# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=107

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 108

---

## [Rolling upgrade exception denying access as action on internal](https://discuss.elastic.co/t/rolling-upgrade-exception-denying-access-as-action-on-internal/360399)

<div class="topic-metadata">

**Author:** [@ctluce](https://discuss.elastic.co/u/ctluce)\
**Replies:** 0\
**Last updated:** [May 28, 2024, 4:15pm UTC](https://discuss.elastic.co/t/rolling-upgrade-exception-denying-access-as-action-on-internal/360399 "2024-05-28T16:15:02Z")

</div>

During a rolling upgrade running into denying access as action \[internal:cluster/coordination/join/validate\] is not an index or cluster action. I'm trying to figure out what is causing this and if any way forward. I hav…

---

## [How to configure mapping of nested properties using .NET client?](https://discuss.elastic.co/t/how-to-configure-mapping-of-nested-properties-using-net-client/360317)

<div class="topic-metadata">

**Author:** [@JornWildt](https://discuss.elastic.co/u/JornWildt)\
**Replies:** 4\
**Last updated:** [May 28, 2024, 1:40pm UTC](https://discuss.elastic.co/t/how-to-configure-mapping-of-nested-properties-using-net-client/360317 "2024-05-28T13:40:14Z")

</div>

I am trying to map a graph using the .NET Client API from NuGet "Elastic.Clients.Elasticsearch" 8.13.8. See code below. The graph nodes are each represented as a document in ES. On each document there is supposed to be …

---

## [Setting up remote sites with separate Fleet servers](https://discuss.elastic.co/t/setting-up-remote-sites-with-separate-fleet-servers/360379)

<div class="topic-metadata">

**Author:** [@fhegedus](https://discuss.elastic.co/u/fhegedus)\
**Replies:** 0\
**Last updated:** [May 28, 2024, 1:33pm UTC](https://discuss.elastic.co/t/setting-up-remote-sites-with-separate-fleet-servers/360379 "2024-05-28T13:33:28Z")

</div>

Dear Community, I’m deploying Elastic Stack on one main (local) site and two remote sites. Each site has an Elastic cluster with 3 Elasticsearch nodes. Each site has a Fleet server deployed but only the main (local) sit…

---

## [Managed ELK || Basic Edition || Alert](https://discuss.elastic.co/t/managed-elk-basic-edition-alert/360343)

<div class="topic-metadata">

**Author:** [@Yogesh\_AS](https://discuss.elastic.co/u/Yogesh_AS)\
**Replies:** 6\
**Last updated:** [May 28, 2024, 1:28pm UTC](https://discuss.elastic.co/t/managed-elk-basic-edition-alert/360343 "2024-05-28T13:28:18Z")

</div>

Hi Team , Is there any way to get the out of box alerts for basic license of managed elk environment without configuring the alerts manually. Thanks in advance !!!

---

## [Search data with special characters](https://discuss.elastic.co/t/search-data-with-special-characters/360285)

<div class="topic-metadata">

**Author:** [@Adrian\_Cuesta](https://discuss.elastic.co/u/Adrian_Cuesta)\
**Replies:** 2\
**Last updated:** [May 28, 2024, 12:26pm UTC](https://discuss.elastic.co/t/search-data-with-special-characters/360285 "2024-05-28T12:26:44Z")

</div>

Hi! I have a problem with getting data with special characters like -,+,% i have and index and my fields are like this: "productSacCode": { "type": "text" } "productShortDescription": { "fielddata": true, "ty…

---

## [Today date data is coming into previous index](https://discuss.elastic.co/t/today-date-data-is-coming-into-previous-index/360312)

<div class="topic-metadata">

**Author:** [@Aniket\_Pant](https://discuss.elastic.co/u/Aniket_Pant)\
**Replies:** 2\
**Last updated:** [May 28, 2024, 12:26pm UTC](https://discuss.elastic.co/t/today-date-data-is-coming-into-previous-index/360312 "2024-05-28T12:26:02Z")

</div>

Hi Community, We have DC-DR(Active Active)ELK cluster running. We have Observed that for 2024-05-25 00:00-23:59 time range in discover if i select \_index i am seeing index-2024-05-27. For Replication from DC to DR we ar…

