lowercase processor for more information.
- pydantic model estceque.builtin.NetworkDirectionProcessor¶
Elasticsearch network direction processor.
See Network direction processor for more information.
- Validators:
_validate
»all fields
- pydantic model estceque.builtin.RedactProcessor¶
Elasticsearch redact processor.
See Redact processor for more information.
- pydantic model estceque.builtin.RegisteredDomainProcessor¶
Elasticsearch registered domain processor.
See Registered domain processor for more information.
- field target_field: FieldPath | EmptyFieldPath = EmptyFieldPath()¶
- pydantic model estceque.builtin.RemoveProcessor¶
Elasticsearch remove processor.
See Remove processor for more information.
- Validators:
_validate
»all fields
- pydantic model estceque.builtin.RenameProcessor¶
Elasticsearch rename processor.
See Rename processor for more information.
- pydantic model estceque.builtin.RerouteProcessor¶
Elasticsearch reroute processor.
See Reroute processor for more information.
- pydantic model estceque.builtin.ScriptProcessor¶
Elasticsearch script processor.
See Script processor for more information.
- field lang: Literal['painless', 'expression', 'mustache'] = 'painless'¶
- pydantic model estceque.builtin.SetProcessor¶
Elasticsearch set processor.
See Set processor for more information.
- Validators:
_validate
»all fields
- field value: Element = None¶
- Validated by:
_validate
- pydantic model estceque.builtin.SetSecurityUserProcessor¶
Elasticsearch set security user processor.
See Set security user processor for more information.
- pydantic model estceque.builtin.SortProcessor¶
Elasticsearch sort processor.
See Sort processor for more information.
- field order: Literal['asc', 'desc'] [Required]¶
- pydantic model estceque.builtin.SplitProcessor¶
Elasticsearch split processor.
See Split processor for more information.
- field separator: re.Pattern [Required]¶
- pydantic model estceque.builtin.TrimProcessor¶
Elasticsearch trim processor.
See Trim processor for more information.
- pydantic model estceque.builtin.UppercaseProcessor¶
Elasticsearch uppercase processor.
See Uppercase processor for more information.
- pydantic model estceque.builtin.URIPartsProcessor¶
Elasticsearch URI parts processor.
See URI parts processor for more information.
- pydantic model estceque.builtin.URLDecodeProcessor¶
Elasticsearch URL decode processor.
See URL decode processor for more information.
- pydantic model estceque.builtin.UserAgentProcessor¶
Elasticsearch user agent processor.
See User agent processor for more information.
- estceque.builtin.DEFAULT_INGEST_PIPELINE_PARSER = DEFAULT_INGEST_PIPELINE_PARSER¶
Default Elasticsearch ingest pipeline parser instance.
This instance defines all of the default processors available in all contexts, including on Elasticsearch and in Logstash’s
elastic_integration
filter.