# Elastic Stack

**URL:** https://discuss.elastic.co/c/elastic-stack/81.md?page=437

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 438

---

## [Deleting Specific Fields From an Indexe](https://discuss.elastic.co/t/deleting-specific-fields-from-an-indexe/341430)

<div class="topic-metadata">

**Author:** [@Mohsin\_Ashraf](https://discuss.elastic.co/u/Mohsin_Ashraf)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 4:15pm UTC](https://discuss.elastic.co/t/deleting-specific-fields-from-an-indexe/341430 "2023-08-30T16:15:46Z")

</div>

Hi, is there any way to delete specific fields from and index pattern?

---

## [How can I present two different factors in the same row?](https://discuss.elastic.co/t/how-can-i-present-two-different-factors-in-the-same-row/340419)

<div class="topic-metadata">

**Author:** [@IANIAN](https://discuss.elastic.co/u/IANIAN)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 4:05pm UTC](https://discuss.elastic.co/t/how-can-i-present-two-different-factors-in-the-same-row/340419 "2023-08-30T16:05:13Z")

</div>

Hi. I'm trying to visualize the data below. What do I do if I want to plot two different factors in the same column on each graph?

---

## [Elastic Not loading data](https://discuss.elastic.co/t/elastic-not-loading-data/341993)

<div class="topic-metadata">

**Author:** [@Sachin\_Sharma](https://discuss.elastic.co/u/Sachin_Sharma)\
**Replies:** 3\
**Last updated:** [August 30, 2023, 3:59pm UTC](https://discuss.elastic.co/t/elastic-not-loading-data/341993 "2023-08-30T15:59:42Z")

</div>

Hi, We are using BulkProcessor in java to insert records into Elastic Server. We have ExecutorService that creates 12 threads and also 12 connection pools in db. Each thread sends multiple requests to one BulkProcessor …

---

## [Help! Logstash send to Elasticsearch use XML file or JSON file](https://discuss.elastic.co/t/help-logstash-send-to-elasticsearch-use-xml-file-or-json-file/341841)

<div class="topic-metadata">

**Author:** [@hoaduy994](https://discuss.elastic.co/u/hoaduy994)\
**Replies:** 8\
**Last updated:** [August 30, 2023, 12:49pm UTC](https://discuss.elastic.co/t/help-logstash-send-to-elasticsearch-use-xml-file-or-json-file/341841 "2023-08-30T12:49:13Z")

</div>

hi everyone, can someone help me with this example? I have an XML file, I originally wanted to change it to JSON and use logstash to send it to elasticsearch, many times it didn't work so I decided to keep the XML and us…

---

## [Increase the size of kibana space select box](https://discuss.elastic.co/t/increase-the-size-of-kibana-space-select-box/340294)

<div class="topic-metadata">

**Author:** [@Bhrugu\_Sharma](https://discuss.elastic.co/u/Bhrugu_Sharma)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 3:46pm UTC](https://discuss.elastic.co/t/increase-the-size-of-kibana-space-select-box/340294 "2023-08-30T15:46:07Z")

</div>

So inside a space when you click on space icon to go to a different space ,a small box appears where you select the space so is there some way to increase the size of this box, i have attached the screenshot for the same…

---

## [API to get all dashboards in Kibana 8.9.0](https://discuss.elastic.co/t/api-to-get-all-dashboards-in-kibana-8-9-0/341567)

<div class="topic-metadata">

**Author:** [@Daemon1](https://discuss.elastic.co/u/Daemon1)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 3:33pm UTC](https://discuss.elastic.co/t/api-to-get-all-dashboards-in-kibana-8-9-0/341567 "2023-08-30T15:33:46Z")

</div>

To check the dashboard availability before creating new dashboard, I was using below api. but this API is deprecated in kibana 7.15. \[KibanaHost\]/s/$SPACE\_ID/api/saved\_objects/\_find?fields=id&type=dashboard Could you …

---

## [ELSER - use the model outside of a pipeline](https://discuss.elastic.co/t/elser-use-the-model-outside-of-a-pipeline/341912)