---

## [Parameter index on type dense\_vector deprecation log](https://discuss.elastic.co/t/parameter-index-on-type-dense-vector-deprecation-log/360116)

<div class="topic-metadata">

**Author:** [@ol\_minhkhau](https://discuss.elastic.co/u/ol_minhkhau)\
**Replies:** 3\
**Last updated:** [May 28, 2024, 12:15pm UTC](https://discuss.elastic.co/t/parameter-index-on-type-dense-vector-deprecation-log/360116 "2024-05-28T12:15:15Z")

</div>

I have a dynamic template with the mapping like this "mapping": { "type": "dense\_vector", "dims": 42, "index": false } And I receive this deprecation log: Parameter \[index\] has no effect on type \[dense\_vector\] and wil…

---

## [The cluster is not working](https://discuss.elastic.co/t/the-cluster-is-not-working/359880)

<div class="topic-metadata">

**Author:** [@ascalonking](https://discuss.elastic.co/u/ascalonking)\
**Replies:** 7\
**Last updated:** [May 28, 2024, 10:32am UTC](https://discuss.elastic.co/t/the-cluster-is-not-working/359880 "2024-05-28T10:32:02Z")

</div>

I can't start the elasticsearch cluster elasticsearch.yml # ======================== Elasticsearch Configuration ========================= # # NOTE: Elasticsearch comes with reasonable defaults for most settings. # …

---

## [Search\_after doesn't consider the parameter](https://discuss.elastic.co/t/search-after-doesnt-consider-the-parameter/360297)

<div class="topic-metadata">

**Author:** [@fatimah](https://discuss.elastic.co/u/fatimah)\
**Replies:** 2\
**Last updated:** [May 28, 2024, 10:07am UTC](https://discuss.elastic.co/t/search-after-doesnt-consider-the-parameter/360297 "2024-05-28T10:07:40Z")

</div>

Hello, this is my first topic ever. When I run this query it returns 10 documents,(10 is the default number) resp = elastic\_config.open\_point\_in\_time(index='my\_index', keep\_alive='1m') pit\_clause = { 'id': …

---

## [Elasticsearch ECK in CrashLoopBackoff after node failure](https://discuss.elastic.co/t/elasticsearch-eck-in-crashloopbackoff-after-node-failure/360281)

<div class="topic-metadata">

**Author:** [@grazingelk](https://discuss.elastic.co/u/grazingelk)\
**Replies:** 5\
**Last updated:** [May 28, 2024, 9:57am UTC](https://discuss.elastic.co/t/elasticsearch-eck-in-crashloopbackoff-after-node-failure/360281 "2024-05-28T09:57:15Z")

</div>

Hi all, We have an ECK cluster v8.13.2 running on Kubernetes v1.29.2. The cluster has dedicated hot and warm data nodes. We have completed the load test and are now at the stage where we want to test recovery from fail…

---

## [Cannot recover kibana indices due to 'Too many open files' error](https://discuss.elastic.co/t/cannot-recover-kibana-indices-due-to-too-many-open-files-error/360365)

<div class="topic-metadata">

**Author:** [@111407](https://discuss.elastic.co/u/111407)\
**Replies:** 0\
**Last updated:** [May 28, 2024, 9:26am UTC](https://discuss.elastic.co/t/cannot-recover-kibana-indices-due-to-too-many-open-files-error/360365 "2024-05-28T09:26:42Z")

</div>

After cluster reboot kibana indices cannot be recovered, I see the following entries in log: \[2024-05-28T05:15:49,289\]\[DEBUG\]\[o.e.g.G.InternalPrimaryShardAllocator\] \[sd-07a1-ae2b.local\] \[\[.kibana\_2/4sWnjATIQ7WDrOTqWYr7f…

---

## [Cannot create runtime fields](https://discuss.elastic.co/t/cannot-create-runtime-fields/360347)

<div class="topic-metadata">

**Author:** [@Ljapunov](https://discuss.elastic.co/u/Ljapunov)\
**Replies:** 0\
**Last updated:** [May 28, 2024, 7:27am UTC](https://discuss.elastic.co/t/cannot-create-runtime-fields/360347 "2024-05-28T07:27:52Z")

