# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=175

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 176

---

## [Elasticapm.properties didn't read in java springboot](https://discuss.elastic.co/t/elasticapm-properties-didnt-read-in-java-springboot/347824)

<div class="topic-metadata">

**Author:** [@kasunpurnima](https://discuss.elastic.co/u/kasunpurnima)\
**Replies:** 0\
**Last updated:** [November 23, 2023, 7:17am UTC](https://discuss.elastic.co/t/elasticapm-properties-didnt-read-in-java-springboot/347824 "2023-11-23T07:17:46Z")

</div>

Hi, Im using below services, java 8 elasticsearch-8.2.3 kibana-8.2.3 apm-server-8.2.3 elastic-apm-agent-1.44.jar When im using elasticapm.properties below details its not take it and not going hit APM service\_name…

---

## [Elasticsearch Cluster Down automatically](https://discuss.elastic.co/t/elasticsearch-cluster-down-automatically/347808)

<div class="topic-metadata">

**Author:** [@VijayIQA](https://discuss.elastic.co/u/VijayIQA)\
**Replies:** 0\
**Last updated:** [November 23, 2023, 3:49am UTC](https://discuss.elastic.co/t/elasticsearch-cluster-down-automatically/347808 "2023-11-23T03:49:13Z")

</div>

Hi Team, I deployed Elasticsearch Cluster on docker with 2 nodes (two containers). everything working well. but due to some technical issues sometimes need to restart the containers at that time master node up and runnin…

---

## [ElasticsearchTemplate/client 8.7.1 with springboot 3.x Aggregation](https://discuss.elastic.co/t/elasticsearchtemplate-client-8-7-1-with-springboot-3-x-aggregation/347740)

<div class="topic-metadata">

**Author:** [@Priyank07](https://discuss.elastic.co/u/Priyank07)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 1:33pm UTC](https://discuss.elastic.co/t/elasticsearchtemplate-client-8-7-1-with-springboot-3-x-aggregation/347740 "2023-11-22T13:33:02Z")

</div>

Hi, I want to query elasticsearch document with aggregation. My use case : I want to sum the amount based on term aggregation on a particular field. I am able to do it with elasticsearch 7.17.3. Now I have to update i…

---

## [org.elasticsearch.hadoop.rest.EsHadoopRemoteException: illegal\_argument\_exception: value for key \[X-Opaque-Id\] already present](https://discuss.elastic.co/t/org-elasticsearch-hadoop-rest-eshadoopremoteexception-illegal-argument-exception-value-for-key-x-opaque-id-already-present/347380)

<div class="topic-metadata">

**Author:** [@Akhil\_parmar](https://discuss.elastic.co/u/Akhil_parmar)\
**Replies:** 2\
**Last updated:** [November 23, 2023, 3:18am UTC](https://discuss.elastic.co/t/org-elasticsearch-hadoop-rest-eshadoopremoteexception-illegal-argument-exception-value-for-key-x-opaque-id-already-present/347380 "2023-11-23T03:18:13Z")

</div>

I am working on ETL job where target to load data to elasticsearch, I am facing an error when trying to index document org.elasticsearch.hadoop.rest.EsHadoopRemoteException: illegal\_argument\_exception: value for key \[X-…

---

## [L2norm script in source compiles error because Cannot cast from \[double\] to \[int\]](https://discuss.elastic.co/t/l2norm-script-in-source-compiles-error-because-cannot-cast-from-double-to-int/347799)

<div class="topic-metadata">

**Author:** [@wensi](https://discuss.elastic.co/u/wensi)\
**Replies:** 0\
**Last updated:** [November 23, 2023, 1:38am UTC](https://discuss.elastic.co/t/l2norm-script-in-source-compiles-error-because-cannot-cast-from-double-to-int/347799 "2023-11-23T01:38:56Z")

</div>

"source": "double norm=l2norm(params.queryVector, 'vec')^2; return 1/(1+norm);" or "source": "1/(1+l2norm(params.queryVector, 'vec')^2)" or "source": "1.0/(1.0+l2norm(params.queryVector, 'vec')^2)" all result in "c…

---

## [ALB health check failure while checking Elasticsearch cluster health](https://discuss.elastic.co/t/alb-health-check-failure-while-checking-elasticsearch-cluster-health/347018)