<div class="topic-metadata">

**Author:** [@paulmaker](https://discuss.elastic.co/u/paulmaker)\
**Replies:** 3\
**Last updated:** [August 30, 2023, 2:31pm UTC](https://discuss.elastic.co/t/elser-use-the-model-outside-of-a-pipeline/341912 "2023-08-30T14:31:54Z")

</div>

Hi all, We are exploring the new ELSER features and how we integrate this into our application. We have a two stage ingestion approach that adds the text during the second phase. Therefore, using an ingestion pipeline i…

---

## [Kibana - Not showing any data on Discover](https://discuss.elastic.co/t/kibana-not-showing-any-data-on-discover/341603)

<div class="topic-metadata">

**Author:** [@Kvoyce2023](https://discuss.elastic.co/u/Kvoyce2023)\
**Replies:** 8\
**Last updated:** [August 30, 2023, 1:45pm UTC](https://discuss.elastic.co/t/kibana-not-showing-any-data-on-discover/341603 "2023-08-30T13:45:41Z")

</div>

Kibana / logstash are running and Elastic search nodes are accessible from Kibana server. But when I check on Discover, there is nothing to view other than "Add integrations" as shown below. Below is what we got in t…

---

## [Elasticsearch search query with filter terms having more than 11 field names not returning proper result for 12th fieldname](https://discuss.elastic.co/t/elasticsearch-search-query-with-filter-terms-having-more-than-11-field-names-not-returning-proper-result-for-12th-fieldname/341828)

<div class="topic-metadata">

**Author:** [@ramanm](https://discuss.elastic.co/u/ramanm)\
**Replies:** 5\
**Last updated:** [August 30, 2023, 12:20pm UTC](https://discuss.elastic.co/t/elasticsearch-search-query-with-filter-terms-having-more-than-11-field-names-not-returning-proper-result-for-12th-fieldname/341828 "2023-08-30T12:20:12Z")

</div>

Elasticsearch search query with filter terms having more than 11 field names not returning proper result for 12th fieldname { "size":0, "aggs":{ "filtered\_data":{ "filter…

---

## [Watcher configuration to auto resolve the pagerduty alerts if service is back online](https://discuss.elastic.co/t/watcher-configuration-to-auto-resolve-the-pagerduty-alerts-if-service-is-back-online/341943)

<div class="topic-metadata">

**Author:** [@SowmiyaRS](https://discuss.elastic.co/u/SowmiyaRS)\
**Replies:** 2\
**Last updated:** [August 30, 2023, 11:53am UTC](https://discuss.elastic.co/t/watcher-configuration-to-auto-resolve-the-pagerduty-alerts-if-service-is-back-online/341943 "2023-08-30T11:53:00Z")

</div>

I have configured watcher to trigger alerts in pagerduty. If a service comes back online automatically,I would expect the pagerduty to resolve the alert. Can someone help me how we can achieve that

---

## [Large events don't reach elasticsearch](https://discuss.elastic.co/t/large-events-dont-reach-elasticsearch/341878)

<div class="topic-metadata">

**Author:** [@elade89](https://discuss.elastic.co/u/elade89)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 10:26am UTC](https://discuss.elastic.co/t/large-events-dont-reach-elasticsearch/341878 "2023-08-30T10:26:24Z")

</div>

Hello, We're using Filebeat -\> Kafka -\> Logstash -\> Elasticsearch (Kibana). for error messages we use multiline grouping from Filebeat - which obviously creates large events (around 50 lines, ~5000 characters). I can …

---

## [High Memory usage after migrating from Transport Client to Rest Client](https://discuss.elastic.co/t/high-memory-usage-after-migrating-from-transport-client-to-rest-client/341963)

<div class="topic-metadata">

**Author:** [@emmning](https://discuss.elastic.co/u/emmning)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 9:31am UTC](https://discuss.elastic.co/t/high-memory-usage-after-migrating-from-transport-client-to-rest-client/341963 "2023-08-30T09:31:09Z")

</div>

Hello, After migrating from Transport Client to Rest Client we discoverd some nodes in the Elasticsearch cluster had high memory usage and these nodes was not responding to cat/nodes request. I'm running Eclipse memory…

