# Elastic Stack

**URL:** https://discuss.elastic.co/c/elastic-stack/81.md?page=473

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 474

---

## [About ElasticSearch Queries generated by SQL Workbench](https://discuss.elastic.co/t/about-elasticsearch-queries-generated-by-sql-workbench/339035)

<div class="topic-metadata">

**Author:** [@loco\_d.iwamoto](https://discuss.elastic.co/u/loco_d.iwamoto)\
**Replies:** 3\
**Last updated:** [July 24, 2023, 8:38am UTC](https://discuss.elastic.co/t/about-elasticsearch-queries-generated-by-sql-workbench/339035 "2023-07-24T08:38:33Z")

</div>

Thank you for your assistance. I would like to ask about the accuracy and speed of Elasticsearch Queries generated from QueryWorkBench. This is IndexMapping. "mappings": { "properties": { "a": { …

---

## [I wan't to use Candlestick plot to create the stock dashboard but i found there is not such plot in kibana so can you suggest anything in replacement of Candlestick or if it's possible to draw a Candlestick then how can i draw, please suggest](https://discuss.elastic.co/t/i-want-to-use-candlestick-plot-to-create-the-stock-dashboard-but-i-found-there-is-not-such-plot-in-kibana-so-can-you-suggest-anything-in-replacement-of-candlestick-or-if-its-possible-to-draw-a-candlestick-then-how-can-i-draw-please-suggest/339037)

<div class="topic-metadata">

**Author:** [@Aditya\_Patidar](https://discuss.elastic.co/u/Aditya_Patidar)\
**Replies:** 1\
**Last updated:** [July 24, 2023, 7:57am UTC](https://discuss.elastic.co/t/i-want-to-use-candlestick-plot-to-create-the-stock-dashboard-but-i-found-there-is-not-such-plot-in-kibana-so-can-you-suggest-anything-in-replacement-of-candlestick-or-if-its-possible-to-draw-a-candlestick-then-how-can-i-draw-please-suggest/339037 "2023-07-24T07:57:38Z")

</div>

i wan't to use Candlestick plot to create the stock dashboard but i found there is not such plot in kibana so can you suggest anything in replacement of Candlestick or if it's possible to draw a Candlestick then how can …

---

## [Pie Graph Visualization](https://discuss.elastic.co/t/pie-graph-visualization/338944)

<div class="topic-metadata">

**Author:** [@Surabhi\_Pol](https://discuss.elastic.co/u/Surabhi_Pol)\
**Replies:** 1\
**Last updated:** [July 24, 2023, 7:52am UTC](https://discuss.elastic.co/t/pie-graph-visualization/338944 "2023-07-24T07:52:23Z")

</div>

Dashboard Dear All, I want to create one pie graph visualization for second row visualizations as mentioned in the screenshot meanwhile want to add filters as required . These two different visualizations want to …

---

## [Snapshots (only backup before delete)?](https://discuss.elastic.co/t/snapshots-only-backup-before-delete/338809)

<div class="topic-metadata">

**Author:** [@datencio](https://discuss.elastic.co/u/datencio)\
**Replies:** 1\
**Last updated:** [July 24, 2023, 6:22am UTC](https://discuss.elastic.co/t/snapshots-only-backup-before-delete/338809 "2023-07-24T06:22:16Z")

</div>

We are wanting to use Elastic Search Snapshots, but we are trying to keep costs down. It appears from what I am reading that the Snapshot feature wants to backup all indices that match a pattern, however we are only want…

---

## [LDAP Integration not working as expected](https://discuss.elastic.co/t/ldap-integration-not-working-as-expected/338921)

<div class="topic-metadata">

**Author:** [@forabraham1](https://discuss.elastic.co/u/forabraham1)\
**Replies:** 3\
**Last updated:** [July 24, 2023, 4:53am UTC](https://discuss.elastic.co/t/ldap-integration-not-working-as-expected/338921 "2023-07-24T04:53:59Z")

</div>

We've integrated Elastisearch with LDAP, but it is not working as expected followed the same steps provided in the documentation. Could some one take a look and what is wrong in the config. Issue: Exception thrown sayi…

---

## [I have a cluster with 4 nodes , 2 master and 2 data nodes, currently only one master is responding, all the other nodes connect for 10 mins and shard allocation start, then again it becomes NA , not sure what is the issue?](https://discuss.elastic.co/t/i-have-a-cluster-with-4-nodes-2-master-and-2-data-nodes-currently-only-one-master-is-responding-all-the-other-nodes-connect-for-10-mins-and-shard-allocation-start-then-again-it-becomes-na-not-sure-what-is-the-issue/339012)

