# Elastic Stack

**URL:** https://discuss.elastic.co/c/elastic-stack/81.md?page=496

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 497

---

## [Elastic-agent visualizations in non-default space](https://discuss.elastic.co/t/elastic-agent-visualizations-in-non-default-space/337088)

<div class="topic-metadata">

**Author:** [@lduvnjak](https://discuss.elastic.co/u/lduvnjak)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 1:44pm UTC](https://discuss.elastic.co/t/elastic-agent-visualizations-in-non-default-space/337088 "2023-06-28T13:44:20Z")

</div>

Hello Everyone, Is there any way to make the visualizations which are automatically created upon applying an Integration to an Agent Policy, be created in a space other than Default. This would be interesting for us so…

---

## [ES goes out of heap when issuing clusterstats (caused by CompletionStats)](https://discuss.elastic.co/t/es-goes-out-of-heap-when-issuing-clusterstats-caused-by-completionstats/336866)

<div class="topic-metadata">

**Author:** [@mgsag](https://discuss.elastic.co/u/mgsag)\
**Replies:** 11\
**Last updated:** [June 28, 2023, 1:21pm UTC](https://discuss.elastic.co/t/es-goes-out-of-heap-when-issuing-clusterstats-caused-by-completionstats/336866 "2023-06-28T13:21:56Z")

</div>

We observed this behavior in several of our production ElasticSearches and we were also able to reproduce it locally. If a database contains a lot of data for the completion-suggester, issuing a "\_cluster/stats?pretty"…

---

## [I want to know why the indices.id\_field\_data.enabled configuration is turned off by default](https://discuss.elastic.co/t/i-want-to-know-why-the-indices-id-field-data-enabled-configuration-is-turned-off-by-default/336834)

<div class="topic-metadata">

**Author:** [@gaorui](https://discuss.elastic.co/u/gaorui)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 1:12pm UTC](https://discuss.elastic.co/t/i-want-to-know-why-the-indices-id-field-data-enabled-configuration-is-turned-off-by-default/336834 "2023-06-28T13:12:43Z")

</div>

I have a 200 million index, and I need to find out about 1 million of them based on certain conditions. I used the scroll api to query before, but I found that in the 8.x version, the scroll api is no longer recommended,…

---

## [Configuration on a two Kibana cluster](https://discuss.elastic.co/t/configuration-on-a-two-kibana-cluster/337084)

<div class="topic-metadata">

**Author:** [@DyRS\_16](https://discuss.elastic.co/u/DyRS_16)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 1:01pm UTC](https://discuss.elastic.co/t/configuration-on-a-two-kibana-cluster/337084 "2023-06-28T13:01:41Z")

</div>

Hi community, I have tested a Kibana cluster of two nodes behind a load balancer and it worked without any problem. There are a few settings that the documentation specified to be changed, but I didn't: Settings that m…

---

## [Agent stopped talking to Fleet](https://discuss.elastic.co/t/agent-stopped-talking-to-fleet/337074)

<div class="topic-metadata">

**Author:** [@willsy](https://discuss.elastic.co/u/willsy)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 12:10pm UTC](https://discuss.elastic.co/t/agent-stopped-talking-to-fleet/337074 "2023-06-28T12:10:46Z")

</div>

After sucessfully adding various fleet agents to my fleet server aftr a few days all of them stopped, including the fleet server itself. I have the log file of the agent so just wondering if someone can point me in the r…

---

## [Alerting in Marvel (or any other way)](https://discuss.elastic.co/t/alerting-in-marvel-or-any-other-way/337071)

<div class="topic-metadata">

**Author:** [@Mark\_S](https://discuss.elastic.co/u/Mark_S)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 12:01pm UTC](https://discuss.elastic.co/t/alerting-in-marvel-or-any-other-way/337071 "2023-06-28T12:01:36Z")

</div>

Is it possible to create alerts for various metrics (eg JVM usage, nodes volume usage, etc?) There have been similar questions a couple of years ago but I did not find a positive answer. Perhaps installing also Promethe…

---

## [Remove the date select filter only for a specific dashboard](https://discuss.elastic.co/t/remove-the-date-select-filter-only-for-a-specific-dashboard/337042)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 11:42am UTC](https://discuss.elastic.co/t/remove-the-date-select-filter-only-for-a-specific-dashboard/337042 "2023-06-28T11:42:55Z")

</div>

Hi, Is it possible to remove the date select filter from only a specific dashboard in kibana? i want to display static data without any date change. is it possible?