</div>

Hi there, I am trying to create runtime fields via Kibana Gui and have no clue what is going on. I started on our test environment where everything is working. But my attempt to create a runtime field in productive envi…

---

## [Problem mapping response to Model class \[Elasticsearch.NET 8.13\]](https://discuss.elastic.co/t/problem-mapping-response-to-model-class-elasticsearch-net-8-13/357896)

<div class="topic-metadata">

**Author:** [@hiilmiee](https://discuss.elastic.co/u/hiilmiee)\
**Replies:** 12\
**Last updated:** [May 28, 2024, 7:11am UTC](https://discuss.elastic.co/t/problem-mapping-response-to-model-class-elasticsearch-net-8-13/357896 "2024-05-28T07:11:36Z")

</div>

Hi, I am unable to map the ElasticsearchClient SearchASync result into my data model. Gotten a conversion error: The server encountered an error processing the request. Please see the \[service help page\] for constructin…

---

## [Can increase Primary Shard Count in Elasticsearch 8.2.3](https://discuss.elastic.co/t/can-increase-primary-shard-count-in-elasticsearch-8-2-3/360331)

<div class="topic-metadata">

**Author:** [@Andy\_Cong](https://discuss.elastic.co/u/Andy_Cong)\
**Replies:** 1\
**Last updated:** [May 28, 2024, 4:17am UTC](https://discuss.elastic.co/t/can-increase-primary-shard-count-in-elasticsearch-8-2-3/360331 "2024-05-28T04:17:45Z")

</div>

Hi，anybody. Question: Can increase Primary Shard Count of an existing index in Elasticsearch 8.2.3? Request：Search and indexing will all can work during the change，and if change fails, it can be rolled back smoothly…

---

## [Elasticsearch Composite Aggregation Orderby in Java Client 8.8.2](https://discuss.elastic.co/t/elasticsearch-composite-aggregation-orderby-in-java-client-8-8-2/360315)

<div class="topic-metadata">

**Author:** [@tcpeiris](https://discuss.elastic.co/u/tcpeiris)\
**Replies:** 2\
**Last updated:** [May 28, 2024, 2:15am UTC](https://discuss.elastic.co/t/elasticsearch-composite-aggregation-orderby-in-java-client-8-8-2/360315 "2024-05-28T02:15:40Z")

</div>

I'm getting a parse exception when I add order to CompositeAggregationSource. List\<Map\<String, CompositeAggregationSource\>\> casList = new ArrayList\<\>(); for (int i = 0; i \< groupBy.size(); i++) { Map\<String, Composit…

---

## [Change type of mapping field without reindex?](https://discuss.elastic.co/t/change-type-of-mapping-field-without-reindex/360299)

<div class="topic-metadata">

**Author:** [@Chenko](https://discuss.elastic.co/u/Chenko)\
**Replies:** 1\
**Last updated:** [May 27, 2024, 11:02pm UTC](https://discuss.elastic.co/t/change-type-of-mapping-field-without-reindex/360299 "2024-05-27T23:02:26Z")

</div>

Hello, I was wondering what the best way to change the index mapping is? Let's say we have an indice that has a field date however this field is of type text. (This field does however have a subfield of .date with type…

---

## [Kubernetes filebeat config map for pod events](https://discuss.elastic.co/t/kubernetes-filebeat-config-map-for-pod-events/360304)

<div class="topic-metadata">

**Author:** [@sahan.d](https://discuss.elastic.co/u/sahan.d)\
**Replies:** 1\
**Last updated:** [May 27, 2024, 5:31pm UTC](https://discuss.elastic.co/t/kubernetes-filebeat-config-map-for-pod-events/360304 "2024-05-27T17:31:27Z")

</div>

We have a pod that restarts randomly and we can't find the reason because Kubernetes only keeps event logs only for a short time. Even if we increase it, the logs will be lost when the pod is deleted. Can someone help m…

---

## [Custom Elasticsearch Analyzer :- Tokenization and Detokenize Text Processing](https://discuss.elastic.co/t/custom-elasticsearch-analyzer-tokenization-and-detokenize-text-processing/360314)

<div class="topic-metadata">

**Author:** [@alliswell](https://discuss.elastic.co/u/alliswell)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 4:50pm UTC](https://discuss.elastic.co/t/custom-elasticsearch-analyzer-tokenization-and-detokenize-text-processing/360314 "2024-05-27T16:50:01Z")

