# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=224

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 225

---

## [Need advice on using Elasticsearch in a transaction processing application](https://discuss.elastic.co/t/need-advice-on-using-elasticsearch-in-a-transaction-processing-application/338265)

<div class="topic-metadata">

**Author:** [@Mike\_Z](https://discuss.elastic.co/u/Mike_Z)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 11:13pm UTC](https://discuss.elastic.co/t/need-advice-on-using-elasticsearch-in-a-transaction-processing-application/338265 "2023-07-25T23:13:04Z")

</div>

We develop and maintain an ecommerce back-office fulfillment system. So, it has the transaction processing function to capture fulfillment requests from an ecommerce website, and the reporting, listing, and business fu…

---

## [How to overcome the two-billion limitation on the number of Elasticsearch records?](https://discuss.elastic.co/t/how-to-overcome-the-two-billion-limitation-on-the-number-of-elasticsearch-records/339232)

<div class="topic-metadata">

**Author:** [@Mike\_Z](https://discuss.elastic.co/u/Mike_Z)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 11:01pm UTC](https://discuss.elastic.co/t/how-to-overcome-the-two-billion-limitation-on-the-number-of-elasticsearch-records/339232 "2023-07-25T23:01:55Z")

</div>

As explained in the below quoted post on StackOverflow, Elasticsearch has a limit of two billion documents. Yes there is limit to the number of docs per shard of 2 billion, which is a hard lucene limit. There is a max…

---

## [Getting started - Kibana - ElasticSearch - logstash](https://discuss.elastic.co/t/getting-started-kibana-elasticsearch-logstash/339204)

<div class="topic-metadata">

**Author:** [@rajdevworks](https://discuss.elastic.co/u/rajdevworks)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 10:09pm UTC](https://discuss.elastic.co/t/getting-started-kibana-elasticsearch-logstash/339204 "2023-07-25T22:09:08Z")

</div>

Hello, I have different json files which I would like to visualize into Kibana after ingesting them to Elasticsearch. Where can I get started and do I need to define input/output filters?

---

## [We are seeing the issue on SonarQube with elasticsearch. Elastic search is not coming up preventing the sonarqube to be up and running](https://discuss.elastic.co/t/we-are-seeing-the-issue-on-sonarqube-with-elasticsearch-elastic-search-is-not-coming-up-preventing-the-sonarqube-to-be-up-and-running/339229)

<div class="topic-metadata">

**Author:** [@bipin23](https://discuss.elastic.co/u/bipin23)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 9:56pm UTC](https://discuss.elastic.co/t/we-are-seeing-the-issue-on-sonarqube-with-elasticsearch-elastic-search-is-not-coming-up-preventing-the-sonarqube-to-be-up-and-running/339229 "2023-07-25T21:56:47Z")

</div>

Sonarqube version - 10.0.0 OS : RHEL 8 Java - opendfk 17 Here are the logs: 2023.07.25 21:03:47 ERROR es\[o.e.b.Elasticsearch\] fatal exception while booting Elasticsearch java.lang.ExceptionInInitializerError: null …

---

## [AlmaLinux OS 9](https://discuss.elastic.co/t/almalinux-os-9/338910)

<div class="topic-metadata">

**Author:** [@Nirjonadda](https://discuss.elastic.co/u/Nirjonadda)\
**Replies:** 4\
**Last updated:** [July 25, 2023, 8:27pm UTC](https://discuss.elastic.co/t/almalinux-os-9/338910 "2023-07-25T20:27:12Z")

</div>

Do you have any plan add support for AlmaLinux OS 9? Can not install Elasticsearch in AlmaLinux OS 9 because RPM signing key is invalid. rpm --import https://artifacts.elastic.co/GPG-KEY-elasticsearch warning: Signature…

---

## [Combine term and bucket range query](https://discuss.elastic.co/t/combine-term-and-bucket-range-query/339215)

<div class="topic-metadata">

**Author:** [@aelam](https://discuss.elastic.co/u/aelam)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 8:09pm UTC](https://discuss.elastic.co/t/combine-term-and-bucket-range-query/339215 "2023-07-25T20:09:43Z")

