elasticsearch/esclean.py: use match for fleet field
Signed-off-by: Jakub Sokołowski <jakub@status.im>
This commit is contained in:
parent
dba844b9d3
commit
1e1228cd3a
|
@ -71,7 +71,7 @@ def main():
|
|||
elif opts.program:
|
||||
queries.append({'term': {'program': opts.program}})
|
||||
if opts.fleet:
|
||||
queries.append({'term': {'fleet': opts.fleet}})
|
||||
queries.append({'match': {'fleet': opts.fleet}})
|
||||
if opts.severity:
|
||||
queries.append({'term': {'severity_name': opts.severity}})
|
||||
if opts.logsource_ip:
|
||||
|
|
Loading…
Reference in New Issue