<div class="topic-metadata">

**Author:** [@vishnu\_ishpujani](https://discuss.elastic.co/u/vishnu_ishpujani)\
**Replies:** 10\
**Last updated:** [July 24, 2023, 4:43am UTC](https://discuss.elastic.co/t/i-have-a-cluster-with-4-nodes-2-master-and-2-data-nodes-currently-only-one-master-is-responding-all-the-other-nodes-connect-for-10-mins-and-shard-allocation-start-then-again-it-becomes-na-not-sure-what-is-the-issue/339012 "2023-07-24T04:43:55Z")

</div>

I have a cluster with 4 nodes , 2 master and 2 data nodes, currently only one master is responding, all the other nodes connect for 10 mins and shard allocation start, then again it becomes NA , not sure what is the issu…

---

## [Grok pattern for ubuntu apache web server access and error log](https://discuss.elastic.co/t/grok-pattern-for-ubuntu-apache-web-server-access-and-error-log/338790)

<div class="topic-metadata">

**Author:** [@sanjeev1895](https://discuss.elastic.co/u/sanjeev1895)\
**Replies:** 1\
**Last updated:** [July 24, 2023, 4:40am UTC](https://discuss.elastic.co/t/grok-pattern-for-ubuntu-apache-web-server-access-and-error-log/338790 "2023-07-24T04:40:52Z")

</div>

Hi Anyone can help me out to get the custom grok pattern for apache access and error log instead of using combined option. I mentioned my both log format.. Access Log: 181.56.83.87 + 22407 0 - - \[19/Jul/2023:12:24:11 …

---

## [Yet another "No Nodes Alive Exception" discussion](https://discuss.elastic.co/t/yet-another-no-nodes-alive-exception-discussion/339024)

<div class="topic-metadata">

**Author:** [@Ahriss](https://discuss.elastic.co/u/Ahriss)\
**Replies:** 2\
**Last updated:** [July 24, 2023, 2:53am UTC](https://discuss.elastic.co/t/yet-another-no-nodes-alive-exception-discussion/339024 "2023-07-24T02:53:49Z")

</div>

Hello there! I'm new here, and I've come here for help. As the name implies, I'm getting a "No nodes alive" error in a simple, single node elasticsearch php application. I have researched the issue for hours, it apparent…

---

## [Rally: How do the number of requests get calculated in a cluster?](https://discuss.elastic.co/t/rally-how-do-the-number-of-requests-get-calculated-in-a-cluster/338851)

<div class="topic-metadata">

**Author:** [@lquenti](https://discuss.elastic.co/u/lquenti)\
**Replies:** 2\
**Last updated:** [July 24, 2023, 12:30am UTC](https://discuss.elastic.co/t/rally-how-do-the-number-of-requests-get-calculated-in-a-cluster/338851 "2023-07-24T00:30:27Z")

</div>

Hi, we want to use clustered rally to do a really large scaling test (n=100 ES nodes, ? load distributors) for different corpora and FS settings. In order to accomplish that, I have a few questions regarding the actual…

---

## [Lucene vs Elastic Search Document Count difference and its impact on term aggregation buckets](https://discuss.elastic.co/t/lucene-vs-elastic-search-document-count-difference-and-its-impact-on-term-aggregation-buckets/338827)

<div class="topic-metadata">

**Author:** [@S\_Star](https://discuss.elastic.co/u/S_Star)\
**Replies:** 9\
**Last updated:** [July 23, 2023, 8:10pm UTC](https://discuss.elastic.co/t/lucene-vs-elastic-search-document-count-difference-and-its-impact-on-term-aggregation-buckets/338827 "2023-07-23T20:10:39Z")

</div>

We have an index with lot of auto generated data for load testing and we noticed that there is significant difference in Elasticsearch doc count (using the \_count API) vs /indices API e.g ES documents : ~80 million Luc…

---

## [Inability to sign in to Kibana Dashboard](https://discuss.elastic.co/t/inability-to-sign-in-to-kibana-dashboard/338884)

<div class="topic-metadata">

**Author:** [@mohzis](https://discuss.elastic.co/u/mohzis)\
**Replies:** 2\
**Last updated:** [July 23, 2023, 7:14pm UTC](https://discuss.elastic.co/t/inability-to-sign-in-to-kibana-dashboard/338884 "2023-07-23T19:14:38Z")

</div>

i deployed my elasticsearch, kibana and fleet using aks, but recently i started getting an error as pasted below. \[2023-07-19T16:33:48.709+00:00\]\[ERROR\]\[plugins.security.user-profile\] Failed to activate user profile: {"…

---

## [How to change background of a dashboard in kibana](https://discuss.elastic.co/t/how-to-change-background-of-a-dashboard-in-kibana/339001)

<div class="topic-metadata">

**Author:** [@Syed\_11](https://discuss.elastic.co/u/Syed_11)\
**Replies:** 1\
**Last updated:** [July 23, 2023, 1:14am UTC](https://discuss.elastic.co/t/how-to-change-background-of-a-dashboard-in-kibana/339001 "2023-07-23T01:14:20Z")

</div>

How to change background colour from white to any colour in kibana?