---

## [Beats 8.7.x has disappeared in the Beats Release Notes?!](https://discuss.elastic.co/t/beats-8-7-x-has-disappeared-in-the-beats-release-notes/337066)

<div class="topic-metadata">

**Author:** [@bjosve](https://discuss.elastic.co/u/bjosve)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 11:39am UTC](https://discuss.elastic.co/t/beats-8-7-x-has-disappeared-in-the-beats-release-notes/337066 "2023-06-28T11:39:25Z")

</div>

Hi, It seems as Beats 8.7.x has disappeared in the Beats Release Notes. Is this a mistake or a note to avoid Beats 8.7? Best Regards, Bjorn Svensson

---

## [Elastic Search Error after altering/modifying the elasticsearch.yml file](https://discuss.elastic.co/t/elastic-search-error-after-altering-modifying-the-elasticsearch-yml-file/337031)

<div class="topic-metadata">

**Author:** [@Zu\_kun](https://discuss.elastic.co/u/Zu_kun)\
**Replies:** 4\
**Last updated:** [June 28, 2023, 11:37am UTC](https://discuss.elastic.co/t/elastic-search-error-after-altering-modifying-the-elasticsearch-yml-file/337031 "2023-06-28T11:37:42Z")

</div>

Hi, I have installed Elasticsearch version 7.17.7 on ubuntu and I have noticed an issue whenever I alter or modify the elasticsearch.yml file within /etc/elasticsearch, In the elasticsearch.yml file, I want to bind the…

---

## [Elasticsearch with Docker](https://discuss.elastic.co/t/elasticsearch-with-docker/337068)

<div class="topic-metadata">

**Author:** [@anderstr1](https://discuss.elastic.co/u/anderstr1)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 11:30am UTC](https://discuss.elastic.co/t/elasticsearch-with-docker/337068 "2023-06-28T11:30:39Z")

</div>

We have already set up Elasticsearch version 7.10.2 using the official docker image, and our single-node cluster is running fine. We need to use this specific Elasticsearch version since it is required by the Mediawiki a…

---

## [Increasing Rows per Page Limit in Kibana 8.6.2](https://discuss.elastic.co/t/increasing-rows-per-page-limit-in-kibana-8-6-2/336780)

<div class="topic-metadata">

**Author:** [@7a6b6f](https://discuss.elastic.co/u/7a6b6f)\
**Replies:** 5\
**Last updated:** [June 28, 2023, 10:55am UTC](https://discuss.elastic.co/t/increasing-rows-per-page-limit-in-kibana-8-6-2/336780 "2023-06-28T10:55:33Z")

</div>

Hello fellow forum members, I have been using Kibana version 8.6.2 for my data analysis needs and have come across a query regarding the "Rows per Page" limit in the Discover category of the advanced settings. By def…

---

## [Dose Low Level Rest Client not cause the same connection pressure as Transport Client](https://discuss.elastic.co/t/dose-low-level-rest-client-not-cause-the-same-connection-pressure-as-transport-client/337056)

<div class="topic-metadata">

**Author:** [@emmning](https://discuss.elastic.co/u/emmning)\
**Replies:** 2\
**Last updated:** [June 28, 2023, 10:08am UTC](https://discuss.elastic.co/t/dose-low-level-rest-client-not-cause-the-same-connection-pressure-as-transport-client/337056 "2023-06-28T10:08:38Z")

</div>

We are using flink to write data to ES cluster.The transport client is used as the client in the flink task and the sniffer is configured.Each parallism of flink task will create a transport client, and each transport cl…

---

## [Empty aggregations, ES 6.7 nodes, RHLC upgraded from v6.3 to v6.8](https://discuss.elastic.co/t/empty-aggregations-es-6-7-nodes-rhlc-upgraded-from-v6-3-to-v6-8/337062)

