# Elastic Stack

**URL:** https://discuss.elastic.co/c/elastic-stack/81.md?page=527

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 528

---

## [NameError, missing class name com.ibm.mq.jms.MQQueueConnectionFactory](https://discuss.elastic.co/t/nameerror-missing-class-name-com-ibm-mq-jms-mqqueueconnectionfactory/334784)

<div class="topic-metadata">

**Author:** [@paulov](https://discuss.elastic.co/u/paulov)\
**Replies:** 0\
**Last updated:** [May 31, 2023, 10:17am UTC](https://discuss.elastic.co/t/nameerror-missing-class-name-com-ibm-mq-jms-mqqueueconnectionfactory/334784 "2023-05-31T10:17:52Z")

</div>

Hello, I have a JMS plugin configuration with purpose of connecting to IBM MQ. After starting the pipeline I get: \> \> \[WARN \] 2023-05-31 10:38:14.348 \[\[main\]\<jms\] jms - JMS Consumer Died {:exception=\>"NameError", \> :…

---

## [Kibana visualisation-](https://discuss.elastic.co/t/kibana-visualisation/333176)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 12\
**Last updated:** [May 31, 2023, 9:15am UTC](https://discuss.elastic.co/t/kibana-visualisation/333176 "2023-05-31T09:15:18Z")

</div>

Hi I am creating a Kibana visualization. Using table in kibana lens I want to fetch the time a token is first created in the log file. I am able to view the last value of it. but how can i see the timestamp when the tok…

---

## [DeflateCompressor threads causing memory leak in Tomcat](https://discuss.elastic.co/t/deflatecompressor-threads-causing-memory-leak-in-tomcat/334769)

<div class="topic-metadata">

**Author:** [@KristianJ](https://discuss.elastic.co/u/KristianJ)\
**Replies:** 1\
**Last updated:** [May 31, 2023, 9:06am UTC](https://discuss.elastic.co/t/deflatecompressor-threads-causing-memory-leak-in-tomcat/334769 "2023-05-31T09:06:53Z")

</div>

Hi, using ES 7.17.10 in a Tomcat container (9.0.x). When the application is shutdown there are two threads that are not removed, causing memory leaks from the DeflateCompressor class. In particular it would seem that t…

---

## [Attempted to resurrect connection to dead ES instance, but got an error](https://discuss.elastic.co/t/attempted-to-resurrect-connection-to-dead-es-instance-but-got-an-error/333650)

<div class="topic-metadata">

**Author:** [@snalaband](https://discuss.elastic.co/u/snalaband)\
**Replies:** 4\
**Last updated:** [May 31, 2023, 9:03am UTC](https://discuss.elastic.co/t/attempted-to-resurrect-connection-to-dead-es-instance-but-got-an-error/333650 "2023-05-31T09:03:02Z")

</div>

Attempted to resurrect connection to dead ES instance, but got an error. {:error\_type=\>LogStash::Outputs::Elasticsearch::HttpClient::Pool::BadResponseCodeError, :error=\>"Got response code '401' contacting Elasticsearch a…

---

## [Dashboard with kibana](https://discuss.elastic.co/t/dashboard-with-kibana/334016)

<div class="topic-metadata">

**Author:** [@Hanni](https://discuss.elastic.co/u/Hanni)\
**Replies:** 13\
**Last updated:** [May 31, 2023, 8:52am UTC](https://discuss.elastic.co/t/dashboard-with-kibana/334016 "2023-05-31T08:52:28Z")

</div>

Hello, I have two CSV files. One file contains the names of applications, and the other file contains information about a specific application. Both files have the "Host" column in common. I have imported these two files…

---

## [Upgrading 7.17 to 8.7 query search query not working](https://discuss.elastic.co/t/upgrading-7-17-to-8-7-query-search-query-not-working/334645)

<div class="topic-metadata">

**Author:** [@ak01](https://discuss.elastic.co/u/ak01)\
**Replies:** 3\
**Last updated:** [May 31, 2023, 8:48am UTC](https://discuss.elastic.co/t/upgrading-7-17-to-8-7-query-search-query-not-working/334645 "2023-05-31T08:48:32Z")

</div>

What will be the new query this I was using in old version for search: const { body } = await Client.search({ index: this.tableName, body: { sort: sortingData, from: skip, size: l…