</div>

I am working on building a custom analyzer that needs to implement a unique text processing workflow. Here’s a breakdown of the required steps: Tokenize the input text based on whitespace. Stem each token using an …

---

## [Do we something similar to opensearch's "Normalization processor" in elasticsearch?](https://discuss.elastic.co/t/do-we-something-similar-to-opensearchs-normalization-processor-in-elasticsearch/358933)

<div class="topic-metadata">

**Author:** [@alliswell](https://discuss.elastic.co/u/alliswell)\
**Replies:** 2\
**Last updated:** [May 27, 2024, 4:47pm UTC](https://discuss.elastic.co/t/do-we-something-similar-to-opensearchs-normalization-processor-in-elasticsearch/358933 "2024-05-27T16:47:09Z")

</div>

One of the major pain point with hybrid-search is how to combine BM25 (lexical) score with vector similarity score. BM25 scores are unbounded and their absolute value does not indicate degree of relevance. While on the o…

---

## [Understand tiering in Elastic](https://discuss.elastic.co/t/understand-tiering-in-elastic/360310)

<div class="topic-metadata">

**Author:** [@yquirion](https://discuss.elastic.co/u/yquirion)\
**Replies:** 2\
**Last updated:** [May 27, 2024, 4:28pm UTC](https://discuss.elastic.co/t/understand-tiering-in-elastic/360310 "2024-05-27T16:28:49Z")

</div>

Hello, I started playing with tiering on my Elastic cluster (in development of course). I have 5 nodes; the first 4 are hot\_data anbd the fifth on is cold\_data. This was working fine. Then, today I added a frozen\_dat…

---

## [Multiple logs to a single index](https://discuss.elastic.co/t/multiple-logs-to-a-single-index/358891)

<div class="topic-metadata">

**Author:** [@k13045](https://discuss.elastic.co/u/k13045)\
**Replies:** 1\
**Last updated:** [May 27, 2024, 3:19pm UTC](https://discuss.elastic.co/t/multiple-logs-to-a-single-index/358891 "2024-05-27T15:19:18Z")

</div>

Hello, I have a use case to fetch the log messages from Kafka audit cluster and send it to Elastic. But the log messages each are of different format and if I send the messages to respective index I'm ending up with cre…

---

## [Index not listed on the ELK server](https://discuss.elastic.co/t/index-not-listed-on-the-elk-server/360275)

<div class="topic-metadata">

**Author:** [@Sathish-369](https://discuss.elastic.co/u/Sathish-369)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 10:34am UTC](https://discuss.elastic.co/t/index-not-listed-on-the-elk-server/360275 "2024-05-27T10:34:09Z")

</div>

Filebeat is installed and successfully transferring logs to the ELK server. However, the index is not appearing in the Kibana UI. Despite trying different index names, I'm unable to see the index on the ELK server. Commu…

---

## [Elasticsearch ssl configuration](https://discuss.elastic.co/t/elasticsearch-ssl-configuration/360300)

<div class="topic-metadata">

**Author:** [@ghost\_0](https://discuss.elastic.co/u/ghost_0)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 1:48pm UTC](https://discuss.elastic.co/t/elasticsearch-ssl-configuration/360300 "2024-05-27T13:48:59Z")

</div>

Hi people. I'm trying to setup Elasticsearch inside my environment but I'm hitting wall after wall after wall, and I'm honestly loosing hope. I set up Elastic with Kibana, configured our organizations CA and certificat…

---

## [Reindexing with zero downtime - update document ](https://discuss.elastic.co/t/reindexing-with-zero-downtime-update-document/360186)

<div class="topic-metadata">

**Author:** [@anto-tl](https://discuss.elastic.co/u/anto-tl)\
**Replies:** 6\
**Last updated:** [May 27, 2024, 1:48pm UTC](https://discuss.elastic.co/t/reindexing-with-zero-downtime-update-document/360186 "2024-05-27T13:48:33Z")

</div>

Hello, I am looking for solution to do zero downtime reindexing with all read, write, delete and update without any interruption/data loss. In our case, we are doing data encryption using encryption keys in index data.…