<div class="topic-metadata">

**Author:** [@Hi\_Jonk](https://discuss.elastic.co/u/Hi_Jonk)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 9:37am UTC](https://discuss.elastic.co/t/empty-aggregations-es-6-7-nodes-rhlc-upgraded-from-v6-3-to-v6-8/337062 "2023-06-28T09:37:50Z")

</div>

As part of a rolling upgrade, I am trying upgrade my high level client from v6.3 to v6.8 while talking to v6.7 nodes. Search is working fine, however, the aggregation queries we were using with the v6.3 client have stopp…

---

## [Tabs in kibana dashboard?](https://discuss.elastic.co/t/tabs-in-kibana-dashboard/337041)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 5\
**Last updated:** [June 28, 2023, 9:35am UTC](https://discuss.elastic.co/t/tabs-in-kibana-dashboard/337041 "2023-06-28T09:35:13Z")

</div>

Hi, is it possible to add tabs in a kibana dashboard? with different visualizations in different tabs?

---

## [Data transfer from logstash to kibana](https://discuss.elastic.co/t/data-transfer-from-logstash-to-kibana/337055)

<div class="topic-metadata">

**Author:** [@kazuo](https://discuss.elastic.co/u/kazuo)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 8:49am UTC](https://discuss.elastic.co/t/data-transfer-from-logstash-to-kibana/337055 "2023-06-28T08:49:05Z")

</div>

Hello, Output drop occurs in L2SW when transferring data from logstash to kibana. Are there any parameters that control data transfer with logstash? Thank you in advance

---

## [Monitoring Elastic Agent integration logs](https://discuss.elastic.co/t/monitoring-elastic-agent-integration-logs/337054)

<div class="topic-metadata">

**Author:** [@DyRS\_16](https://discuss.elastic.co/u/DyRS_16)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 8:40am UTC](https://discuss.elastic.co/t/monitoring-elastic-agent-integration-logs/337054 "2023-06-28T08:40:43Z")

</div>

Hi community, I would like to monitor when there is an integration that stopped sending logs during a certain period of time. Something similar to the "Missing monitoring data" from the Stack Monitoring, but applied to …

---

## [Read a date of a file to add this property in Logstash to send a ElasticSearch](https://discuss.elastic.co/t/read-a-date-of-a-file-to-add-this-property-in-logstash-to-send-a-elasticsearch/335359)

<div class="topic-metadata">

**Author:** [@AlejandroVindel](https://discuss.elastic.co/u/AlejandroVindel)\
**Replies:** 2\
**Last updated:** [June 28, 2023, 8:36am UTC](https://discuss.elastic.co/t/read-a-date-of-a-file-to-add-this-property-in-logstash-to-send-a-elasticsearch/335359 "2023-06-28T08:36:09Z")

</div>

HI, I am collecting files with Logstash and sending them to an Elasticsearch database. But I'm running into the problem that I can't pick up the date that file was created or last modified. I'm working on Linux, and wh…

---

## [Elastic 8.X license](https://discuss.elastic.co/t/elastic-8-x-license/337052)

<div class="topic-metadata">

**Author:** [@Norsu296](https://discuss.elastic.co/u/Norsu296)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 8:23am UTC](https://discuss.elastic.co/t/elastic-8-x-license/337052 "2023-06-28T08:23:25Z")

</div>

Hello, I'm trying to use elastic 8.8.0 on kubernetes with authentication using file realm, but it doesn;t work. In previous version (7.17) it was working, I didn't change anything in configuration. I checked password sh…

---

## [Total hits showing up as 0, but documents exist. 6.3 Rest high level client, 7.1 cluster](https://discuss.elastic.co/t/total-hits-showing-up-as-0-but-documents-exist-6-3-rest-high-level-client-7-1-cluster/337006)

<div class="topic-metadata">

**Author:** [@Hi\_Jonk](https://discuss.elastic.co/u/Hi_Jonk)\
**Replies:** 3\
**Last updated:** [June 28, 2023, 7:29am UTC](https://discuss.elastic.co/t/total-hits-showing-up-as-0-but-documents-exist-6-3-rest-high-level-client-7-1-cluster/337006 "2023-06-28T07:29:55Z")