---

## [Access Elasticsearch with public IP](https://discuss.elastic.co/t/access-elasticsearch-with-public-ip/334743)

<div class="topic-metadata">

**Author:** [@Rakhshunda\_Noorein\_J](https://discuss.elastic.co/u/Rakhshunda_Noorein_J)\
**Replies:** 2\
**Last updated:** [May 31, 2023, 8:48am UTC](https://discuss.elastic.co/t/access-elasticsearch-with-public-ip/334743 "2023-05-31T08:48:26Z")

</div>

Hello, I have my Elasticsearch running on my windows 10 server. I want to access it with \< my static public ip address \>:9200 I can access my elasticsearch from the server with: localhost:9200 \<my ipv4 address from …

---

## [Vega :- Link on text Mark which redirects to another dashboard with filter applied as per click value](https://discuss.elastic.co/t/vega-link-on-text-mark-which-redirects-to-another-dashboard-with-filter-applied-as-per-click-value/333173)

<div class="topic-metadata">

**Author:** [@Fiza](https://discuss.elastic.co/u/Fiza)\
**Replies:** 3\
**Last updated:** [May 31, 2023, 8:38am UTC](https://discuss.elastic.co/t/vega-link-on-text-mark-which-redirects-to-another-dashboard-with-filter-applied-as-per-click-value/333173 "2023-05-31T08:38:18Z")

</div>

I have created a table view in Vega and trying to put link on one of the column. The link should redirect to the new dashboard with the clicked value as filter. I want the Kibana URL functionality to apply on Vega where…

---

## [Retrieve additional information with alerts](https://discuss.elastic.co/t/retrieve-additional-information-with-alerts/334765)

<div class="topic-metadata">

**Author:** [@Skairik](https://discuss.elastic.co/u/Skairik)\
**Replies:** 0\
**Last updated:** [May 31, 2023, 8:32am UTC](https://discuss.elastic.co/t/retrieve-additional-information-with-alerts/334765 "2023-05-31T08:32:43Z")

</div>

Hello everyone, I am currently setting up various alerts on Kibana and would need to know if what I want to set up is possible. I currently have a Threshold rule with these parameters: And the following action: …

---

## [How to get CPU, Memory and Storage from VCenter not VM's using Logstash](https://discuss.elastic.co/t/how-to-get-cpu-memory-and-storage-from-vcenter-not-vms-using-logstash/334747)

<div class="topic-metadata">

**Author:** [@gaetano](https://discuss.elastic.co/u/gaetano)\
**Replies:** 0\
**Last updated:** [May 31, 2023, 6:32am UTC](https://discuss.elastic.co/t/how-to-get-cpu-memory-and-storage-from-vcenter-not-vms-using-logstash/334747 "2023-05-31T06:32:05Z")

</div>

I'm trying to send CPU, Memory and Storage parameters of VCenter Server (VMWare) to Elasticsearch node (8.6.1 verson) passing by Logstash 8.6.1. What MIB file should I use to get those specific parameters? This is my Lo…

---

## [엘라스틱서치 shrink와 forcemerge 를 진행하는 node 선출 algorithm이나 문서](https://discuss.elastic.co/t/shrink-forcemerge-node-algorithm/334752)

<div class="topic-metadata">

**Author:** [@bxl0107](https://discuss.elastic.co/u/bxl0107)\
**Replies:** 0\
**Last updated:** [May 31, 2023, 6:46am UTC](https://discuss.elastic.co/t/shrink-forcemerge-node-algorithm/334752 "2023-05-31T06:46:05Z")

</div>

안녕하세요. elasticsearch 7.17.8을 사용 중입니다. ilm으로 hot-warm-cold index pahse도 함께 운영 중인데, forcemerge와 shink를 할 때, 용량이 부족한 node에서 진행하는 경우가 종종 있습니다. 용량은 wartermark로 설정해두었는데, shrink와 forcemerge를 진행하는 node를 선출하는 algorithm이나 문서가 있…

---

## [Access Kibana Remotely](https://discuss.elastic.co/t/access-kibana-remotely/334678)

<div class="topic-metadata">

**Author:** [@Rakhshunda\_Noorein\_J](https://discuss.elastic.co/u/Rakhshunda_Noorein_J)\
**Replies:** 3\
**Last updated:** [May 31, 2023, 6:26am UTC](https://discuss.elastic.co/t/access-kibana-remotely/334678 "2023-05-31T06:26:25Z")

</div>

Hello, I want to access kibana remotely. I have changed my Network.Host to my private ip in elasticsearch.yml file then I have changed server.host: 0.0.0.0 in kibana.yml file. I am able to access elasticsearch port 920…