---

## [Fucntionbeat with aws lambda ( run time issue)](https://discuss.elastic.co/t/fucntionbeat-with-aws-lambda-run-time-issue/360273)

<div class="topic-metadata">

**Author:** [@Ashwin\_Anbalagan](https://discuss.elastic.co/u/Ashwin_Anbalagan)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 10:31am UTC](https://discuss.elastic.co/t/fucntionbeat-with-aws-lambda-run-time-issue/360273 "2024-05-27T10:31:03Z")

</div>

Hi i have been using functionbeat fileto create a lambda function, here in runtime using provided.al2023 which is deprecated, so i have given provided.al2 , if i deploy ,same old deprectated provided.al2023 is coming for…

---

## [Jakarta EE10 support](https://discuss.elastic.co/t/jakarta-ee10-support/360057)

<div class="topic-metadata">

**Author:** [@tmonov-jug](https://discuss.elastic.co/u/tmonov-jug)\
**Replies:** 5\
**Last updated:** [May 27, 2024, 10:01am UTC](https://discuss.elastic.co/t/jakarta-ee10-support/360057 "2024-05-27T10:01:19Z")

</div>

Do you have any plans to support Jakarta EE10 for elasticsearch-java? The latest artifact in Maven with GAV 'co.elastic.clients:elasticsearch-java:8.13.4' shows that has dependency to 'javax.annotation' but jakarta-pla…

---

## [Retraining in Elastic Machine learning Jobs](https://discuss.elastic.co/t/retraining-in-elastic-machine-learning-jobs/359589)

<div class="topic-metadata">

**Author:** [@Akhil\_Sharma](https://discuss.elastic.co/u/Akhil_Sharma)\
**Replies:** 2\
**Last updated:** [May 27, 2024, 9:00am UTC](https://discuss.elastic.co/t/retraining-in-elastic-machine-learning-jobs/359589 "2024-05-27T09:00:28Z")

</div>

Hi all, I was wondering how we can set up retraining time-period for Elastic Machine Learning Job? Suppose, I want to train my model in 10 days data and want to retrain my model every after every 11 days taking 10 days…

---

## [Logs about each transaction](https://discuss.elastic.co/t/logs-about-each-transaction/360268)

<div class="topic-metadata">

**Author:** [@jeannshuti](https://discuss.elastic.co/u/jeannshuti)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 8:52am UTC](https://discuss.elastic.co/t/logs-about-each-transaction/360268 "2024-05-27T08:52:41Z")

</div>

Hello everyone. Is there a way to get logs about each or important transactions made in Elasticsearch? Things like the files indexed, deleted, on which index, etc? The index already has documents. Also, if not possible, …

---

## [Can't join cluster after changing node role](https://discuss.elastic.co/t/cant-join-cluster-after-changing-node-role/360263)

<div class="topic-metadata">

**Author:** [@avnere](https://discuss.elastic.co/u/avnere)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 8:04am UTC](https://discuss.elastic.co/t/cant-join-cluster-after-changing-node-role/360263 "2024-05-27T08:04:27Z")

</div>

Hi, I had cluster with 1 master + 2 data hot + 1 data content. After changing node role of data hot node to data\_hot, data\_content and performing restart, the node is not joining the cluster due: master not discovere…

---

## [Elasticsearch(version7)とElasticsearch-PHPクライアント(version8)間の通信について](https://discuss.elastic.co/t/elasticsearch-version7-elasticsearch-php-version8/360261)

<div class="topic-metadata">

**Author:** [@Totsuka](https://discuss.elastic.co/u/Totsuka)\
**Replies:** 0\
**Last updated:** [May 27, 2024, 7:38am UTC](https://discuss.elastic.co/t/elasticsearch-version7-elasticsearch-php-version8/360261 "2024-05-27T07:38:04Z")

</div>

お世話になっております。 Elasticsearch(version7)とElasticsearch-PHPクライアント(version8)間の通信についてご質問いたします。 ＜状況＞ ・Elasticsearch：バージョン7.17.9 ・Elasticsearch-PHPクライアント：バージョン8.0.0 ・Elasticsearchがインストールされているサーバと、Elasticsearch-PHPクライアントによる通信…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=106)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=108)