---

## [How to add multiple datasets in a single dashboard](https://discuss.elastic.co/t/how-to-add-multiple-datasets-in-a-single-dashboard/339006)

<div class="topic-metadata">

**Author:** [@Syed\_11](https://discuss.elastic.co/u/Syed_11)\
**Replies:** 1\
**Last updated:** [July 23, 2023, 1:13am UTC](https://discuss.elastic.co/t/how-to-add-multiple-datasets-in-a-single-dashboard/339006 "2023-07-23T01:13:01Z")

</div>

How to add multiple datasets in a single dashboard ???

---

## [Elasticsearch Docker container cannot Snapshot to Google Cloud Storage (GCS)](https://discuss.elastic.co/t/elasticsearch-docker-container-cannot-snapshot-to-google-cloud-storage-gcs/338994)

<div class="topic-metadata">

**Author:** [@davidbernat](https://discuss.elastic.co/u/davidbernat)\
**Replies:** 1\
**Last updated:** [July 23, 2023, 12:54am UTC](https://discuss.elastic.co/t/elasticsearch-docker-container-cannot-snapshot-to-google-cloud-storage-gcs/338994 "2023-07-23T00:54:30Z")

</div>

Editors Note: this post is cross-posted on StackOverflow. Please respond in whichever forum the Elasticsearch community finds most appropriate for debugging user issues. Please note that the Elastic Co forum does not all…

---

## [How to download demo dashboards?](https://discuss.elastic.co/t/how-to-download-demo-dashboards/339000)

<div class="topic-metadata">

**Author:** [@Aamir1](https://discuss.elastic.co/u/Aamir1)\
**Replies:** 1\
**Last updated:** [July 22, 2023, 10:41pm UTC](https://discuss.elastic.co/t/how-to-download-demo-dashboards/339000 "2023-07-22T22:41:15Z")

</div>

Hello Everyone, I found this dashboard at 'demo.elastic.co' and I really impressed with this dashboard. Anyone can please tell me that where I can download its json object so I can test this with my data?

---

## [Filebeat dont share data with Kibana](https://discuss.elastic.co/t/filebeat-dont-share-data-with-kibana/337992)

<div class="topic-metadata">

**Author:** [@enp2s6](https://discuss.elastic.co/u/enp2s6)\
**Replies:** 12\
**Last updated:** [July 22, 2023, 5:14pm UTC](https://discuss.elastic.co/t/filebeat-dont-share-data-with-kibana/337992 "2023-07-22T17:14:44Z")

</div>

Hi, I am trying to enable the Kibana Logs integration. I have gone through the tutorial without errors and there are no error messages in the respective logs. However, in the last item "Module Status" I get the messag…

---

## [Kibana logs on Windows](https://discuss.elastic.co/t/kibana-logs-on-windows/338974)

<div class="topic-metadata">

**Author:** [@Kvoyce2023](https://discuss.elastic.co/u/Kvoyce2023)\
**Replies:** 3\
**Last updated:** [July 22, 2023, 1:51pm UTC](https://discuss.elastic.co/t/kibana-logs-on-windows/338974 "2023-07-22T13:51:56Z")

</div>

This is on Windows. Kibana works and I am able to visualize the data. What I am trying to achieve is to view the Kibana logs on the location which I have provided. Below is what I got on my kibana.yml but nothing gets c…

---

## [TypeError: Class extends value undefined is not a constructor or null with Elastic Search Library with TypeScript](https://discuss.elastic.co/t/typeerror-class-extends-value-undefined-is-not-a-constructor-or-null-with-elastic-search-library-with-typescript/338984)

<div class="topic-metadata">

**Author:** [@Tanmay\_Sharma](https://discuss.elastic.co/u/Tanmay_Sharma)\
**Replies:** 0\
**Last updated:** [July 22, 2023, 9:28am UTC](https://discuss.elastic.co/t/typeerror-class-extends-value-undefined-is-not-a-constructor-or-null-with-elastic-search-library-with-typescript/338984 "2023-07-22T09:28:31Z")