---

## [User needs to click 2 times for getting authenticated Azure OIDC](https://discuss.elastic.co/t/user-needs-to-click-2-times-for-getting-authenticated-azure-oidc/334748)

<div class="topic-metadata">

**Author:** [@Aniket\_Pant](https://discuss.elastic.co/u/Aniket_Pant)\
**Replies:** 0\
**Last updated:** [May 31, 2023, 6:34am UTC](https://discuss.elastic.co/t/user-needs-to-click-2-times-for-getting-authenticated-azure-oidc/334748 "2023-05-31T06:34:33Z")

</div>

Hi Team, We are running ELK stack version 7.17 with platinum license. We want to integrate Elasticsearch with Azure AD OIDC . We have done the configuration both at kibana and elasticsearch level. elasticsearch.yml xp…

---

## [Unable to see the index patterns and Indices in kibana dashboard](https://discuss.elastic.co/t/unable-to-see-the-index-patterns-and-indices-in-kibana-dashboard/334685)

<div class="topic-metadata">

**Author:** [@SalmaShaik](https://discuss.elastic.co/u/SalmaShaik)\
**Replies:** 2\
**Last updated:** [May 31, 2023, 3:14am UTC](https://discuss.elastic.co/t/unable-to-see-the-index-patterns-and-indices-in-kibana-dashboard/334685 "2023-05-31T03:14:12Z")

</div>

Hi Team, I am unable to see the indices and index patterns in kibana dashboard before upgrading to the Elasticsearch version to 7.17.9. Now I am using 7.8 version. Kindly help me on this.

---

## [Split json array into multiple documents](https://discuss.elastic.co/t/split-json-array-into-multiple-documents/332789)

<div class="topic-metadata">

**Author:** [@manramu22](https://discuss.elastic.co/u/manramu22)\
**Replies:** 1\
**Last updated:** [May 31, 2023, 12:35am UTC](https://discuss.elastic.co/t/split-json-array-into-multiple-documents/332789 "2023-05-31T00:35:04Z")

</div>

Hi Logstash community, I have the following json coming from http\_poller. I want to split that into multiple json documents and feed into Elasticsearch. Pls suggest json filter or split. Thanks in advance Input JSON {…

---

## [How Filebeat is configured with ELK](https://discuss.elastic.co/t/how-filebeat-is-configured-with-elk/332496)

<div class="topic-metadata">

**Author:** [@SalmaShaik](https://discuss.elastic.co/u/SalmaShaik)\
**Replies:** 1\
**Last updated:** [May 31, 2023, 12:12am UTC](https://discuss.elastic.co/t/how-filebeat-is-configured-with-elk/332496 "2023-05-31T00:12:26Z")

</div>

Hi, How filebeat is configured with ELK. How filebeat is used to get logs from the servers in the Kibana dashboard. I want to know about these questions can anyone clarify me?

---

## [Eland\_import\_hub\_model import error!](https://discuss.elastic.co/t/eland-import-hub-model-import-error/334701)

<div class="topic-metadata">

**Author:** [@laoyang360](https://discuss.elastic.co/u/laoyang360)\
**Replies:** 1\
**Last updated:** [May 30, 2023, 11:51pm UTC](https://discuss.elastic.co/t/eland-import-hub-model-import-error/334701 "2023-05-30T23:51:48Z")

</div>

eland\_import\_hub\_model --url https://elastic:changeme@127.0.0.1:9200 --hub-model-id sentence-transformers/clip-ViT-B-32-multilingual-v1 --task-type text\_embedding --start --ca-certs /www/elasticsearch\_0806/elasticsearch-…

---

## [Usage pattern for ElasticsearchClient for multiple regions .NET](https://discuss.elastic.co/t/usage-pattern-for-elasticsearchclient-for-multiple-regions-net/334721)

<div class="topic-metadata">

**Author:** [@matthew\_gen](https://discuss.elastic.co/u/matthew_gen)\
**Replies:** 1\
**Last updated:** [May 30, 2023, 11:47pm UTC](https://discuss.elastic.co/t/usage-pattern-for-elasticsearchclient-for-multiple-regions-net/334721 "2023-05-30T23:47:23Z")

</div>

I have two different elastic deployments that are in two different regions. Both clusters exist under the same elastic org account. Is the recommended usage pattern to create a singleton instance for each deployment? Or…