</div>

I'm attempting to extract records of http success/failure data per user using an elasticsearch aggregation. I'm looking at two fields, "user.name" and "http.response.status\_code". My goal is to use a keyed range bucket …

---

## [Enable xpack.security but not password authentication](https://discuss.elastic.co/t/enable-xpack-security-but-not-password-authentication/338917)

<div class="topic-metadata">

**Author:** [@darshanypatel](https://discuss.elastic.co/u/darshanypatel)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 8:00pm UTC](https://discuss.elastic.co/t/enable-xpack-security-but-not-password-authentication/338917 "2023-07-25T20:00:11Z")

</div>

I have an ES 7.16.2 cluster running with TLS set up. I haven't set the xpack.security.enabled setting in my elasticsearch.yml file. I'm using the BASIC license. So it should have used the default value of false for that …

---

## [How to set up 3 dedicate master + 4 data nodes also master elegible](https://discuss.elastic.co/t/how-to-set-up-3-dedicate-master-4-data-nodes-also-master-elegible/338887)

<div class="topic-metadata">

**Author:** [@hlcxpl](https://discuss.elastic.co/u/hlcxpl)\
**Replies:** 15\
**Last updated:** [July 25, 2023, 7:05pm UTC](https://discuss.elastic.co/t/how-to-set-up-3-dedicate-master-4-data-nodes-also-master-elegible/338887 "2023-07-25T19:05:02Z")

</div>

i need to set up 3 master node dedicate and 4 data node and master elegibles this is my yml configuration path.data: /var/lib/elasticsearch path.logs: /var/log/elasticsearch bootstrap.memory\_lock: true cluster.name: C…

---

## [Completely remove mapping check](https://discuss.elastic.co/t/completely-remove-mapping-check/339198)

<div class="topic-metadata">

**Author:** [@dastial](https://discuss.elastic.co/u/dastial)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 6:15pm UTC](https://discuss.elastic.co/t/completely-remove-mapping-check/339198 "2023-07-25T18:15:23Z")

</div>

I'm using ES8+ to store a lot of different document, but I've encountered some problems with property mapping. I am working with documents, each of which has hundreds of different fields, many of them with the same name.…

---

## [Join two searches with nested field](https://discuss.elastic.co/t/join-two-searches-with-nested-field/339213)

<div class="topic-metadata">

**Author:** [@Murilo\_Livorato](https://discuss.elastic.co/u/Murilo_Livorato)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 5:23pm UTC](https://discuss.elastic.co/t/join-two-searches-with-nested-field/339213 "2023-07-25T17:23:05Z")

</div>

hello , I have been trying to join those two searches , but I didnt managed . I want to do this - SELECT user-data WHERE company.id = 1 AND timestamp BETWEEEN 2023-05-04 - 2023-06-05 // RESULT 100 GET /user-data/\_se…

---

## [Expired ca.crt/nodes certificates - how to renew such certificates?](https://discuss.elastic.co/t/expired-ca-crt-nodes-certificates-how-to-renew-such-certificates/339114)

<div class="topic-metadata">

**Author:** [@d.silwon](https://discuss.elastic.co/u/d.silwon)\
**Replies:** 4\
**Last updated:** [July 25, 2023, 2:39pm UTC](https://discuss.elastic.co/t/expired-ca-crt-nodes-certificates-how-to-renew-such-certificates/339114 "2023-07-25T14:39:40Z")

</div>

Dears, To secure our ELK cluster we are using self-signed certificates generated by elasticsearch-certutil tool. Our ca.crt and certificates of nodes expired. I would like to mention that many external filebeats connec…

---

## [Is it possible modify query results before aggregations](https://discuss.elastic.co/t/is-it-possible-modify-query-results-before-aggregations/339136)

<div class="topic-metadata">

**Author:** [@Dalin](https://discuss.elastic.co/u/Dalin)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 1:57pm UTC](https://discuss.elastic.co/t/is-it-possible-modify-query-results-before-aggregations/339136 "2023-07-25T13:57:46Z")

