# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=190

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 191

---

## [Using AWS Secrets Manager for Credentials](https://discuss.elastic.co/t/using-aws-secrets-manager-for-credentials/344852)

<div class="topic-metadata">

**Author:** [@digital-thought](https://discuss.elastic.co/u/digital-thought)\
**Replies:** 0\
**Last updated:** [October 12, 2023, 12:42am UTC](https://discuss.elastic.co/t/using-aws-secrets-manager-for-credentials/344852 "2023-10-12T00:42:34Z")

</div>

We have setup a cluster within AWS (self-managed). We have Kibana within the same environment and have the metric/filebeats installed on all nodes to monitor the cluster. Within the various YAML files for Kibana, Metri…

---

## [ELK Elasticsearch - bind\_dn - secure\_bind\_password: LDAP - Kibana anldapuser:password not working](https://discuss.elastic.co/t/elk-elasticsearch-bind-dn-secure-bind-password-ldap-kibana-anldapuser-password-not-working/344850)

<div class="topic-metadata">

**Author:** [@ska](https://discuss.elastic.co/u/ska)\
**Replies:** 0\
**Last updated:** [October 11, 2023, 10:25pm UTC](https://discuss.elastic.co/t/elk-elasticsearch-bind-dn-secure-bind-password-ldap-kibana-anldapuser-password-not-working/344850 "2023-10-11T22:25:06Z")

</div>

ELK version: 7.17.10 Deployed elasticsearch and Kibana in K8s cluster. Both ES and Kibana are up. Charts ---------- NAME NAMESPACE REVISION UPDATED STATUS CHART …

---

## [Unable to install 'eland\[pytorch\]' on Windows](https://discuss.elastic.co/t/unable-to-install-eland-pytorch-on-windows/343315)

<div class="topic-metadata">

**Author:** [@xynobob](https://discuss.elastic.co/u/xynobob)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 7:09pm UTC](https://discuss.elastic.co/t/unable-to-install-eland-pytorch-on-windows/343315 "2023-10-11T19:09:31Z")

</div>

I would like to import custom ML models to Elasticsearch, thus am using Eland to do it. However, to import custom ML models, I am to use eland\_import\_hub\_model command which requires me to install pytorch using python -m…

---

## [How can I get the document meta data after saving a document in elasticsearch?](https://discuss.elastic.co/t/how-can-i-get-the-document-meta-data-after-saving-a-document-in-elasticsearch/344668)

<div class="topic-metadata">

**Author:** [@Mertozturkk](https://discuss.elastic.co/u/Mertozturkk)\
**Replies:** 5\
**Last updated:** [October 11, 2023, 6:09pm UTC](https://discuss.elastic.co/t/how-can-i-get-the-document-meta-data-after-saving-a-document-in-elasticsearch/344668 "2023-10-11T18:09:34Z")

</div>

I am saving documents to an index in Elasticsearch using the bulk API in a Python project. However, what I need is how can I return the created id of the document after this process? success, failed = bulk(client, actio…

---

## [Optimal major and minor page faults](https://discuss.elastic.co/t/optimal-major-and-minor-page-faults/344838)

<div class="topic-metadata">

**Author:** [@xrkr](https://discuss.elastic.co/u/xrkr)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 6:00pm UTC](https://discuss.elastic.co/t/optimal-major-and-minor-page-faults/344838 "2023-10-11T18:00:52Z")

</div>

Hello All, I have a 12 node cluster with 64GB RAM and 31GB heap memory. Often late i am having issues with Elasticsearch performance, i happen to observe that there are major and minor page faults as below. ps -ef | g…

---

## [Error on fleet-server install](https://discuss.elastic.co/t/error-on-fleet-server-install/344346)

<div class="topic-metadata">

**Author:** [@gustavoluza](https://discuss.elastic.co/u/gustavoluza)\
**Replies:** 13\
**Last updated:** [October 11, 2023, 5:54pm UTC](https://discuss.elastic.co/t/error-on-fleet-server-install/344346 "2023-10-11T17:54:34Z")

</div>

hi there, I'm trying to install fleet-server on a VM with CentOS 7. In this same VM I already have elasticsearch (8.9.0), logstash and kibana (version 8.6.1) installed. To install I am using the commands below (advanc…

---

## [Connection pooling using Python Client 8.10](https://discuss.elastic.co/t/connection-pooling-using-python-client-8-10/344763)