</div>

Hi, I had a cluster that was running on ES v6.7 with a REST high level client v6.3. We want to upgrade, so as per this suggestion: Clarify high level REST client compatibility between 6 and 7 created a test cluster at …

---

## [How to connect to Kafka using filebeat with PLAINTEXT SecurityProtocol?](https://discuss.elastic.co/t/how-to-connect-to-kafka-using-filebeat-with-plaintext-securityprotocol/336996)

<div class="topic-metadata">

**Author:** [@wymli](https://discuss.elastic.co/u/wymli)\
**Replies:** 3\
**Last updated:** [June 28, 2023, 7:06am UTC](https://discuss.elastic.co/t/how-to-connect-to-kafka-using-filebeat-with-plaintext-securityprotocol/336996 "2023-06-28T07:06:15Z")

</div>

At present, the security-protocols of kafka mainly include the following PLAINTEXT, SSL, SASL\_PLAINTEXT, SASL\_SSL. But I checked the kafka-output documentation: Configure the Kafka output | Filebeat Reference \[8.8\] | Ela…

---

## [Kibana dashboard visualisation slowness while accessing the dashboard -](https://discuss.elastic.co/t/kibana-dashboard-visualisation-slowness-while-accessing-the-dashboard/336943)

<div class="topic-metadata">

**Author:** [@Praveen\_kr](https://discuss.elastic.co/u/Praveen_kr)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 6:30am UTC](https://discuss.elastic.co/t/kibana-dashboard-visualisation-slowness-while-accessing-the-dashboard/336943 "2023-06-28T06:30:05Z")

</div>

Hello , We are using 7.17 version Elasticsearch and Kibana, We are facing browser locks up issue when access dashboard in our environment. While loading the dashboard visualisation is very slow for example : last 30 d…

---

## [CancelException with AsyncBulkLoad (Python helper)](https://discuss.elastic.co/t/cancelexception-with-asyncbulkload-python-helper/337038)

<div class="topic-metadata">

**Author:** [@ionFreeman](https://discuss.elastic.co/u/ionFreeman)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 5:58am UTC](https://discuss.elastic.co/t/cancelexception-with-asyncbulkload-python-helper/337038 "2023-06-28T05:58:19Z")

</div>

Hello! I have a little action generator, actually a bunch of coroutines I stich together with aiostream.merge(). I pass it into the AsyncBulkLoad. I haven't reproduced the behavior when I have a small number of test acti…

---

## [Elastic node crashing due to java.lang.OutOfMemoryError: Java heap space](https://discuss.elastic.co/t/elastic-node-crashing-due-to-java-lang-outofmemoryerror-java-heap-space/337034)

<div class="topic-metadata">

**Author:** [@sasvmware](https://discuss.elastic.co/u/sasvmware)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 5:22am UTC](https://discuss.elastic.co/t/elastic-node-crashing-due-to-java-lang-outofmemoryerror-java-heap-space/337034 "2023-06-28T05:22:56Z")

</div>

Hi Elasticsearch nodes are crashing due to java.lang.OutOfMemoryError: Java heap space. We have 10 GB memory in each node and as per formula total memory/2 -1 we have set JVM as 4. ava.lang.OutOfMemoryError: Java heap…

---

## [How to solve kibana report?](https://discuss.elastic.co/t/how-to-solve-kibana-report/337033)

<div class="topic-metadata">

**Author:** [@Ethan\_Park](https://discuss.elastic.co/u/Ethan_Park)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 4:26am UTC](https://discuss.elastic.co/t/how-to-solve-kibana-report/337033 "2023-06-28T04:26:49Z")

</div>

I am getting the following error while trying to generate PNG,PDF report from Kibana. Kibana\_Error error 1 {"service":{"node":{"roles":\["background\_tasks","ui"\]}},"ecs":{"version":"8.6.0"},"@timestamp":"2023-06-21T14:28…

---

## [How to configure filebeat log format to human readable instead of json?](https://discuss.elastic.co/t/how-to-configure-filebeat-log-format-to-human-readable-instead-of-json/337032)

