# Elastic Stack

**URL:** https://discuss.elastic.co/c/elastic-stack/81.md?page=400

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 401

---

## [Elastic Search Next js 13 integration](https://discuss.elastic.co/t/elastic-search-next-js-13-integration/344905)

<div class="topic-metadata">

**Author:** [@Alex770](https://discuss.elastic.co/u/Alex770)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 11:14am UTC](https://discuss.elastic.co/t/elastic-search-next-js-13-integration/344905 "2023-10-12T11:14:19Z")

</div>

Need help to connect to my cluster using search-ui-elasticsearch-connector with my Next jx 13 app. The tls secure connection was established with elastic client. But I am unable to connect with search-ui library.

---

## [Filebeat is not writing log to Destination folder](https://discuss.elastic.co/t/filebeat-is-not-writing-log-to-destination-folder/344822)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 3\
**Last updated:** [October 12, 2023, 11:00am UTC](https://discuss.elastic.co/t/filebeat-is-not-writing-log-to-destination-folder/344822 "2023-10-12T11:00:49Z")

</div>

Hi Team, In my current project I am using filebeat to load csv files to Elasticsearch but filebeat is not writing the log files in to the destination folder instead it is writing /var/log/messages file. Could you please…

---

## [Ram usage problem](https://discuss.elastic.co/t/ram-usage-problem/344900)

<div class="topic-metadata">

**Author:** [@Mertozturkk](https://discuss.elastic.co/u/Mertozturkk)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 10:58am UTC](https://discuss.elastic.co/t/ram-usage-problem/344900 "2023-10-12T10:58:01Z")

</div>

All nodes in the cluster appear to be using approximately 99% of their RAM. What could be the reason for this? I took this image with the elasticvue plugin. This is one of the nodes

---

## [Filebeat service failing after certain time](https://discuss.elastic.co/t/filebeat-service-failing-after-certain-time/344896)

<div class="topic-metadata">

**Author:** [@parvvam](https://discuss.elastic.co/u/parvvam)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 10:45am UTC](https://discuss.elastic.co/t/filebeat-service-failing-after-certain-time/344896 "2023-10-12T10:45:39Z")

</div>

I am using filebeat 7.11.1 to push logs to logstash on a different server where logstatsh and Elasticsearch are installed. The service of filebeat fails after a certain time. It works properly for a minute or two withou…

---

## [How to disable caching in ES?](https://discuss.elastic.co/t/how-to-disable-caching-in-es/344889)

<div class="topic-metadata">

**Author:** [@leslience](https://discuss.elastic.co/u/leslience)\
**Replies:** 1\
**Last updated:** [October 12, 2023, 10:33am UTC](https://discuss.elastic.co/t/how-to-disable-caching-in-es/344889 "2023-10-12T10:33:27Z")

</div>

I am currently facing a challenge where I want to disable the query cache in ES, so that every query request reads data from disk instead of directly accessing ES's JVM memory cache. Query requests include but are not li…

---

## [How to block drilldown except for a specific field in the table in kibana?](https://discuss.elastic.co/t/how-to-block-drilldown-except-for-a-specific-field-in-the-table-in-kibana/344871)

<div class="topic-metadata">

**Author:** [@Aromal\_Thulazi](https://discuss.elastic.co/u/Aromal_Thulazi)\
**Replies:** 2\
**Last updated:** [October 12, 2023, 10:10am UTC](https://discuss.elastic.co/t/how-to-block-drilldown-except-for-a-specific-field-in-the-table-in-kibana/344871 "2023-10-12T10:10:15Z")

</div>

I have two dashboards & it is connected using drilldown .In my first dashboard I have an aggregation based table & have many columns on that table . I want to block the option to go to other dashboard from all other col…

---

## [Kibana Transform\_Vis plugin for 8.x](https://discuss.elastic.co/t/kibana-transform-vis-plugin-for-8-x/344626)

<div class="topic-metadata">

**Author:** [@pchanas](https://discuss.elastic.co/u/pchanas)\
**Replies:** 3\
**Last updated:** [October 12, 2023, 8:56am UTC](https://discuss.elastic.co/t/kibana-transform-vis-plugin-for-8-x/344626 "2023-10-12T08:56:12Z")