<div class="topic-metadata">

**Author:** [@siddharthavempa](https://discuss.elastic.co/u/siddharthavempa)\
**Replies:** 0\
**Last updated:** [November 13, 2023, 1:33pm UTC](https://discuss.elastic.co/t/alb-health-check-failure-while-checking-elasticsearch-cluster-health/347018 "2023-11-13T13:33:35Z")

</div>

Hi Team, I am creating a two node Elasticsearch cluster in AWS using EC2 instances. I installed Elasticsearch in node-1 using rpm. Then I used the below commands to modify the elasticsearch.yaml file and started elasti…

---

## [Display partially structured data into multiple columns in Kibana Discover](https://discuss.elastic.co/t/display-partially-structured-data-into-multiple-columns-in-kibana-discover/347254)

<div class="topic-metadata">

**Author:** [@Selma](https://discuss.elastic.co/u/Selma)\
**Replies:** 1\
**Last updated:** [November 22, 2023, 10:11pm UTC](https://discuss.elastic.co/t/display-partially-structured-data-into-multiple-columns-in-kibana-discover/347254 "2023-11-22T22:11:25Z")

</div>

I am trying to get the data as separate columns based on the fields serviceName, flowName, correlationId and timestamp from below log field. can this be achieved through scripts in Kibana UI itself ? If not is there an a…

---

## [Changing Index Mapping & Making Long Texts Keyword For Elasticsearch](https://discuss.elastic.co/t/changing-index-mapping-making-long-texts-keyword-for-elasticsearch/347709)

<div class="topic-metadata">

**Author:** [@Ethan777100](https://discuss.elastic.co/u/Ethan777100)\
**Replies:** 3\
**Last updated:** [November 22, 2023, 6:35pm UTC](https://discuss.elastic.co/t/changing-index-mapping-making-long-texts-keyword-for-elasticsearch/347709 "2023-11-22T18:35:03Z")

</div>

Moving forward, should I find a need to change my index mapping after the data is ingested, I have this description column which I realised was ingested as Text and not a keyword. PUT /ats-mainline-logs-2023-01,ats-mai…

---

## [Docker Secrets with Compose](https://discuss.elastic.co/t/docker-secrets-with-compose/347758)

<div class="topic-metadata">

**Author:** [@bremoi](https://discuss.elastic.co/u/bremoi)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 3:07pm UTC](https://discuss.elastic.co/t/docker-secrets-with-compose/347758 "2023-11-22T15:07:24Z")

</div>

Hi, I'm trying to use Docker Secrets using the official Docker Compose file. I'm able to use secrets with Elasticsearch through the "ELASTIC\_PASSWORD\_FILE" variable, but I didn't find the equivalent for "ELASTICSEARCH\_…

---

## [Unable to setup the elastic cluster](https://discuss.elastic.co/t/unable-to-setup-the-elastic-cluster/347730)

<div class="topic-metadata">

**Author:** [@Balajivsn](https://discuss.elastic.co/u/Balajivsn)\
**Replies:** 3\
**Last updated:** [November 22, 2023, 1:36pm UTC](https://discuss.elastic.co/t/unable-to-setup-the-elastic-cluster/347730 "2023-11-22T13:36:17Z")

</div>

Team, i was trying to setup a elasticsearch cluster using vm's on local machine i was able to setup the configuration and started the service but i couldn't able to form the cluster as it shows #curl localhost:9200/\_…

---

## [ElasticsearchClient Java Circuit Breaker errors and retries](https://discuss.elastic.co/t/elasticsearchclient-java-circuit-breaker-errors-and-retries/347736)

<div class="topic-metadata">

**Author:** [@ewolfman](https://discuss.elastic.co/u/ewolfman)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 1:19pm UTC](https://discuss.elastic.co/t/elasticsearchclient-java-circuit-breaker-errors-and-retries/347736 "2023-11-22T13:19:14Z")

</div>

Hi, Using ElasticsearchClient (co.elastic, not RHLC), I have a bulkrequest inserting data. When it fails due to circuit breaker exceptions, I would like to implement some kind of retry. Currently I simply iterate over …

---

## [Max\_result\_window of all the results saved](https://discuss.elastic.co/t/max-result-window-of-all-the-results-saved/347734)

<div class="topic-metadata">

**Author:** [@bhumika](https://discuss.elastic.co/u/bhumika)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 12:59pm UTC](https://discuss.elastic.co/t/max-result-window-of-all-the-results-saved/347734 "2023-11-22T12:59:29Z")

