Company
Date Published
Author
Coralogix Team
Word count
1637
Language
English
Hacker News points
None

Summary

Elasticsearch version 7.13 introduced several new features, enhancements, and bug fixes, with further updates continuing through version 7.13.3. Key additions include the combined_fields query for searching across multiple text fields, the introduction of a frozen storage tier for rarely accessed time-series data, and aliases for trained machine learning models to facilitate algorithm application. The version also enhanced IP address matching for security purposes, improved the speed of terms aggregation under certain conditions, and introduced audit events ignore policies to reduce log volume and improve performance. Notable bug fixes addressed issues such as the default analyzer overwriting the index analyzer, timezone formatting for Epoch date times in composite aggregations, and an error in SQL literal projection with conditions. Some deprecated features, like the wildcard function in Event Query Language, have been replaced with alternatives, and the release addressed a security vulnerability in the Grok parser that could lead to denial of service attacks.