</div>

Hi everybody, We have an extensive usage of the transform\_viz plugin firstly released by PhaedrusTheGreek and then maintained by \[gwintzer\] (GitHub - gwintzer/transform\_vis: Transform Visualization for Kibana). Has any…

---

## [Performance tuning in elastic search in application level joins](https://discuss.elastic.co/t/performance-tuning-in-elastic-search-in-application-level-joins/344788)

<div class="topic-metadata">

**Author:** [@yash\_gehi](https://discuss.elastic.co/u/yash_gehi)\
**Replies:** 7\
**Last updated:** [October 12, 2023, 8:47am UTC](https://discuss.elastic.co/t/performance-tuning-in-elastic-search-in-application-level-joins/344788 "2023-10-12T08:47:04Z")

</div>

I have 2 tables which I have to join based on 3 common keys I'm trying for application level joins But it is getting more time in execution and dataset size is kind of large around 3-4 million Can you tell me how…

---

## [Replacing the IP address of two nodes in the elasticsearch cluster](https://discuss.elastic.co/t/replacing-the-ip-address-of-two-nodes-in-the-elasticsearch-cluster/344886)

<div class="topic-metadata">

**Author:** [@zmaxutbekov](https://discuss.elastic.co/u/zmaxutbekov)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 8:44am UTC](https://discuss.elastic.co/t/replacing-the-ip-address-of-two-nodes-in-the-elasticsearch-cluster/344886 "2023-10-12T08:44:19Z")

</div>

Hi, everyone! I have a cluster of 6 nodes. And I needed to change the IP addresses of two nodes. I have taken the following steps: I connected to the node where I need to change the IP address, performed a disable shar…

---

## [How to create API key with built-in role ? Filebeat to Elastic configuration](https://discuss.elastic.co/t/how-to-create-api-key-with-built-in-role-filebeat-to-elastic-configuration/344884)

<div class="topic-metadata">

**Author:** [@Gaetan\_Verdin-Pol](https://discuss.elastic.co/u/Gaetan_Verdin-Pol)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 8:29am UTC](https://discuss.elastic.co/t/how-to-create-api-key-with-built-in-role-filebeat-to-elastic-configuration/344884 "2023-10-12T08:29:29Z")

</div>

Hello all ! I am currently following the nginx filebeat integration from Filebeat to Elastic and I want to use api\_key instead of username/password to authenticate to my Elastic instance and setup the filebeat module. B…

---

## [Manage heavy indexing in kNN indexes](https://discuss.elastic.co/t/manage-heavy-indexing-in-knn-indexes/344840)

<div class="topic-metadata">

**Author:** [@Thijsvdp](https://discuss.elastic.co/u/Thijsvdp)\
**Replies:** 2\
**Last updated:** [October 12, 2023, 7:34am UTC](https://discuss.elastic.co/t/manage-heavy-indexing-in-knn-indexes/344840 "2023-10-12T07:34:24Z")

</div>

Hi everyone, I have performance issues with vector search. Can anyone please help! :slightly\_smiling\_face: I have the following setup: 5 node running on K8s Each node has 32vCPU, 128GB RAM Total index size ~6.5TB at t…

---

## [Would there be any CPU gains by disabling xpack-security and xpack.transport.ssl in Elasticsearch 7.17](https://discuss.elastic.co/t/would-there-be-any-cpu-gains-by-disabling-xpack-security-and-xpack-transport-ssl-in-elasticsearch-7-17/344878)

<div class="topic-metadata">

**Author:** [@Muthukumaran\_Kothand](https://discuss.elastic.co/u/Muthukumaran_Kothand)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 7:29am UTC](https://discuss.elastic.co/t/would-there-be-any-cpu-gains-by-disabling-xpack-security-and-xpack-transport-ssl-in-elasticsearch-7-17/344878 "2023-10-12T07:29:40Z")

</div>

Hi, We run our ES Cluster in a completely closed on-prem Kubernetes environment wherein we do not expose ES ports for any external access (hence no security-hazard) In this case, I wanted to understand if disabling xpa…