</div>

{"level":"DEBUG","time":"2023-11-22 12:53:27 +0000","message":" \\u001b\[1m\\u001b\[32mUsersIndex Search (106.5ms)\\u001b\[0m {:index=\>\["users"\], :body=\>{:size=\>20000, :query=\>{:bool=\>{:must=\>}}}}"} Elasticsearch::Transport:…

---

## [Elasticsearch painless script l2norm are different from l2\_norm knnSearch](https://discuss.elastic.co/t/elasticsearch-painless-script-l2norm-are-different-from-l2-norm-knnsearch/347718)

<div class="topic-metadata">

**Author:** [@wensi](https://discuss.elastic.co/u/wensi)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 10:42am UTC](https://discuss.elastic.co/t/elasticsearch-painless-script-l2norm-are-different-from-l2-norm-knnsearch/347718 "2023-11-22T10:42:49Z")

</div>

I would like to test l2norm by this: POST /\_scripts/painless/\_execute { "script": { "source": "l2norm(params.v1, params.v2)", "params": { "v1": \[1.0, 1.0\], "v2": \[1.0, 1.0\] } } } However, it…

---

## [Does \_delete\_by\_query close the scroll context once it has completed or leave it to expire](https://discuss.elastic.co/t/does-delete-by-query-close-the-scroll-context-once-it-has-completed-or-leave-it-to-expire/347713)

<div class="topic-metadata">

**Author:** [@willbo](https://discuss.elastic.co/u/willbo)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 9:45am UTC](https://discuss.elastic.co/t/does-delete-by-query-close-the-scroll-context-once-it-has-completed-or-leave-it-to-expire/347713 "2023-11-22T09:45:08Z")

</div>

We have a spark application that needs to use \_delete\_by\_query to do some cleanup after it's finished indexing during a spark task. We're finding that this is causing us to hit the scroll context limit. Our delete reques…

---

## [Data streams and Analyzers](https://discuss.elastic.co/t/data-streams-and-analyzers/347697)

<div class="topic-metadata">

**Author:** [@Mertozturkk](https://discuss.elastic.co/u/Mertozturkk)\
**Replies:** 2\
**Last updated:** [November 22, 2023, 8:06am UTC](https://discuss.elastic.co/t/data-streams-and-analyzers/347697 "2023-11-22T08:06:12Z")

</div>

When we create an index, we can add a custom analyzer to text fields. Can we do the same in a datastream?

---

## [Nodes can't find each other in a single server setup](https://discuss.elastic.co/t/nodes-cant-find-each-other-in-a-single-server-setup/347601)

<div class="topic-metadata">

**Author:** [@said1296](https://discuss.elastic.co/u/said1296)\
**Replies:** 10\
**Last updated:** [November 22, 2023, 6:45am UTC](https://discuss.elastic.co/t/nodes-cant-find-each-other-in-a-single-server-setup/347601 "2023-11-22T06:45:23Z")

</div>

Hi, I've been trying all day to run a 2-node cluster on a single server for testing purposes using Docker. But I keep getting: "log.level": "WARN", "message":"master not discovered yet: have discovered \[{node-2}{k8wUeU…

---

## [How we can use Search Query in Elastic.Clients.Elasticsearch](https://discuss.elastic.co/t/how-we-can-use-search-query-in-elastic-clients-elasticsearch/347691)

<div class="topic-metadata">

**Author:** [@Jahanzaib](https://discuss.elastic.co/u/Jahanzaib)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 5:02am UTC](https://discuss.elastic.co/t/how-we-can-use-search-query-in-elastic-clients-elasticsearch/347691 "2023-11-22T05:02:43Z")

</div>

'''var response = await \_client.SearchAsync(s =\> s .Index("indici\_timeline\_death\_patient\_vector\_ml") .From(0) .Size(10) .Query(q =\> q .Bool(b =\> b .Must(m =\> m .Term(mu =\> mu.Field(f =\> f.patientid).Value(formData…

---

## [Elasticsearch session management](https://discuss.elastic.co/t/elasticsearch-session-management/347631)

<div class="topic-metadata">

**Author:** [@VijayIQA](https://discuss.elastic.co/u/VijayIQA)\
**Replies:** 1\
**Last updated:** [November 22, 2023, 4:18am UTC](https://discuss.elastic.co/t/elasticsearch-session-management/347631 "2023-11-22T04:18:00Z")

</div>

Hi Team, I have Elasticsearch cluster with two nodes one as master one as data node. I am using this as database cluster and integrating to application. in this case i want to manage the session idle and active timeout.…