</div>

I need to modify Elasticsearch query results based on user permissions determined by an external authorizer, before the results are used for aggregations. Anyone know if it's possible to intercept the query results, modi…

---

## [Elasticsearch index pattern in Tableau](https://discuss.elastic.co/t/elasticsearch-index-pattern-in-tableau/339183)

<div class="topic-metadata">

**Author:** [@subash](https://discuss.elastic.co/u/subash)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 1:52pm UTC](https://discuss.elastic.co/t/elasticsearch-index-pattern-in-tableau/339183 "2023-07-25T13:52:25Z")

</div>

Hello, I am trying to create a visualization in Tableau with Elasticsearch as the data source. I am able to connect Tableau and Elasticsearch successfully . But the problem is I can't select the index pattern in Tablea…

---

## [I cant search nested](https://discuss.elastic.co/t/i-cant-search-nested/339187)

<div class="topic-metadata">

**Author:** [@Murilo\_Livorato](https://discuss.elastic.co/u/Murilo_Livorato)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 12:52pm UTC](https://discuss.elastic.co/t/i-cant-search-nested/339187 "2023-07-25T12:52:16Z")

</div>

hello , I am trying to search nested . I dont know what I am doing wrong . MY MAPPING { "user-data-info": { "mappings": { "dynamic": "false", "properties": { "company": { "type": "…

---

## [Native Language Translation (not analyzers)](https://discuss.elastic.co/t/native-language-translation-not-analyzers/336906)

<div class="topic-metadata">

**Author:** [@Yossi11](https://discuss.elastic.co/u/Yossi11)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 12:46pm UTC](https://discuss.elastic.co/t/native-language-translation-not-analyzers/336906 "2023-07-25T12:46:59Z")

</div>

Hello, My name is Yossi. I'm pretty new to elastic. Just stated using it a few months. I work a lot of different languages - English, German, Arabic (different dialects), French, Hebrew, Spanish and more. I'm using Dav…

---

## [Nested sorting differs between ES7 and ES8?](https://discuss.elastic.co/t/nested-sorting-differs-between-es7-and-es8/337904)

<div class="topic-metadata">

**Author:** [@MarynaCherniavska](https://discuss.elastic.co/u/MarynaCherniavska)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 12:17pm UTC](https://discuss.elastic.co/t/nested-sorting-differs-between-es7-and-es8/337904 "2023-07-25T12:17:59Z")

</div>

Dear team, we're moving from 7.17 to 8.7 (I know, big jump) and as part of the move, we have been running the e2e tests of the application on the new cluster, before actually switching the application to it. Some tests, …

---

## [Ingest pipeline with conditions runs tests correct but no documents are processed](https://discuss.elastic.co/t/ingest-pipeline-with-conditions-runs-tests-correct-but-no-documents-are-processed/339150)

<div class="topic-metadata">

**Author:** [@fgjensen](https://discuss.elastic.co/u/fgjensen)\
**Replies:** 4\
**Last updated:** [July 25, 2023, 11:55am UTC](https://discuss.elastic.co/t/ingest-pipeline-with-conditions-runs-tests-correct-but-no-documents-are-processed/339150 "2023-07-25T11:55:45Z")

</div>

Hi; Elasticsearch version: 8.6.2 Logstash version: 8.6.2 I have created and tested at simple ingest pipeline, which adds an event.ingested field to Filebeat documents, which do not already have this field set b…

---

## [Log4j framework can no longer reconnect because the security manager on logstash restart](https://discuss.elastic.co/t/log4j-framework-can-no-longer-reconnect-because-the-security-manager-on-logstash-restart/339115)

<div class="topic-metadata">

**Author:** [@ansk98](https://discuss.elastic.co/u/ansk98)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 11:54am UTC](https://discuss.elastic.co/t/log4j-framework-can-no-longer-reconnect-because-the-security-manager-on-logstash-restart/339115 "2023-07-25T11:54:01Z")

</div>

Hi all, For the logging of the Elasticsearch processes, the log4j2 was configured to log server, slowlog indexing, and slowlog search information to logstash by adding a socket appender that sends relevant logs to the r…