</div>

Hello Everyone, While using the Elastic Search Library with TypeScript in Svelte giving unknown TypeError: import { Client } from "@elastic/elasticsearch"; import \* as fs from "fs"; const client = new Client({…

---

## [Pipeline Worker Loop Initialization Error](https://discuss.elastic.co/t/pipeline-worker-loop-initialization-error/338972)

<div class="topic-metadata">

**Author:** [@dro](https://discuss.elastic.co/u/dro)\
**Replies:** 2\
**Last updated:** [July 22, 2023, 5:15am UTC](https://discuss.elastic.co/t/pipeline-worker-loop-initialization-error/338972 "2023-07-22T05:15:29Z")

</div>

Been running into an issue with Logstash failing to initialize due to pipeline worker error. Containerized version being used: Logstash 8.8.2 Error: Using bundled JDK: /usr/share/logstash/jdk Sending Logstash logs to …

---

## [Store Text Content of PDF in elastic search](https://discuss.elastic.co/t/store-text-content-of-pdf-in-elastic-search/338924)

<div class="topic-metadata">

**Author:** [@a.nguyentuan](https://discuss.elastic.co/u/a.nguyentuan)\
**Replies:** 1\
**Last updated:** [July 22, 2023, 12:34am UTC](https://discuss.elastic.co/t/store-text-content-of-pdf-in-elastic-search/338924 "2023-07-22T00:34:30Z")

</div>

I had a database which contain millions of document text content records. I would like to sync those text into Elasticsearch index for document content searching purpose. Could you please suggest what is the best way to …

---

## [Delete By Query Not Working](https://discuss.elastic.co/t/delete-by-query-not-working/338971)

<div class="topic-metadata">

**Author:** [@wwalker](https://discuss.elastic.co/u/wwalker)\
**Replies:** 1\
**Last updated:** [July 21, 2023, 11:43pm UTC](https://discuss.elastic.co/t/delete-by-query-not-working/338971 "2023-07-21T23:43:54Z")

</div>

I have a field that frequently has the value of :. I'm trying to delete all of these entries using the below. POST /index/\_delete\_by\_query { "query": { "match": { "log.message": ":" } } } Using dev…

---

## [Convert message into eps data and create a visualization](https://discuss.elastic.co/t/convert-message-into-eps-data-and-create-a-visualization/338903)

<div class="topic-metadata">

**Author:** [@Ryan\_Downey](https://discuss.elastic.co/u/Ryan_Downey)\
**Replies:** 5\
**Last updated:** [July 21, 2023, 6:22pm UTC](https://discuss.elastic.co/t/convert-message-into-eps-data-and-create-a-visualization/338903 "2023-07-21T18:22:45Z")

</div>

Note - I do have a ticket in with support but I felt that maybe this would be useful to the community as well so I will update things as we move along. What were doing: Shipping from 9 DLC's running in Openshift with F…

---

## [Retrieve Kibana Query Time Statistics](https://discuss.elastic.co/t/retrieve-kibana-query-time-statistics/338559)

<div class="topic-metadata">

**Author:** [@lchan](https://discuss.elastic.co/u/lchan)\
**Replies:** 2\
**Last updated:** [July 21, 2023, 2:06pm UTC](https://discuss.elastic.co/t/retrieve-kibana-query-time-statistics/338559 "2023-07-21T14:06:04Z")

</div>

Hello, Does anyone know if there is way to access Query time under Statistics in Kibana? We want to monitor these statistics so we can better understanding the following: Long running query on user behavior (Query tim…

---

## [I tried to use elastic search from docker (version 8.7.1)](https://discuss.elastic.co/t/i-tried-to-use-elastic-search-from-docker-version-8-7-1/338950)

<div class="topic-metadata">

**Author:** [@VarshaaSenthilkuar](https://discuss.elastic.co/u/VarshaaSenthilkuar)\
**Replies:** 0\
**Last updated:** [July 21, 2023, 1:21pm UTC](https://discuss.elastic.co/t/i-tried-to-use-elastic-search-from-docker-version-8-7-1/338950 "2023-07-21T13:21:04Z")

</div>

docker cp es01:/usr/share/elasticsearch/config/certs/http\_ca.crt . used a cmd to generate certificate and stored that in a seperate file in my local system. Later used this cmd (mentioned in documentation)curl --cacert …

---

## [Logstash container crashing on AWS Fargate](https://discuss.elastic.co/t/logstash-container-crashing-on-aws-fargate/338940)