<div class="topic-metadata">

**Author:** [@hs121](https://discuss.elastic.co/u/hs121)\
**Replies:** 2\
**Last updated:** [October 11, 2023, 5:52pm UTC](https://discuss.elastic.co/t/connection-pooling-using-python-client-8-10/344763 "2023-10-11T17:52:09Z")

</div>

Hi all, I am trying to understand the correct way of doing "Connection Pooling" using Python Client 8.10 API. In the old 7.x docs, I found a little bit of information around this but that doesn't seem to exist in 8.x (…

---

## [Error loading model to ElasticSearch](https://discuss.elastic.co/t/error-loading-model-to-elasticsearch/344818)

<div class="topic-metadata">

**Author:** [@RodAndTom](https://discuss.elastic.co/u/RodAndTom)\
**Replies:** 3\
**Last updated:** [October 11, 2023, 4:10pm UTC](https://discuss.elastic.co/t/error-loading-model-to-elasticsearch/344818 "2023-10-11T16:10:39Z")

</div>

Hi, I previously successfully uploaded a NER model from Huggingface to Elasticsearch (8.10) with Eland. Now I'm trying to load a Text Classification and I'm getting an error: docker run -it --rm --network host docke…

---

## [Elasticsearch Shard Failure](https://discuss.elastic.co/t/elasticsearch-shard-failure/344774)

<div class="topic-metadata">

**Author:** [@sai\_ravi\_shankar](https://discuss.elastic.co/u/sai_ravi_shankar)\
**Replies:** 3\
**Last updated:** [October 11, 2023, 3:58pm UTC](https://discuss.elastic.co/t/elasticsearch-shard-failure/344774 "2023-10-11T15:58:02Z")

</div>

Hi I'm using a single-node elasticsearch server. I have 400+ indices with 100GB+ data in cluster and shard count of each index is 5. When i'm trying to check the data for an index in discover page in kibana. I got the …

---

## [Field type of message](https://discuss.elastic.co/t/field-type-of-message/344789)

<div class="topic-metadata">

**Author:** [@anon90868141](https://discuss.elastic.co/u/anon90868141)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 3:20pm UTC](https://discuss.elastic.co/t/field-type-of-message/344789 "2023-10-11T15:20:06Z")

</div>

Hello, we're using the Elastic Stack to store server logs. Currently, the field message is mapped as text field. Today, I tried to search for "oom-kill", but I couldn't get a search to work that matched exacly that. It …

---

## [Reindexing failure - "all shards failed" - "arraycopy: length -9 is negative"](https://discuss.elastic.co/t/reindexing-failure-all-shards-failed-arraycopy-length-9-is-negative/344401)

<div class="topic-metadata">

**Author:** [@tpolera](https://discuss.elastic.co/u/tpolera)\
**Replies:** 3\
**Last updated:** [October 11, 2023, 2:11pm UTC](https://discuss.elastic.co/t/reindexing-failure-all-shards-failed-arraycopy-length-9-is-negative/344401 "2023-10-11T14:11:41Z")

</div>

Hello, we're having a recent issue with reindexing that is failing after a short period of time. We recently discovered a mistake with our original index that only had 1 shard set upon creation when we should've had 20. …

---

## [How to take profit of compression for a Time Serie Data Stream](https://discuss.elastic.co/t/how-to-take-profit-of-compression-for-a-time-serie-data-stream/344811)

<div class="topic-metadata">

**Author:** [@Mubolio](https://discuss.elastic.co/u/Mubolio)\
**Replies:** 4\
**Last updated:** [October 11, 2023, 1:05pm UTC](https://discuss.elastic.co/t/how-to-take-profit-of-compression-for-a-time-serie-data-stream/344811 "2023-10-11T13:05:26Z")

</div>

Hello, Every hour I generate a bulk request with several documents into a data stream, each update sets a @timestamp field for all the bulk of documents. (the idea is to keep track of a source of data in time). The pro…

---

## [Runtime Fields disappearing after ILM Rollover](https://discuss.elastic.co/t/runtime-fields-disappearing-after-ilm-rollover/344815)

<div class="topic-metadata">

**Author:** [@bigdaddy0918](https://discuss.elastic.co/u/bigdaddy0918)\
**Replies:** 0\
**Last updated:** [October 11, 2023, 12:06pm UTC](https://discuss.elastic.co/t/runtime-fields-disappearing-after-ilm-rollover/344815 "2023-10-11T12:06:56Z")

</div>

I added a runtime field to multiple indices using the following script: PUT my-index-000309/\_mapping {"runtime":{"agent.host\_prod\_flag":{"type":"keyword","script":{"source":"if (doc\['agent.hostname.keyword'\].size () != …