---

## [Kubernetes beats deployment yaml syntax error linked from support documents to GitHub](https://discuss.elastic.co/t/kubernetes-beats-deployment-yaml-syntax-error-linked-from-support-documents-to-github/334722)

<div class="topic-metadata">

**Author:** [@AndrewDatTeranet](https://discuss.elastic.co/u/AndrewDatTeranet)\
**Replies:** 1\
**Last updated:** [May 30, 2023, 10:15pm UTC](https://discuss.elastic.co/t/kubernetes-beats-deployment-yaml-syntax-error-linked-from-support-documents-to-github/334722 "2023-05-30T22:15:52Z")

</div>

I believe there is a syntax error in the daemonset configuration in all the beats example/refrence yaml's in the elastic beats repo on GitHub. see below for the issue with the filbeat config (though it looks like that s…

---

## [\--fleet-server-es-ca option does not work on Windows?](https://discuss.elastic.co/t/fleet-server-es-ca-option-does-not-work-on-windows/333120)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 2\
**Last updated:** [May 30, 2023, 8:48pm UTC](https://discuss.elastic.co/t/fleet-server-es-ca-option-does-not-work-on-windows/333120 "2023-05-30T20:48:59Z")

</div>

I'm having an issue with elastic agents Windows machines, but they work perfectly on Linux machines. My fleet server keeps showing the status Unhealthy for elastic agents I've installed on Windows machines. This is the…

---

## [GROK Pattern syntax error, working in GROK debugger but not pipeline](https://discuss.elastic.co/t/grok-pattern-syntax-error-working-in-grok-debugger-but-not-pipeline/334707)

<div class="topic-metadata">

**Author:** [@mhoward](https://discuss.elastic.co/u/mhoward)\
**Replies:** 1\
**Last updated:** [May 30, 2023, 7:51pm UTC](https://discuss.elastic.co/t/grok-pattern-syntax-error-working-in-grok-debugger-but-not-pipeline/334707 "2023-05-30T19:51:20Z")

</div>

Hey all. I'm trying to create a GROK pattern on a longer text message to break it into several fields. The error I'm having is when I try to make a field of a specific set of numbers from a larger set of numbers. For …

---

## [Elasticsearch exited unexpectedly](https://discuss.elastic.co/t/elasticsearch-exited-unexpectedly/334718)

<div class="topic-metadata">

**Author:** [@Long\_Nguyen](https://discuss.elastic.co/u/Long_Nguyen)\
**Replies:** 2\
**Last updated:** [May 30, 2023, 7:32pm UTC](https://discuss.elastic.co/t/elasticsearch-exited-unexpectedly/334718 "2023-05-30T19:32:58Z")

</div>

Hello, I have a similar problem to this post. My problem is a bit different since I managed to start Elasticsearch the day before (before shutting it down). I have verified that all permission settings are correct. Her…

---

## [How do you uninstall an Elastic Agent?](https://discuss.elastic.co/t/how-do-you-uninstall-an-elastic-agent/334711)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 1\
**Last updated:** [May 30, 2023, 7:24pm UTC](https://discuss.elastic.co/t/how-do-you-uninstall-an-elastic-agent/334711 "2023-05-30T19:24:47Z")

</div>

My computer crashed while I was installing an elastic agent. So I rebooted and tried again, but the elastic-agent.exe install ...etc... gave an error say it is unabel to, and that i need to uninstall it first. So then …

---

## [Keyword subfield mapping causes unexpected querying results](https://discuss.elastic.co/t/keyword-subfield-mapping-causes-unexpected-querying-results/334655)

<div class="topic-metadata">

**Author:** [@Hryhorii](https://discuss.elastic.co/u/Hryhorii)\
**Replies:** 6\
**Last updated:** [May 30, 2023, 6:38pm UTC](https://discuss.elastic.co/t/keyword-subfield-mapping-causes-unexpected-querying-results/334655 "2023-05-30T18:38:48Z")

</div>

We have an index mapping schema with a lot of text fields. To be able to sort and filter them we added keyword subfield mapping with lowercase normalizer. Here is a short part of our schema: { "mappings": { "dynam…

---

## [Elastic 8.8.0 - Current license is non-compliant for search application and behavioral analytics](https://discuss.elastic.co/t/elastic-8-8-0-current-license-is-non-compliant-for-search-application-and-behavioral-analytics/334712)