---

## [Quarkus Connect to Elastic failed,https protocol is not supported.Connect is closed](https://discuss.elastic.co/t/quarkus-connect-to-elastic-failed-https-protocol-is-not-supported-connect-is-closed/347686)

<div class="topic-metadata">

**Author:** [@duoplay91095](https://discuss.elastic.co/u/duoplay91095)\
**Replies:** 0\
**Last updated:** [November 22, 2023, 3:43am UTC](https://discuss.elastic.co/t/quarkus-connect-to-elastic-failed-https-protocol-is-not-supported-connect-is-closed/347686 "2023-11-22T03:43:23Z")

</div>

I want to connect company's elasticsearch. Version elasticsearch : 8.5.3 quarkus : 3.5.1 maven : 3.9.5 JAVA : 17.0.9 I clone from quarkus-quickstarts Here is my code // forTestSllPassword private String keySto…

---

## [Add Es Spark Accumulators](https://discuss.elastic.co/t/add-es-spark-accumulators/347127)

<div class="topic-metadata">

**Author:** [@glegoux](https://discuss.elastic.co/u/glegoux)\
**Replies:** 2\
**Last updated:** [November 21, 2023, 9:30pm UTC](https://discuss.elastic.co/t/add-es-spark-accumulators/347127 "2023-11-21T21:30:41Z")

</div>

Hello :wave:, I did a pull request. These metrics will be very useful to monitor a Spark application using the extension Elasticsearch for Hadoop. What do you think about it?

---

## [Mapping issue](https://discuss.elastic.co/t/mapping-issue/347532)

<div class="topic-metadata">

**Author:** [@VirusProtect](https://discuss.elastic.co/u/VirusProtect)\
**Replies:** 1\
**Last updated:** [November 21, 2023, 5:37pm UTC](https://discuss.elastic.co/t/mapping-issue/347532 "2023-11-21T17:37:33Z")

</div>

Hi, I'm working with fields changes.to and changes.from in Elasticsearch. These fields sometimes hold simple strings, and other times, they are objects with various values like address, name, etc. I'm facing an error: "…

---

## [Elasticsearch Audit Logs decipher](https://discuss.elastic.co/t/elasticsearch-audit-logs-decipher/347652)

<div class="topic-metadata">

**Author:** [@Brian-cf1](https://discuss.elastic.co/u/Brian-cf1)\
**Replies:** 2\
**Last updated:** [November 21, 2023, 4:33pm UTC](https://discuss.elastic.co/t/elasticsearch-audit-logs-decipher/347652 "2023-11-21T16:33:52Z")

</div>

I am looking at the Elasticsearch Audit logs and i am getting an authentication denied for User Elastic, why would our servers be authenticating against our Elasticsearch nodes when we are getting logs from the beats and…

---

## [Accessing fields in last\_doc scripted metric aggregation in a transform](https://discuss.elastic.co/t/accessing-fields-in-last-doc-scripted-metric-aggregation-in-a-transform/345403)

<div class="topic-metadata">

**Author:** [@Mark\_Duncan](https://discuss.elastic.co/u/Mark_Duncan)\
**Replies:** 5\
**Last updated:** [November 21, 2023, 4:12pm UTC](https://discuss.elastic.co/t/accessing-fields-in-last-doc-scripted-metric-aggregation-in-a-transform/345403 "2023-11-21T16:12:13Z")

</div>

If I have implemented this last\_doc scripted metric aggregation in a transform example, how could I access fields within the returned doc (let's imagine there is a field "price" in the last\_doc), in bucket script metric …

---

## [TLS error caused by: SSLError(hostname 'my\_ip' doesn't match either of 'FE80:0:0:0:E062:44FF:FEA0:4B20', 'platform',](https://discuss.elastic.co/t/tls-error-caused-by-sslerror-hostname-my-ip-doesnt-match-either-of-fe800e062fea0-4b20-platform/347648)

<div class="topic-metadata">

**Author:** [@shuaiqi\_duan](https://discuss.elastic.co/u/shuaiqi_duan)\
**Replies:** 0\
**Last updated:** [November 21, 2023, 2:49pm UTC](https://discuss.elastic.co/t/tls-error-caused-by-sslerror-hostname-my-ip-doesnt-match-either-of-fe800e062fea0-4b20-platform/347648 "2023-11-21T14:49:08Z")

</div>

I'm new to Elasticsearch. I followed the official documentation to install and start a single-node Elasticsearch service. The service automatically enabled security features and generated a CA certificate for me, which i…