---

## [Elastic Stack Automated Event Correlation](https://discuss.elastic.co/t/elastic-stack-automated-event-correlation/344877)

<div class="topic-metadata">

**Author:** [@andresyahfahmi](https://discuss.elastic.co/u/andresyahfahmi)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 7:28am UTC](https://discuss.elastic.co/t/elastic-stack-automated-event-correlation/344877 "2023-10-12T07:28:56Z")

</div>

We currently have an Elastic Stack that is used to centralize logs and events in our IT environment. We collect logs using Elastic Agent/Filebeat, and we use an in-house application to collect third-party alert emails an…

---

## [ELK8.10 filebeat input combine modules and filestream and can not show dashboard current](https://discuss.elastic.co/t/elk8-10-filebeat-input-combine-modules-and-filestream-and-can-not-show-dashboard-current/344876)

<div class="topic-metadata">

**Author:** [@p81061473525](https://discuss.elastic.co/u/p81061473525)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 6:55am UTC](https://discuss.elastic.co/t/elk8-10-filebeat-input-combine-modules-and-filestream-and-can-not-show-dashboard-current/344876 "2023-10-12T06:55:00Z")

</div>

Hello, I'm currently installing version ELK8.10. my system diagram like this one filebeat -\> es cluster my problem is my server has mutiple log need to collect . such as. nginx, php log, rsyslog ... and I know file…

---

## [Index name , doc say : Cannot be . or .. but run result](https://discuss.elastic.co/t/index-name-doc-say-cannot-be-or-but-run-result/344864)

<div class="topic-metadata">

**Author:** [@startjava](https://discuss.elastic.co/u/startjava)\
**Replies:** 6\
**Last updated:** [October 12, 2023, 6:34am UTC](https://discuss.elastic.co/t/index-name-doc-say-cannot-be-or-but-run-result/344864 "2023-10-12T06:34:05Z")

</div>

---

## [How to config (disable) the JVM DNS caching in logstash](https://discuss.elastic.co/t/how-to-config-disable-the-jvm-dns-caching-in-logstash/344868)

<div class="topic-metadata">

**Author:** [@picadar](https://discuss.elastic.co/u/picadar)\
**Replies:** 1\
**Last updated:** [October 12, 2023, 5:47am UTC](https://discuss.elastic.co/t/how-to-config-disable-the-jvm-dns-caching-in-logstash/344868 "2023-10-12T05:47:35Z")

</div>

Hello everyone！ As title, how to config the JVM DNS caching in logstash？ I have already tried to config it from the environment variable LS\_JAVA\_OPTS, and set the value to -Dnetworkaddress.cache.ttl=N, but there is no …

---

## [Nginx 502 bad gateway, and kibana restarting](https://discuss.elastic.co/t/nginx-502-bad-gateway-and-kibana-restarting/344858)

<div class="topic-metadata">

**Author:** [@Mohammad\_Ramadan\_Abd](https://discuss.elastic.co/u/Mohammad_Ramadan_Abd)\
**Replies:** 1\
**Last updated:** [October 12, 2023, 2:45am UTC](https://discuss.elastic.co/t/nginx-502-bad-gateway-and-kibana-restarting/344858 "2023-10-12T02:45:27Z")

</div>

My stack is not working and when I login I receive this message nginx "502 Bad gateway". I have checked the kibana service and I found it continously restarting. tailing logs for kibana I found " di@dar-elk-7:~$ tail …

---

## [Nginx "502 Bad gateway"](https://discuss.elastic.co/t/nginx-502-bad-gateway/344855)

<div class="topic-metadata">

**Author:** [@Mohammad\_Ramadan\_Abd](https://discuss.elastic.co/u/Mohammad_Ramadan_Abd)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 2:04am UTC](https://discuss.elastic.co/t/nginx-502-bad-gateway/344855 "2023-10-12T02:04:01Z")

</div>

My stack is not working and when I login I receive this message nginx "502 Bad gateway". I have checked the kibana service and I found it continously restarting. tailing logs for kibana I found " di@dar-elk-7:~$ tail …