---

## [Elastic Stack Commercial License variants](https://discuss.elastic.co/t/elastic-stack-commercial-license-variants/340523)

<div class="topic-metadata">

**Author:** [@Mikele](https://discuss.elastic.co/u/Mikele)\
**Replies:** 4\
**Last updated:** [August 30, 2023, 10:23am UTC](https://discuss.elastic.co/t/elastic-stack-commercial-license-variants/340523 "2023-08-30T10:23:50Z")

</div>

Hi. I would like to receive information about the use of Elasticsearch, Kibana, Filebeat and APM (in versions above 8) for commercial purposes. In which version of the license it is possible to provide customers with a…

---

## [Annotations not applied at pod level on logstash](https://discuss.elastic.co/t/annotations-not-applied-at-pod-level-on-logstash/341971)

<div class="topic-metadata">

**Author:** [@cdino](https://discuss.elastic.co/u/cdino)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 10:18am UTC](https://discuss.elastic.co/t/annotations-not-applied-at-pod-level-on-logstash/341971 "2023-08-30T10:18:04Z")

</div>

I added some annotations as PodTemplate but those are not applied at pod level: --- apiVersion: logstash.k8s.elastic.co/v1alpha1 kind: Logstash metadata: name: eck-logstash-beat spec: count: 3 version: 8.9.1 \[..…

---

## [Change output for agent policies disabled in](https://discuss.elastic.co/t/change-output-for-agent-policies-disabled-in/341958)

<div class="topic-metadata">

**Author:** [@Atul\_Chadha](https://discuss.elastic.co/u/Atul_Chadha)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 10:13am UTC](https://discuss.elastic.co/t/change-output-for-agent-policies-disabled-in/341958 "2023-08-30T10:13:06Z")

</div>

We are running 8.x fleet server and i am trying to change my output for agents based on different agent policies ( They correlate to different Data Centers ) The output does not allow me to change anything but default, …

---

## [Kibana dashboard in zabbix](https://discuss.elastic.co/t/kibana-dashboard-in-zabbix/341220)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 3\
**Last updated:** [August 30, 2023, 10:10am UTC](https://discuss.elastic.co/t/kibana-dashboard-in-zabbix/341220 "2023-08-30T10:10:04Z")

</div>

I am trying to view the kibana dashboard in zabbix using the url widget type , when i give url of kibana in this format http://username:password@kibanaDashboardUrl it returns a blank page. all other url works fine. What…

---

## [Missing some fields in some document](https://discuss.elastic.co/t/missing-some-fields-in-some-document/341066)

<div class="topic-metadata">

**Author:** [@thutrang](https://discuss.elastic.co/u/thutrang)\
**Replies:** 2\
**Last updated:** [August 30, 2023, 10:06am UTC](https://discuss.elastic.co/t/missing-some-fields-in-some-document/341066 "2023-08-30T10:06:53Z")

</div>

I am using Packetbeat version 7.12.1 to collect DNS data from network flows, then sending it to Logstash, and finally forwarding it to Elasticsearch. I am encountering an issue where certain documents in Elasticsearch ar…

---

## [While downloading reports across pinned filters reports are not filtered](https://discuss.elastic.co/t/while-downloading-reports-across-pinned-filters-reports-are-not-filtered/341968)

<div class="topic-metadata">

**Author:** [@rajatbhardwaj1393](https://discuss.elastic.co/u/rajatbhardwaj1393)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 10:06am UTC](https://discuss.elastic.co/t/while-downloading-reports-across-pinned-filters-reports-are-not-filtered/341968 "2023-08-30T10:06:47Z")

</div>

Steps to replicate: Pin filters across the apps try downloading report for the app(dashboard) you moved into with pinned filter.