---

## [Option to search matching phrase with post fix and prefix while maintaining the order in Elasticsearch 7.x](https://discuss.elastic.co/t/option-to-search-matching-phrase-with-post-fix-and-prefix-while-maintaining-the-order-in-elasticsearch-7-x/339161)

<div class="topic-metadata">

**Author:** [@Vithu](https://discuss.elastic.co/u/Vithu)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 11:35am UTC](https://discuss.elastic.co/t/option-to-search-matching-phrase-with-post-fix-and-prefix-while-maintaining-the-order-in-elasticsearch-7-x/339161 "2023-07-25T11:35:56Z")

</div>

I have a requirement to modify Elasticsearch query from 1.x to 7.x. The 1.x query is given below: { "query": { "filtered": { "filter": { "and": { "filters": \[ { "t…

---

## [Elastic Search Unclear Mapper Parsing Exception](https://discuss.elastic.co/t/elastic-search-unclear-mapper-parsing-exception/339108)

<div class="topic-metadata">

**Author:** [@optimaX](https://discuss.elastic.co/u/optimaX)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 9:25am UTC](https://discuss.elastic.co/t/elastic-search-unclear-mapper-parsing-exception/339108 "2023-07-25T09:25:30Z")

</div>

Incident: I'm currently working on a log pipeline which forwards the logs from an API - of our Anti-Virus solution - to Graylog and therefore Elasticsearch behind that. However, I encountered a very strange mapper-parsi…

---

## [Masters not joining the cluster](https://discuss.elastic.co/t/masters-not-joining-the-cluster/339158)

<div class="topic-metadata">

**Author:** [@ORIAN\_MENASHE](https://discuss.elastic.co/u/ORIAN_MENASHE)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 9:11am UTC](https://discuss.elastic.co/t/masters-not-joining-the-cluster/339158 "2023-07-25T09:11:32Z")

</div>

Hi I have 3 masters that not joining my cluster One of the is up but don’t have cluster uuid Can you help me?

---

## [Syntax is overwriting when using .NET Elastic.Clients.ElasticSearch package](https://discuss.elastic.co/t/syntax-is-overwriting-when-using-net-elastic-clients-elasticsearch-package/339050)

<div class="topic-metadata">

**Author:** [@Rottonscope](https://discuss.elastic.co/u/Rottonscope)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 7:34am UTC](https://discuss.elastic.co/t/syntax-is-overwriting-when-using-net-elastic-clients-elasticsearch-package/339050 "2023-07-25T07:34:52Z")

</div>

Hello! I'm new to using Elasticsearch and trying to get my head around the Query DSL for the .NET package: Elastic.Clients.Elasticsearch. I have a basic query set-up as such: Ids excludeIds = new Ids(new List\<I…

---

## [Number of concurrent search requests on ElasticSearch cluster](https://discuss.elastic.co/t/number-of-concurrent-search-requests-on-elasticsearch-cluster/339144)

<div class="topic-metadata">

**Author:** [@Mohit\_Munjal](https://discuss.elastic.co/u/Mohit_Munjal)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 6:22am UTC](https://discuss.elastic.co/t/number-of-concurrent-search-requests-on-elasticsearch-cluster/339144 "2023-07-25T06:22:35Z")

</div>

My objective is to calculate 2 things Q1: how many search requests can a elasticsearch cluster can work on at once Q2: how many search requests can a elasticsearch cluster hold in it's queue before starting rejecting i…

---

## [Stuck in preparing for race](https://discuss.elastic.co/t/stuck-in-preparing-for-race/339143)

<div class="topic-metadata">

**Author:** [@maximiliano\_carrasco](https://discuss.elastic.co/u/maximiliano_carrasco)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 6:09am UTC](https://discuss.elastic.co/t/stuck-in-preparing-for-race/339143 "2023-07-25T06:09:21Z")

</div>

I am trying to use esrally but it keeps stuck in "preparing for race..." I create a track with: esrally create-track --track=test --target-hosts=host --client-options="use\_ssl:true,verify\_certs:true,basic\_auth\_user:…