---

## [Error in Pipeline used within Cisco Umbrella Integration](https://discuss.elastic.co/t/error-in-pipeline-used-within-cisco-umbrella-integration/344853)

<div class="topic-metadata">

**Author:** [@digital-thought](https://discuss.elastic.co/u/digital-thought)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 1:03am UTC](https://discuss.elastic.co/t/error-in-pipeline-used-within-cisco-umbrella-integration/344853 "2023-10-12T01:03:37Z")

</div>

I have found an issue with the Cisco Umbrella integration. I observed that all the events being processed into ELK had a timestamp of when the document was ingested into ELK and not the time/date of the event from Umbre…

---

## [Using AWS Secrets Manager for Credentials](https://discuss.elastic.co/t/using-aws-secrets-manager-for-credentials/344852)

<div class="topic-metadata">

**Author:** [@digital-thought](https://discuss.elastic.co/u/digital-thought)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 12:42am UTC](https://discuss.elastic.co/t/using-aws-secrets-manager-for-credentials/344852 "2023-10-12T00:42:34Z")

</div>

We have setup a cluster within AWS (self-managed). We have Kibana within the same environment and have the metric/filebeats installed on all nodes to monitor the cluster. Within the various YAML files for Kibana, Metri…

---

## [ELK Elasticsearch - bind\_dn - secure\_bind\_password: LDAP - Kibana anldapuser:password not working](https://discuss.elastic.co/t/elk-elasticsearch-bind-dn-secure-bind-password-ldap-kibana-anldapuser-password-not-working/344850)

<div class="topic-metadata">

**Author:** [@ska](https://discuss.elastic.co/u/ska)\
**Replies:** 0\
**Last updated:** [October 11, 2023, 10:25pm UTC](https://discuss.elastic.co/t/elk-elasticsearch-bind-dn-secure-bind-password-ldap-kibana-anldapuser-password-not-working/344850 "2023-10-11T22:25:06Z")

</div>

ELK version: 7.17.10 Deployed elasticsearch and Kibana in K8s cluster. Both ES and Kibana are up. Charts ---------- NAME NAMESPACE REVISION UPDATED STATUS CHART …

---

## [Unable to install 'eland\[pytorch\]' on Windows](https://discuss.elastic.co/t/unable-to-install-eland-pytorch-on-windows/343315)

<div class="topic-metadata">

**Author:** [@xynobob](https://discuss.elastic.co/u/xynobob)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 7:09pm UTC](https://discuss.elastic.co/t/unable-to-install-eland-pytorch-on-windows/343315 "2023-10-11T19:09:31Z")

</div>

I would like to import custom ML models to Elasticsearch, thus am using Eland to do it. However, to import custom ML models, I am to use eland\_import\_hub\_model command which requires me to install pytorch using python -m…

---

## [Logstash daylight saving time issue](https://discuss.elastic.co/t/logstash-daylight-saving-time-issue/344846)

<div class="topic-metadata">

**Author:** [@fosuna](https://discuss.elastic.co/u/fosuna)\
**Replies:** 0\
**Last updated:** [October 11, 2023, 7:07pm UTC](https://discuss.elastic.co/t/logstash-daylight-saving-time-issue/344846 "2023-10-11T19:07:41Z")

</div>

So I'm having the exact same issue @Mahdi\_Davoodi was having here: Logstash date timezone but with the America/Mexico\_City timezone since Mexico stopped observing daylight saving time. Same behavior, the tzdata is the l…

---

## [Update to stopwords not reflected in Tag Cloud](https://discuss.elastic.co/t/update-to-stopwords-not-reflected-in-tag-cloud/343353)

<div class="topic-metadata">

**Author:** [@ADarkDividedGem](https://discuss.elastic.co/u/ADarkDividedGem)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 6:22pm UTC](https://discuss.elastic.co/t/update-to-stopwords-not-reflected-in-tag-cloud/343353 "2023-10-11T18:22:43Z")

</div>

My index uses a stop words file as part of its analyzer: "analysis": { "filter": { "stopwords\_filter": { "ignore\_case": "true", "type": "stop", "stopwords\_path": "en\_complete.txt" } }, "analyzer": { "c…