---

## [Two words to act as one string in search](https://discuss.elastic.co/t/two-words-to-act-as-one-string-in-search/341954)

<div class="topic-metadata">

**Author:** [@vlovkis](https://discuss.elastic.co/u/vlovkis)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 8:31am UTC](https://discuss.elastic.co/t/two-words-to-act-as-one-string-in-search/341954 "2023-08-30T08:31:08Z")

</div>

Hello dear Elastic fellas, I'm new to Elasticsearch and already have some questions to which I don't know the answers fully. So question is what setting or filter I could use in order to make my search query act as one s…

---

## [Help me !,about filebeat processors config](https://discuss.elastic.co/t/help-me-about-filebeat-processors-config/341956)

<div class="topic-metadata">

**Author:** [@iamlizekun](https://discuss.elastic.co/u/iamlizekun)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 8:09am UTC](https://discuss.elastic.co/t/help-me-about-filebeat-processors-config/341956 "2023-08-30T08:09:20Z")

</div>

I have a requirement to limit different log push rates for different docker containers, and I found processors.rate\_ The limit parameter successfully limits the logs of all containers, but I want to use processors.fields…

---

## [Field with type date when added in table visualization in kibana gets stuck](https://discuss.elastic.co/t/field-with-type-date-when-added-in-table-visualization-in-kibana-gets-stuck/341940)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 2\
**Last updated:** [August 30, 2023, 7:29am UTC](https://discuss.elastic.co/t/field-with-type-date-when-added-in-table-visualization-in-kibana-gets-stuck/341940 "2023-08-30T07:29:01Z")

</div>

Hi, I have a field short\_date which is of type date. I want to display details with respect to tiime in the table. But every single time i add the short date row in the table kibana gets stuck up. the entire VM hangs for…

---

## [Watcher Alert based on Status down for tomcat and not trigger based on time interval](https://discuss.elastic.co/t/watcher-alert-based-on-status-down-for-tomcat-and-not-trigger-based-on-time-interval/341944)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 7:16am UTC](https://discuss.elastic.co/t/watcher-alert-based-on-status-down-for-tomcat-and-not-trigger-based-on-time-interval/341944 "2023-08-30T07:16:03Z")

</div>

Hello All, I have a requirement where in watcher should trigger on the basis of status down and not based on time interval settings. Below is my working watcher script that triggers every 15 min or 8hrs accordingly se…

---

## [Elasticsearch node down after run kibana in same host ubuntu](https://discuss.elastic.co/t/elasticsearch-node-down-after-run-kibana-in-same-host-ubuntu/341767)

<div class="topic-metadata">

**Author:** [@phu\_phat](https://discuss.elastic.co/u/phu_phat)\
**Replies:** 4\
**Last updated:** [August 30, 2023, 6:25am UTC](https://discuss.elastic.co/t/elasticsearch-node-down-after-run-kibana-in-same-host-ubuntu/341767 "2023-08-30T06:25:57Z")

</div>

After upgrade elasticsearch and kibana from 6.x to 8.9 when start kibana my elasticsearch node in that host down but if i change config kibana to not connect with elasticsearch cluster, elasticsearch can run normally \[…

---

## [Elasticsearch java API client trackTotalHits](https://discuss.elastic.co/t/elasticsearch-java-api-client-tracktotalhits/341935)

<div class="topic-metadata">

**Author:** [@hld942614](https://discuss.elastic.co/u/hld942614)\
**Replies:** 2\
**Last updated:** [August 30, 2023, 5:46am UTC](https://discuss.elastic.co/t/elasticsearch-java-api-client-tracktotalhits/341935 "2023-08-30T05:46:06Z")

</div>

I am trying to search my data and expect to get all data，but I can't get more than 10000 result，so I try to use trackTotalHits ，can someone tell me how to use it? try { ElasticsearchClient client = elasticsearchConfi…

---

## [Failed to start crawler: creating module reloader failed in filebeat](https://discuss.elastic.co/t/failed-to-start-crawler-creating-module-reloader-failed-in-filebeat/341922)

<div class="topic-metadata">

**Author:** [@SOMU\_REDDY](https://discuss.elastic.co/u/SOMU_REDDY)\
**Replies:** 1\
**Last updated:** [August 30, 2023, 4:23am UTC](https://discuss.elastic.co/t/failed-to-start-crawler-creating-module-reloader-failed-in-filebeat/341922 "2023-08-30T04:23:46Z")

</div>

getting this error while trying to send logs to Elasticsearch using this ./filebeat -c filebeat.yml -e getting this message":"Exiting: Failed to start crawler: creating module reloader failed: loading configs: 1 error: i…