<div class="topic-metadata">

**Author:** [@wymli](https://discuss.elastic.co/u/wymli)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 3:55am UTC](https://discuss.elastic.co/t/how-to-configure-filebeat-log-format-to-human-readable-instead-of-json/337032 "2023-06-28T03:55:48Z")

</div>

With -e option, Filebeat version 7.9.1 will output logs in this human-readable way. e.g. 2023-06-28T11:51:10.059 + 0800 INFO \[publisher\] pipeline/retry.go: 223 done But filebeat version 8.8.1 does not, outputs the lo…

---

## [How to migrate data older than 30 day from a cluster to another cluster](https://discuss.elastic.co/t/how-to-migrate-data-older-than-30-day-from-a-cluster-to-another-cluster/337029)

<div class="topic-metadata">

**Author:** [@Tai\_Nguyen\_Huu](https://discuss.elastic.co/u/Tai_Nguyen_Huu)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 2:48am UTC](https://discuss.elastic.co/t/how-to-migrate-data-older-than-30-day-from-a-cluster-to-another-cluster/337029 "2023-06-28T02:48:51Z")

</div>

Hi guys, I have a elasticsearch cluster, I wan to migrate data older than 30 day from a cluster to another cluster by automatic .

---

## [How to check total required heap for ES 8.8](https://discuss.elastic.co/t/how-to-check-total-required-heap-for-es-8-8/336821)

<div class="topic-metadata">

**Author:** [@Geunmoon\_Oh](https://discuss.elastic.co/u/Geunmoon_Oh)\
**Replies:** 13\
**Last updated:** [June 28, 2023, 2:46am UTC](https://discuss.elastic.co/t/how-to-check-total-required-heap-for-es-8-8/336821 "2023-06-28T02:46:06Z")

</div>

To set my ES node's heap minimum, I referenced Size your shards (Size your shards | Elasticsearch Guide \[8.8\] | Elastic). "total\_deduplicated\_mapping\_size" : "4.1kb“ "total\_estimated\_overhead" : “13.5mb“ "extra heap f…

---

## [How to Integration with Intersystems' IRIS database](https://discuss.elastic.co/t/how-to-integration-with-intersystems-iris-database/337025)

<div class="topic-metadata">

**Author:** [@tomming](https://discuss.elastic.co/u/tomming)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 1:26am UTC](https://discuss.elastic.co/t/how-to-integration-with-intersystems-iris-database/337025 "2023-06-28T01:26:58Z")

</div>

Need help Integration with Intersystems' IRIS database.

---

## [ES migration from 6.8 to 7.17. Data type change in template for "date" type](https://discuss.elastic.co/t/es-migration-from-6-8-to-7-17-data-type-change-in-template-for-date-type/337022)

<div class="topic-metadata">

**Author:** [@Abhilashsr2008](https://discuss.elastic.co/u/Abhilashsr2008)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 11:19pm UTC](https://discuss.elastic.co/t/es-migration-from-6-8-to-7-17-data-type-change-in-template-for-date-type/337022 "2023-06-27T23:19:59Z")

</div>

Hi Team We are planning to move from ES 6.8 to 7.17 server migration . But in 7.17 -ve values are not supported for date field. So am thinking to change the index template for that specific field from date to long type …

---

## [New to ELK & Kibana, Error Message: "security\_exception: missing authentication credentials for REST request "](https://discuss.elastic.co/t/new-to-elk-kibana-error-message-security-exception-missing-authentication-credentials-for-rest-request/336961)

<div class="topic-metadata">

**Author:** [@General-Trident](https://discuss.elastic.co/u/General-Trident)\
**Replies:** 2\
**Last updated:** [June 27, 2023, 8:14pm UTC](https://discuss.elastic.co/t/new-to-elk-kibana-error-message-security-exception-missing-authentication-credentials-for-rest-request/336961 "2023-06-27T20:14:18Z")

</div>

I'm new to ELK & Kibana. Haven't made any recommendable configs apart from just installing the instances (which are only Elasticsearch & Kibana so far). Elasticsearch status is ready and running, but I still can't access…

[Previous page](https://discuss.elastic.co/c/elastic-stack/81.md?page=495)

[Next page](https://discuss.elastic.co/c/elastic-stack/81.md?page=497)