---

## [Fleet metrics data seems incorrect](https://discuss.elastic.co/t/fleet-metrics-data-seems-incorrect/342936)

<div class="topic-metadata">

**Author:** [@Atul\_Chadha](https://discuss.elastic.co/u/Atul_Chadha)\
**Replies:** 4\
**Last updated:** [October 11, 2023, 9:22am UTC](https://discuss.elastic.co/t/fleet-metrics-data-seems-incorrect/342936 "2023-10-11T09:22:48Z")

</div>

Could someone explain what metrics are being used on the fleet page It seems like the CPU and memory metrics are not matching the one on the server, for the first one for example it says 130 MB however the server its…

---

## [A slow query problem in elasticsearch (aggregation)](https://discuss.elastic.co/t/a-slow-query-problem-in-elasticsearch-aggregation/344793)

<div class="topic-metadata">

**Author:** [@haipeng.zhao](https://discuss.elastic.co/u/haipeng.zhao)\
**Replies:** 0\
**Last updated:** [October 11, 2023, 7:59am UTC](https://discuss.elastic.co/t/a-slow-query-problem-in-elasticsearch-aggregation/344793 "2023-10-11T07:59:48Z")

</div>

Please help me optimize this query. The index is 800mb and the query time is about to exceed 1 second. { "from": 0, "size": 300, "explain": "true", "\_source": \[ "sku\_id", "upc", "…

---

## [Impact of CVE-2023-4863, CVE-2023-5129, & CVE-2023-5217 to Elasticsearch v7.17.10](https://discuss.elastic.co/t/impact-of-cve-2023-4863-cve-2023-5129-cve-2023-5217-to-elasticsearch-v7-17-10/344790)

<div class="topic-metadata">

**Author:** [@Ravi\_Rao](https://discuss.elastic.co/u/Ravi_Rao)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 7:58am UTC](https://discuss.elastic.co/t/impact-of-cve-2023-4863-cve-2023-5129-cve-2023-5217-to-elasticsearch-v7-17-10/344790 "2023-10-11T07:58:32Z")

</div>

This is regarding CVE-2023-4863 , CVE-2023-5129 , CVE-2023-5217 new vulnerabilities identified and seeking confirmation on Elastic search v7.17.x is impacted with these new vulnerabilities or not ? Any updates availa…

---

## [Kibana console 's message section show messy code only for elasticsearch server's messages, but ok for other servers forwarding messages by filebeat](https://discuss.elastic.co/t/kibana-console-s-message-section-show-messy-code-only-for-elasticsearch-servers-messages-but-ok-for-other-servers-forwarding-messages-by-filebeat/344775)

<div class="topic-metadata">

**Author:** [@huanghaiqing1](https://discuss.elastic.co/u/huanghaiqing1)\
**Replies:** 0\
**Last updated:** [October 11, 2023, 3:06am UTC](https://discuss.elastic.co/t/kibana-console-s-message-section-show-messy-code-only-for-elasticsearch-servers-messages-but-ok-for-other-servers-forwarding-messages-by-filebeat/344775 "2023-10-11T03:06:04Z")

</div>

Here I setup kibana/elasticsearch/filebeat in one server: autoyast1, and it also plays as syslog server by store all forwarding messages from managed servers. Today I found ONLY the server itself's message shows as messy…

---

## [ElasticSearch custom index and mapping | local json data visualization issue](https://discuss.elastic.co/t/elasticsearch-custom-index-and-mapping-local-json-data-visualization-issue/344571)

<div class="topic-metadata">

**Author:** [@Srini-99](https://discuss.elastic.co/u/Srini-99)\
**Replies:** 11\
**Last updated:** [October 11, 2023, 2:34am UTC](https://discuss.elastic.co/t/elasticsearch-custom-index-and-mapping-local-json-data-visualization-issue/344571 "2023-10-11T02:34:42Z")

</div>

Hi! I have setup elasticsearch, kibana, filebeat. With the other beats, i am able to collect logs and visualize them. But i want to be able to upload logs that are in json format and visualize them. The logs that i wa…

---

## [How to highlight the matching subtext in elasticsearch](https://discuss.elastic.co/t/how-to-highlight-the-matching-subtext-in-elasticsearch/344754)

<div class="topic-metadata">

**Author:** [@Karthikeyan\_Amaresan](https://discuss.elastic.co/u/Karthikeyan_Amaresan)\
**Replies:** 1\
**Last updated:** [October 11, 2023, 1:08am UTC](https://discuss.elastic.co/t/how-to-highlight-the-matching-subtext-in-elasticsearch/344754 "2023-10-11T01:08:52Z")

