# Search matching by field

**URL:** <https://community.graylog.org/t/search-matching-by-field/11420>\
**Category:** Graylog Central (peer support)\
**Created:** [July 31, 2019, 10:03am UTC](https://community.graylog.org/t/search-matching-by-field/11420 "2019-07-31T10:03:11Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![nepster-web](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/nepster-web/32/4784_2.png) [@nepster-web](https://community.graylog.org/u/nepster-web)\
**Post date:** [July 31, 2019, 10:03am UTC](https://community.graylog.org/t/search-matching-by-field/11420/1 "2019-07-31T10:03:11Z")

</div>

okay, I’m testing greylog3, and got a search problem by field.  
I have the following log-record with an extra field “query”:

 ![_log](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/e/e5663577add95795f56d9f7a4fa3a05ba05c774a.png)

So, I need to find all logs with “createAirport”.

I tried several use cases search:

- query:createAirport
- query:/createAirport/
- query:/(createAirport)/
- query:/ \* createAirport \* /

And it does not work. Can you please tell me what I missed?

---

<div class="post-metadata">

**Author:** ![Ponet](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/ponet/32/2131_2.png) [@Ponet](https://community.graylog.org/u/Ponet)\
**Post date:** [July 31, 2019, 10:36am UTC](https://community.graylog.org/t/search-matching-by-field/11420/2 "2019-07-31T10:36:55Z")

</div>

Try the below as your search query:

`query:(*createAirport*)`

You will also need to enable leading wildcard searches in the server.conf file.

---

<div class="post-metadata">

**Author:** ![nepster-web](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/nepster-web/32/4784_2.png) [@nepster-web](https://community.graylog.org/u/nepster-web)\
**Post date:** [July 31, 2019, 12:42pm UTC](https://community.graylog.org/t/search-matching-by-field/11420/3 "2019-07-31T12:42:18Z")

</div>

Yes, I missed that moment. Thanks you.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/3X/c/7/c7c09c6b5099570133d6502b83f50ba4430de5b6.png) [@system](https://community.graylog.org/u/system)\
**Post date:** [August 14, 2019, 12:42pm UTC](https://community.graylog.org/t/search-matching-by-field/11420/4 "2019-08-14T12:42:19Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
