Skip to content

Commit 968120c

Browse files
authored
Update logs-data-stream.md to include runtime fields compability issues
1 parent 0fbda05 commit 968120c

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

manage-data/data-store/data-streams/logs-data-stream.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -188,3 +188,6 @@ The `logsdb` index mode uses the following settings:
188188
## Upgrade to logsdb [upgrade-to-logsdb]
189189

190190
Starting with version `9.0`, `logsdb` index mode is automatically applied to data streams with names matching the pattern `logs-*-*`. This default applies to Elasticsearch instances created in version `9.0` or later, as well as older instances that had no data streams matching the pattern `logs-*-*`. For the latter, you can still [configure `logsdb` index mode manually](#how-to-use-logsds).
191+
192+
## Runtime Fields [runtime-fields]
193+
There are some compability issues with runtime fields which are commonly used within Rules for Elastic Security. There is a [dedicated page](security/detect-and-alert/using-logsdb-index-mode-with-elastic-security#logsdb-runtime-fields.md) with more information.

0 commit comments

Comments
 (0)