</div>

I am getting expected highlighting of substring matching user search keyword in companyName and country fields. However in emailId field instead of highlighting the substring the entire field is getting highlighted. Que…

---

## [ElastAlert Error smtplib.SMTPSenderRefused: (530, b'5.7.0 Authentication Required. Learn more at\\n5.7.0](https://discuss.elastic.co/t/elastalert-error-smtplib-smtpsenderrefused-530-b5-7-0-authentication-required-learn-more-at-n5-7-0/344766)

<div class="topic-metadata">

**Author:** [@huzaifa224](https://discuss.elastic.co/u/huzaifa224)\
**Replies:** 0\
**Last updated:** [October 10, 2023, 10:00pm UTC](https://discuss.elastic.co/t/elastalert-error-smtplib-smtpsenderrefused-530-b5-7-0-authentication-required-learn-more-at-n5-7-0/344766 "2023-10-10T22:00:32Z")

</div>

I am trying to configure elastalert 2 to read from elasticsearch index and send alert according to configured rule, i am using gmail smtp and app password to achieve this. Every thing is running fine but when i try to te…

---

## [Single shard failing with snapshot](https://discuss.elastic.co/t/single-shard-failing-with-snapshot/344688)

<div class="topic-metadata">

**Author:** [@Russell\_Fulton](https://discuss.elastic.co/u/Russell_Fulton)\
**Replies:** 3\
**Last updated:** [October 10, 2023, 9:53pm UTC](https://discuss.elastic.co/t/single-shard-failing-with-snapshot/344688 "2023-10-10T21:53:15Z")

</div>

I wish I knew why my backup system is so brittle : ( I have a single shard failing for the last couple of days - from kibana: INTERNAL\_SERVER\_ERROR: UncategorizedExecutionException\[Failed execution\]; nested: Execution…

---

## [Scripted update fails with "unsupport\_operation\_exception: null"](https://discuss.elastic.co/t/scripted-update-fails-with-unsupport-operation-exception-null/344349)

<div class="topic-metadata">

**Author:** [@s.moran](https://discuss.elastic.co/u/s.moran)\
**Replies:** 1\
**Last updated:** [October 10, 2023, 8:32pm UTC](https://discuss.elastic.co/t/scripted-update-fails-with-unsupport-operation-exception-null/344349 "2023-10-10T20:32:29Z")

</div>

I am seeing an intermittent issue where ES fails to execute a script due to an unsupported\_operation\_exception. The whole error looks like this "error": { "type": "illegal\_argument\_exception", "reason": "failed to …

---

## [Enroll command failed with exit code: 1](https://discuss.elastic.co/t/enroll-command-failed-with-exit-code-1/344739)

<div class="topic-metadata">

**Author:** [@Jean-Claude](https://discuss.elastic.co/u/Jean-Claude)\
**Replies:** 5\
**Last updated:** [October 10, 2023, 3:31pm UTC](https://discuss.elastic.co/t/enroll-command-failed-with-exit-code-1/344739 "2023-10-10T15:31:50Z")

</div>

Hello, i hope you are doing well This my infra ELASTIC v-elkmaster01.sys.u-bordeaux.fr v-elkmaster02.sys.u-bordeaux.fr v-elkmaster03.sys.u-bordeaux.fr p-elkhot01.sys.u-bordeaux.fr p-elkhot02.sys.u-bordeaux.fr p-elkwar…

---

## [Sort the Elasticsearch results based on the matched nested object in search-ui](https://discuss.elastic.co/t/sort-the-elasticsearch-results-based-on-the-matched-nested-object-in-search-ui/344752)

<div class="topic-metadata">

**Author:** [@rommelcanoy](https://discuss.elastic.co/u/rommelcanoy)\
**Replies:** 0\
**Last updated:** [October 10, 2023, 3:14pm UTC](https://discuss.elastic.co/t/sort-the-elasticsearch-results-based-on-the-matched-nested-object-in-search-ui/344752 "2023-10-10T15:14:02Z")

</div>

I want to implement it in Search-UI. How should I do it? For instance, if users search for 'Mucopolysaccharidosis Type 1,' I want to sort the results based on the "score" of the matched nested condition inside this field…