<div class="topic-metadata">

**Author:** [@zx8086](https://discuss.elastic.co/u/zx8086)\
**Replies:** 1\
**Last updated:** [May 30, 2023, 6:22pm UTC](https://discuss.elastic.co/t/elastic-8-8-0-current-license-is-non-compliant-for-search-application-and-behavioral-analytics/334712 "2023-05-30T18:22:37Z")

</div>

Elasticsearch Log been polluted with following message Failed to get search application count to include in Enterprise Search usage java.util.concurrent.ExecutionException: org.elasticsearch.ElasticsearchSecurityExcepti…

---

## [Elastic Agent is installed but currently broken: service exists but installation path is missing](https://discuss.elastic.co/t/elastic-agent-is-installed-but-currently-broken-service-exists-but-installation-path-is-missing/334610)

<div class="topic-metadata">

**Author:** [@Marcos\_Ivan\_Robles\_H](https://discuss.elastic.co/u/Marcos_Ivan_Robles_H)\
**Replies:** 5\
**Last updated:** [May 30, 2023, 6:18pm UTC](https://discuss.elastic.co/t/elastic-agent-is-installed-but-currently-broken-service-exists-but-installation-path-is-missing/334610 "2023-05-30T18:18:00Z")

</div>

Hello I am following this documentation: Fleed Manager APM Sever I never saw the data in Kibana-Observability-APM so I tried to uninstall the elastic-agent from power shell and it did not let me so I deleted manually …

---

## [Debian Package Upgrade to 8.8.0 - Multiple Errors](https://discuss.elastic.co/t/debian-package-upgrade-to-8-8-0-multiple-errors/334376)

<div class="topic-metadata">

**Author:** [@zx8086](https://discuss.elastic.co/u/zx8086)\
**Replies:** 4\
**Last updated:** [May 30, 2023, 6:13pm UTC](https://discuss.elastic.co/t/debian-package-upgrade-to-8-8-0-multiple-errors/334376 "2023-05-30T18:13:54Z")

</div>

Hi Guys, Standard deb upgrade, getting a few errors in the Elasticsearch Log and when signing into Kibana UI.. \[2023-05-26T01:43:44,928\]\[WARN \]\[o.e.x.a.EnterpriseSearchUsageTransportAction\] \[IsaacAsimov\] Failed to get …

---

## [Https://localhost:8221/ errored!](https://discuss.elastic.co/t/https-localhost-8221-errored/334328)

<div class="topic-metadata">

**Author:** [@ethical20](https://discuss.elastic.co/u/ethical20)\
**Replies:** 2\
**Last updated:** [May 30, 2023, 6:05pm UTC](https://discuss.elastic.co/t/https-localhost-8221-errored/334328 "2023-05-30T18:05:07Z")

</div>

Hi, When installing elastic agent on remote servers It shows that it is successful and I can see logs in Kibana: root@srv:~/elastic-agent-8.7.1-linux-x86\_64# ./elastic-agent install --url=https://ip:port --fleet-server…

---

## [Cannot checkin in with fleet-server, retrying](https://discuss.elastic.co/t/cannot-checkin-in-with-fleet-server-retrying/333826)

<div class="topic-metadata">

**Author:** [@vanhaiit90](https://discuss.elastic.co/u/vanhaiit90)\
**Replies:** 2\
**Last updated:** [May 30, 2023, 5:52pm UTC](https://discuss.elastic.co/t/cannot-checkin-in-with-fleet-server-retrying/333826 "2023-05-30T17:52:16Z")

</div>

I have completed create Fleet Server and Agent (Elastic - Agent). however it was happen error "Cannot checkin in with fleet-server, retrying" the unstable state any host agent and Fleet Server when online and offline. …

---

## [Reduce number of segments to speed up ANN search](https://discuss.elastic.co/t/reduce-number-of-segments-to-speed-up-ann-search/330584)

<div class="topic-metadata">

**Author:** [@Therese\_Persson](https://discuss.elastic.co/u/Therese_Persson)\
**Replies:** 8\
**Last updated:** [May 30, 2023, 5:43pm UTC](https://discuss.elastic.co/t/reduce-number-of-segments-to-speed-up-ann-search/330584 "2023-05-30T17:43:54Z")

</div>

Hi, We have an ES index with a dense\_vector field containing approx. 2.5 M documents which we use for ANN search. The embedding dimension is 512. We experience a very uneven search performance, it often takes \>20 s for …

[Previous page](https://discuss.elastic.co/c/elastic-stack/81.md?page=526)

[Next page](https://discuss.elastic.co/c/elastic-stack/81.md?page=528)