---

## [LDAP Integration Not Working](https://discuss.elastic.co/t/ldap-integration-not-working/338865)

<div class="topic-metadata">

**Author:** [@forabraham1](https://discuss.elastic.co/u/forabraham1)\
**Replies:** 6\
**Last updated:** [July 25, 2023, 4:53am UTC](https://discuss.elastic.co/t/ldap-integration-not-working/338865 "2023-07-25T04:53:31Z")

</div>

We're running inhouse platinum version of ELK stack 7.16. We've tried to use AD for user authentication, but it is not working and ends throwing invalid credential error. We're 100% sure that it is valid password. This …

---

## [Problem to access Elastic portal https://local.host:12443/deployments](https://discuss.elastic.co/t/problem-to-access-elastic-portal-https-local-host-12443-deployments/339137)

<div class="topic-metadata">

**Author:** [@Cleber\_Carvalho](https://discuss.elastic.co/u/Cleber_Carvalho)\
**Replies:** 0\
**Last updated:** [July 25, 2023, 1:09am UTC](https://discuss.elastic.co/t/problem-to-access-elastic-portal-https-local-host-12443-deployments/339137 "2023-07-25T01:09:02Z")

</div>

When I try access the link to my ECE installation I receive the following error: 'Error: Service Unavailable' 'at y (https://local.host:12443/app.ac60c57da441fe117e33.js:2:252916)' 'at m (https://local.host:12443/app.…

---

## [Kibana can't sign in](https://discuss.elastic.co/t/kibana-cant-sign-in/339131)

<div class="topic-metadata">

**Author:** [@dro](https://discuss.elastic.co/u/dro)\
**Replies:** 2\
**Last updated:** [July 24, 2023, 10:35pm UTC](https://discuss.elastic.co/t/kibana-cant-sign-in/339131 "2023-07-24T22:35:39Z")

</div>

Kibana is not accepting the default elasticsearch-master-credentials The following ELK stack configuration is all version 8.5.1 running in a single node cluster: pod/elasticsearch-master-0 1/1 Running 0 …

---

## [Issues Running ElasticSearch on Kibana](https://discuss.elastic.co/t/issues-running-elasticsearch-on-kibana/339123)

<div class="topic-metadata">

**Author:** [@Emily\_Miller](https://discuss.elastic.co/u/Emily_Miller)\
**Replies:** 2\
**Last updated:** [July 24, 2023, 6:50pm UTC](https://discuss.elastic.co/t/issues-running-elasticsearch-on-kibana/339123 "2023-07-24T18:50:47Z")

</div>

Hey all. I'm brand new to running Kibana, and I'm using a software called GrimoireLab that runs off of it and docker. I used to not have any issues setting it up, but every time I try to open my localhost now it says ERR…

---

## [How to secure the Elasticsearch API?](https://discuss.elastic.co/t/how-to-secure-the-elasticsearch-api/339092)

<div class="topic-metadata">

**Author:** [@subash](https://discuss.elastic.co/u/subash)\
**Replies:** 1\
**Last updated:** [July 24, 2023, 5:50pm UTC](https://discuss.elastic.co/t/how-to-secure-the-elasticsearch-api/339092 "2023-07-24T17:50:57Z")

</div>

Hello, I want to share the Elastic curl API to the application team so that they can consume the API to get the data from Elastic search. How do I provide the authorization to the application team to consume that API? …

---

## [Match query not returning results](https://discuss.elastic.co/t/match-query-not-returning-results/337815)

<div class="topic-metadata">

**Author:** [@senadk](https://discuss.elastic.co/u/senadk)\
**Replies:** 6\
**Last updated:** [July 24, 2023, 5:14pm UTC](https://discuss.elastic.co/t/match-query-not-returning-results/337815 "2023-07-24T17:14:06Z")

</div>

Hi everyone, I started today with Elastic Search and have been working on some endpoints to get and post data. I do get a problem when trying to get results back on a match query. This is my document: { exception: \[…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=223)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=225)