---

## [How can I get the document meta data after saving a document in elasticsearch?](https://discuss.elastic.co/t/how-can-i-get-the-document-meta-data-after-saving-a-document-in-elasticsearch/344668)

<div class="topic-metadata">

**Author:** [@Mertozturkk](https://discuss.elastic.co/u/Mertozturkk)\
**Replies:** 5\
**Last updated:** [October 11, 2023, 6:09pm UTC](https://discuss.elastic.co/t/how-can-i-get-the-document-meta-data-after-saving-a-document-in-elasticsearch/344668 "2023-10-11T18:09:34Z")

</div>

I am saving documents to an index in Elasticsearch using the bulk API in a Python project. However, what I need is how can I return the created id of the document after this process? success, failed = bulk(client, actio…

---

## [Optimal major and minor page faults](https://discuss.elastic.co/t/optimal-major-and-minor-page-faults/344838)

<div class="topic-metadata">

**Author:** [@xrkr](https://discuss.elastic.co/u/xrkr)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 6:00pm UTC](https://discuss.elastic.co/t/optimal-major-and-minor-page-faults/344838 "2023-10-11T18:00:52Z")

</div>

Hello All, I have a 12 node cluster with 64GB RAM and 31GB heap memory. Often late i am having issues with Elasticsearch performance, i happen to observe that there are major and minor page faults as below. ps -ef | g…

---

## [Vertical Scroll bar not visible in Kibana](https://discuss.elastic.co/t/vertical-scroll-bar-not-visible-in-kibana/343792)

<div class="topic-metadata">

**Author:** [@Kibana\_User](https://discuss.elastic.co/u/Kibana_User)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 6:00pm UTC](https://discuss.elastic.co/t/vertical-scroll-bar-not-visible-in-kibana/343792 "2023-10-11T18:00:39Z")

</div>

I am using a 7.15.1 version and I am not seeing the page vertical scroll bar in kibana. Can some one help on this.

---

## [Error on fleet-server install](https://discuss.elastic.co/t/error-on-fleet-server-install/344346)

<div class="topic-metadata">

**Author:** [@gustavoluza](https://discuss.elastic.co/u/gustavoluza)\
**Replies:** 13\
**Last updated:** [October 11, 2023, 5:54pm UTC](https://discuss.elastic.co/t/error-on-fleet-server-install/344346 "2023-10-11T17:54:34Z")

</div>

hi there, I'm trying to install fleet-server on a VM with CentOS 7. In this same VM I already have elasticsearch (8.9.0), logstash and kibana (version 8.6.1) installed. To install I am using the commands below (advanc…

---

## [Connection pooling using Python Client 8.10](https://discuss.elastic.co/t/connection-pooling-using-python-client-8-10/344763)

<div class="topic-metadata">

**Author:** [@hs121](https://discuss.elastic.co/u/hs121)\
**Replies:** 2\
**Last updated:** [October 11, 2023, 5:52pm UTC](https://discuss.elastic.co/t/connection-pooling-using-python-client-8-10/344763 "2023-10-11T17:52:09Z")

</div>

Hi all, I am trying to understand the correct way of doing "Connection Pooling" using Python Client 8.10 API. In the old 7.x docs, I found a little bit of information around this but that doesn't seem to exist in 8.x (…

---

## [Kibana giving application not found error](https://discuss.elastic.co/t/kibana-giving-application-not-found-error/344805)

<div class="topic-metadata">

**Author:** [@swapnilsadkar](https://discuss.elastic.co/u/swapnilsadkar)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 5:34pm UTC](https://discuss.elastic.co/t/kibana-giving-application-not-found-error/344805 "2023-10-11T17:34:03Z")

</div>

Hi Team, Kibana shows all log counts but when we click dataset DNS or any other tab it shows application not found and No application was found this URL error. Could you please help me to resolve this error? Thanks

[Previous page](https://discuss.elastic.co/c/elastic-stack/81.md?page=399)

[Next page](https://discuss.elastic.co/c/elastic-stack/81.md?page=401)