---

## [Get documents based on other documents](https://discuss.elastic.co/t/get-documents-based-on-other-documents/344475)

<div class="topic-metadata">

**Author:** [@Jonas\_S](https://discuss.elastic.co/u/Jonas_S)\
**Replies:** 5\
**Last updated:** [October 10, 2023, 3:13pm UTC](https://discuss.elastic.co/t/get-documents-based-on-other-documents/344475 "2023-10-10T15:13:32Z")

</div>

Hello, i have multiple indexes with multiple documents grouped in a data view. For documents like {..., field1: value, field2: value, ...}, is there a way to get all documents for which at least one other document exis…

---

## [Problem in data format during bulk insert in Elasticsearch using ElasticsearchClient in Java](https://discuss.elastic.co/t/problem-in-data-format-during-bulk-insert-in-elasticsearch-using-elasticsearchclient-in-java/344746)

<div class="topic-metadata">

**Author:** [@Sushobhan\_Mudi](https://discuss.elastic.co/u/Sushobhan_Mudi)\
**Replies:** 0\
**Last updated:** [October 10, 2023, 1:55pm UTC](https://discuss.elastic.co/t/problem-in-data-format-during-bulk-insert-in-elasticsearch-using-elasticsearchclient-in-java/344746 "2023-10-10T13:55:00Z")

</div>

I am inserting JSON data in Elasticsearch using ElasticearchClient Bulk Insert in Java, the code I have written is static void submitBulkUsingElasticClient(JSONArray data) throws IOException { BulkRequest.Builde…

---

## [AWS Elastic Search update\_by\_query : Trying to create too many scroll contexts](https://discuss.elastic.co/t/aws-elastic-search-update-by-query-trying-to-create-too-many-scroll-contexts/344745)

<div class="topic-metadata">

**Author:** [@ankitpandoh](https://discuss.elastic.co/u/ankitpandoh)\
**Replies:** 1\
**Last updated:** [October 10, 2023, 1:48pm UTC](https://discuss.elastic.co/t/aws-elastic-search-update-by-query-trying-to-create-too-many-scroll-contexts/344745 "2023-10-10T13:48:53Z")

</div>

I am getting below exception while running the update\_by\_query. We have been issuing this request to through Rest API (from our code) to OpensearchCluster in AWS. Initially it seems ok, but when we have a sudden burst o…

---

## [8.2.3 -\> 8.10 ; Breaking change on Elastic Cloud?](https://discuss.elastic.co/t/8-2-3-8-10-breaking-change-on-elastic-cloud/344743)

<div class="topic-metadata">

**Author:** [@GinkoLucas](https://discuss.elastic.co/u/GinkoLucas)\
**Replies:** 0\
**Last updated:** [October 10, 2023, 1:33pm UTC](https://discuss.elastic.co/t/8-2-3-8-10-breaking-change-on-elastic-cloud/344743 "2023-10-10T13:33:04Z")

</div>

Hello, Actualy i have a deployment on Elastic Cloud in 8.2.3. I would like to uprgrade in 8.10. I was looking for breaking change into the \_migration/deprecations api, and I get 9 warning and 1 critical, all about my …

---

## [NoClassDefFoundError: org/bouncycastle/asn1/ASN1Encodable - Missing ASN.1 Utility Classes](https://discuss.elastic.co/t/noclassdeffounderror-org-bouncycastle-asn1-asn1encodable-missing-asn-1-utility-classes/344734)

<div class="topic-metadata">

**Author:** [@Franco901](https://discuss.elastic.co/u/Franco901)\
**Replies:** 0\
**Last updated:** [October 10, 2023, 12:32pm UTC](https://discuss.elastic.co/t/noclassdeffounderror-org-bouncycastle-asn1-asn1encodable-missing-asn-1-utility-classes/344734 "2023-10-10T12:32:41Z")

</div>

Hello there, I have a Nextcloud instance (V26) with an Elasticsearch V8.2.10 as full text search component. While indexing user data my ES node poorly died this morning with a missing class not found exception. It see…

---

## [Sliding Window Query in Elastic](https://discuss.elastic.co/t/sliding-window-query-in-elastic/344733)

<div class="topic-metadata">

**Author:** [@vignesh\_nayak](https://discuss.elastic.co/u/vignesh_nayak)\
**Replies:** 0\
**Last updated:** [October 10, 2023, 12:26pm UTC](https://discuss.elastic.co/t/sliding-window-query-in-elastic/344733 "2023-10-10T12:26:12Z")

</div>

Hello, I have a log message which has an id, and it will be same for repeating requests. So I need to find repetitive requests from same id in a certain interval(ex:15min) , What would be the easiest way to achieve this,…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=189)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=191)