---

## [Using ECK, Elastic search does not start up after enabling SAML](https://discuss.elastic.co/t/using-eck-elastic-search-does-not-start-up-after-enabling-saml/341864)

<div class="topic-metadata">

**Author:** [@johanw](https://discuss.elastic.co/u/johanw)\
**Replies:** 2\
**Last updated:** [August 30, 2023, 3:17am UTC](https://discuss.elastic.co/t/using-eck-elastic-search-does-not-start-up-after-enabling-saml/341864 "2023-08-30T03:17:03Z")

</div>

We are trying to enable SAML on our ELK stack on Kubernetes. We are using ECK and custom resource definitions to manage and run our Elastic cluster. Instructions followed: Set up SAML with Azure Active Directory | Elast…

---

## [Elastic-agent is triggering HTTP 413 (entity too large) errors](https://discuss.elastic.co/t/elastic-agent-is-triggering-http-413-entity-too-large-errors/341932)

<div class="topic-metadata">

**Author:** [@Craig\_Rodrigues](https://discuss.elastic.co/u/Craig_Rodrigues)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 12:42am UTC](https://discuss.elastic.co/t/elastic-agent-is-triggering-http-413-entity-too-large-errors/341932 "2023-08-30T00:42:49Z")

</div>

I have an elastic agent: elastic-agent version Binary: 8.9.0 (build: dc443bc2427920a26141b05f9c07a52191881af5 at 2023-07-19 20:55:16 +0000 UTC) Daemon: 8.9.0 (build: dc443bc2427920a26141b05f9c07a52191881af5 at 2023-07-…

---

## [Beats vs multiple outputs while transisting to a new elastic cluster](https://discuss.elastic.co/t/beats-vs-multiple-outputs-while-transisting-to-a-new-elastic-cluster/341799)

<div class="topic-metadata">

**Author:** [@stefws](https://discuss.elastic.co/u/stefws)\
**Replies:** 2\
**Last updated:** [August 29, 2023, 9:56pm UTC](https://discuss.elastic.co/t/beats-vs-multiple-outputs-while-transisting-to-a-new-elastic-cluster/341799 "2023-08-29T21:56:42Z")

</div>

Running a PoC with filebeat + metricbeat agents on a number of endpoints sending data through ingest nodes running various pipelines on the filebeat events. While preparing move to a new elastic cluster, we would like t…

---

## [Logstash Output to Kibana with SSL?](https://discuss.elastic.co/t/logstash-output-to-kibana-with-ssl/341905)

<div class="topic-metadata">

**Author:** [@paolovalladolid](https://discuss.elastic.co/u/paolovalladolid)\
**Replies:** 12\
**Last updated:** [August 29, 2023, 9:45pm UTC](https://discuss.elastic.co/t/logstash-output-to-kibana-with-ssl/341905 "2023-08-29T21:45:43Z")

</div>

I am new to Logstash, having previous experience with Filebeat and Winlogbeat. In the Filebeat/Winlogbeat configuration we have separate output sections for Elasticsearch and Kibana. We configure the Kibana output sect…

---

## [Deploy python connector with docker ca\_cert parameter is not a path (run locally)](https://discuss.elastic.co/t/deploy-python-connector-with-docker-ca-cert-parameter-is-not-a-path-run-locally/340642)

<div class="topic-metadata">

**Author:** [@sk30613](https://discuss.elastic.co/u/sk30613)\
**Replies:** 1\
**Last updated:** [August 29, 2023, 5:58pm UTC](https://discuss.elastic.co/t/deploy-python-connector-with-docker-ca-cert-parameter-is-not-a-path-run-locally/340642 "2023-08-29T17:58:45Z")

</div>

Hi, I have an error during the run of docker image (run connector service in docker). I have been following the instructions from https://github.com/elastic/connectors-python/blob/main/docs/DOCKER.md (steps: 1-5). Plea…

[Previous page](https://discuss.elastic.co/c/elastic-stack/81.md?page=436)

[Next page](https://discuss.elastic.co/c/elastic-stack/81.md?page=438)