<div class="topic-metadata">

**Author:** [@Amine1979](https://discuss.elastic.co/u/Amine1979)\
**Replies:** 0\
**Last updated:** [July 21, 2023, 10:27am UTC](https://discuss.elastic.co/t/logstash-container-crashing-on-aws-fargate/338940 "2023-07-21T10:27:30Z")

</div>

Hello, Im using Below DockerFile and taskdefinition to deploy Logstash container on AWS Fargate. Issue : Locally it works fine, logstash server start listening on 5044 On Fargate, container crashs with this message / …

---

## [Badly formatted index, after interpolation still contains placeholder: \[%{\[@metadat a\]\[target\_index\]}\]](https://discuss.elastic.co/t/badly-formatted-index-after-interpolation-still-contains-placeholder-metadat-a-target-index/338905)

<div class="topic-metadata">

**Author:** [@dsv](https://discuss.elastic.co/u/dsv)\
**Replies:** 2\
**Last updated:** [July 21, 2023, 11:00am UTC](https://discuss.elastic.co/t/badly-formatted-index-after-interpolation-still-contains-placeholder-metadat-a-target-index/338905 "2023-07-21T11:00:59Z")

</div>

Hey guys, trying to aggregate audit events from a linux with logstash-8.8.1-1.x86\_64 and got the error: Badly formatted index, after interpolation still contains placeholder: \[%{\[@metadat a\]\[target\_index\]}\] The stdo…

---

## [How To optimize Elastic Search Query and mapping to fetch the result quickly](https://discuss.elastic.co/t/how-to-optimize-elastic-search-query-and-mapping-to-fetch-the-result-quickly/338942)

<div class="topic-metadata">

**Author:** [@deepak\_prem](https://discuss.elastic.co/u/deepak_prem)\
**Replies:** 0\
**Last updated:** [July 21, 2023, 10:56am UTC](https://discuss.elastic.co/t/how-to-optimize-elastic-search-query-and-mapping-to-fetch-the-result-quickly/338942 "2023-07-21T10:56:00Z")

</div>

I have the following index mapping and Elastic search query, Sample Index Mapping:- { "college\_metric": { "mappings": { "properties": { "Batch\_\_kt": { "type": "nested", "include\_…

---

## [Problem of elastic-agent install on windows 10 VM](https://discuss.elastic.co/t/problem-of-elastic-agent-install-on-windows-10-vm/338775)

<div class="topic-metadata">

**Author:** [@jean10](https://discuss.elastic.co/u/jean10)\
**Replies:** 1\
**Last updated:** [July 21, 2023, 10:18am UTC](https://discuss.elastic.co/t/problem-of-elastic-agent-install-on-windows-10-vm/338775 "2023-07-21T10:18:39Z")

</div>

Hello everyone, I would install elastic agent on windows 10 computer test. I use command recommanded by agent of installation but the installation not working and i haven't output for checking status...... For obtain …

---

## [Elastic search data nodes kept crashing continuously](https://discuss.elastic.co/t/elastic-search-data-nodes-kept-crashing-continuously/337993)

<div class="topic-metadata">

**Author:** [@pratiksha](https://discuss.elastic.co/u/pratiksha)\
**Replies:** 7\
**Last updated:** [July 21, 2023, 8:43am UTC](https://discuss.elastic.co/t/elastic-search-data-nodes-kept-crashing-continuously/337993 "2023-07-21T08:43:54Z")

</div>

We are using Elasticsearch v7.10.2 deployed in kubernetes environment. Elasticsearch cluster was running fine earlier. As part of kubernetes cluster we updated a certificate in our k8s cluster which has not impacted ela…

---

## [Ngrams or dense vectors for similarity between arrays?](https://discuss.elastic.co/t/ngrams-or-dense-vectors-for-similarity-between-arrays/338929)

<div class="topic-metadata">

**Author:** [@kgeographer](https://discuss.elastic.co/u/kgeographer)\
**Replies:** 0\
**Last updated:** [July 21, 2023, 8:07am UTC](https://discuss.elastic.co/t/ngrams-or-dense-vectors-for-similarity-between-arrays/338929 "2023-07-21T08:07:30Z")

</div>

I have an index field "names" holding an array of place names. My goal is an ES query that sends an array of place names and returns the most similar docs based on all the names in both the query array and the index arra…

[Previous page](https://discuss.elastic.co/c/elastic-stack/81.md?page=472)

[Next page](https://discuss.elastic.co/c/elastic-stack/81.md?page=474)