---

## [How we can use Must Clause(for searching data) in Elastic.Clients.Elasticsearch library](https://discuss.elastic.co/t/how-we-can-use-must-clause-for-searching-data-in-elastic-clients-elasticsearch-library/347636)

<div class="topic-metadata">

**Author:** [@Jahanzaib](https://discuss.elastic.co/u/Jahanzaib)\
**Replies:** 0\
**Last updated:** [November 21, 2023, 12:59pm UTC](https://discuss.elastic.co/t/how-we-can-use-must-clause-for-searching-data-in-elastic-clients-elasticsearch-library/347636 "2023-11-21T12:59:13Z")

</div>

Hi Everyone, I am new here and i do not know to ask a question. I am using Elastic.Clients.Elasticsearch library not Nest. i have issue so i want to discuss with you. In this snipped i made three queries and they are…

---

## [Why it is showing java error in elastic log](https://discuss.elastic.co/t/why-it-is-showing-java-error-in-elastic-log/347622)

<div class="topic-metadata">

**Author:** [@baber1223](https://discuss.elastic.co/u/baber1223)\
**Replies:** 0\
**Last updated:** [November 21, 2023, 10:44am UTC](https://discuss.elastic.co/t/why-it-is-showing-java-error-in-elastic-log/347622 "2023-11-21T10:44:42Z")

</div>

It is showing follow in my elasticsearch log : at org.elasticsearch.ingest.geoip.GeoIpDownloader.updateDatabases(GeoIpDownloader.java:140) ~\[?:?\] at org.elasticsearch.ingest.geoip.GeoIpDownloader.runDownloader(G…

---

## [How to copy the data from an index of 150 GB size to another](https://discuss.elastic.co/t/how-to-copy-the-data-from-an-index-of-150-gb-size-to-another/347574)

<div class="topic-metadata">

**Author:** [@Mohan91](https://discuss.elastic.co/u/Mohan91)\
**Replies:** 1\
**Last updated:** [November 21, 2023, 10:15am UTC](https://discuss.elastic.co/t/how-to-copy-the-data-from-an-index-of-150-gb-size-to-another/347574 "2023-11-21T10:15:15Z")

</div>

I have an index "Index A" of size 150+ GB, there are few fields which needs to be converted to NESTED and for few fields the type to be changed from "keyword" to "text" and vice versa. I have created a new index "Index …

---

## [Build IndexSettings from two IndexSettings](https://discuss.elastic.co/t/build-indexsettings-from-two-indexsettings/347611)

<div class="topic-metadata">

**Author:** [@Ben5](https://discuss.elastic.co/u/Ben5)\
**Replies:** 0\
**Last updated:** [November 21, 2023, 9:45am UTC](https://discuss.elastic.co/t/build-indexsettings-from-two-indexsettings/347611 "2023-11-21T09:45:15Z")

</div>

Hi, Using Java Transport Client, I was able to build index Settings from two Settings like that: Settings.builder().put(SETTINGS\_1).put(SETTINGS\_2).build() How can I do the same with Elasticsearch Client and IndexSett…

---

## [Disabling GeoIP processor](https://discuss.elastic.co/t/disabling-geoip-processor/347581)

<div class="topic-metadata">

**Author:** [@hjazz6](https://discuss.elastic.co/u/hjazz6)\
**Replies:** 0\
**Last updated:** [November 21, 2023, 6:24am UTC](https://discuss.elastic.co/t/disabling-geoip-processor/347581 "2023-11-21T06:24:11Z")

</div>

Hi, I have currently set "ingest.geoip.downloader.enabled" : "false" in my elasticsearch.yml file as I am using offline databases. I'm using ES v8.8.0, and filebeat to ingest data into ES. I want to do some testing, wh…

---

## [Hashtag searches and Japanese full text search](https://discuss.elastic.co/t/hashtag-searches-and-japanese-full-text-search/347324)

<div class="topic-metadata">

**Author:** [@hari-ram-s](https://discuss.elastic.co/u/hari-ram-s)\
**Replies:** 1\
**Last updated:** [November 21, 2023, 6:11am UTC](https://discuss.elastic.co/t/hashtag-searches-and-japanese-full-text-search/347324 "2023-11-21T06:11:59Z")

</div>

We are trying to incorporate hashtag searches and Japanese full text searches in our data. We were able to achieve them separately but when we try to combine the two configs together, it doesn't work as expected. I foun…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=174)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=176)
