# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=261

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 262

---

## [Custom dotproduct with long type field value](https://discuss.elastic.co/t/custom-dotproduct-with-long-type-field-value/333150)

<div class="topic-metadata">

**Author:** [@Akhilendra](https://discuss.elastic.co/u/Akhilendra)\
**Replies:** 1\
**Last updated:** [May 11, 2023, 5:07am UTC](https://discuss.elastic.co/t/custom-dotproduct-with-long-type-field-value/333150 "2023-05-11T05:07:05Z")

</div>

An array long type field in document geting automatically sorted when calculating dotproduct via custom painless script. Index Mapping PUT /custom\_dot\_product { "settings": { "number\_of\_shards": 1, "number\_o…

---

## [My lifecycle policy is not working](https://discuss.elastic.co/t/my-lifecycle-policy-is-not-working/332856)

<div class="topic-metadata">

**Author:** [@its-ogawa](https://discuss.elastic.co/u/its-ogawa)\
**Replies:** 10\
**Last updated:** [May 11, 2023, 2:09am UTC](https://discuss.elastic.co/t/my-lifecycle-policy-is-not-working/332856 "2023-05-11T02:09:47Z")

</div>

I want to automatically delete indexes that are 60 days old and have set up the following lifecycle policy. # curl -XGET '\_ilm/policy/its\_index-policy?pretty' { "its\_index-policy" : { "version" : 1, "modified\_…

---

## [Elasticsearch](https://discuss.elastic.co/t/elasticsearch/332956)

<div class="topic-metadata">

**Author:** [@Ali\_Trache](https://discuss.elastic.co/u/Ali_Trache)\
**Replies:** 1\
**Last updated:** [May 11, 2023, 1:13am UTC](https://discuss.elastic.co/t/elasticsearch/332956 "2023-05-11T01:13:16Z")

</div>

hello ; please i want somme repense for me . thank you 1-How to size ELk storage? 2-How to check storage status and detect possible saturation? Can it be integrated into an “ELK” Dashboard? 3- how can we expand the s…

---

## [Read after write consistency (test refresh interval)](https://discuss.elastic.co/t/read-after-write-consistency-test-refresh-interval/332809)

<div class="topic-metadata">

**Author:** [@searchwithme](https://discuss.elastic.co/u/searchwithme)\
**Replies:** 1\
**Last updated:** [May 11, 2023, 1:05am UTC](https://discuss.elastic.co/t/read-after-write-consistency-test-refresh-interval/332809 "2023-05-11T01:05:33Z")

</div>

I have a refresh interval of 1 s. I want to confirm that this is actually happening. Is there a test to validate the item getting indexed is getting searchable in a second? If so, How do I do that? I am ingesting documen…

---

## [With Java API Client, update by appending to field array of document](https://discuss.elastic.co/t/with-java-api-client-update-by-appending-to-field-array-of-document/332859)

<div class="topic-metadata">

**Author:** [@rrrrrr](https://discuss.elastic.co/u/rrrrrr)\
**Replies:** 0\
**Last updated:** [May 9, 2023, 3:09am UTC](https://discuss.elastic.co/t/with-java-api-client-update-by-appending-to-field-array-of-document/332859 "2023-05-09T03:09:03Z")

</div>

Hello, Is there any examples to update a document partially ? I would like to append to a field array utilizing Java API Client. I would like to not use Scripts or Java High Level Client if possible. Thank you, Reza …

---

## [BulkRequest with Java API Client missing document part](https://discuss.elastic.co/t/bulkrequest-with-java-api-client-missing-document-part/333077)

<div class="topic-metadata">

**Author:** [@DavJane](https://discuss.elastic.co/u/DavJane)\
**Replies:** 0\
**Last updated:** [May 10, 2023, 11:00am UTC](https://discuss.elastic.co/t/bulkrequest-with-java-api-client-missing-document-part/333077 "2023-05-10T11:00:47Z")

</div>

Hi all, I am migrating from Elasticsearch high rest client 6.x to Java API client and have encountered an issue with the BulkRequest. I am creating a json string and sending that in as part of the document part of the …

---

## [Multisearch (bulk) knn searches](https://discuss.elastic.co/t/multisearch-bulk-knn-searches/333095)

<div class="topic-metadata">

**Author:** [@ndtreviv](https://discuss.elastic.co/u/ndtreviv)\
**Replies:** 2\
**Last updated:** [May 11, 2023, 12:27am UTC](https://discuss.elastic.co/t/multisearch-bulk-knn-searches/333095 "2023-05-11T00:27:50Z")

</div>

Hello, I want to use knn searching on dense\_vectors for similarity searches, but I want to issue multiple requests at once using the Multisearch API. Is this possible? The Java client library (co.elastic.clients:elast…

---

## [Import data csv/json](https://discuss.elastic.co/t/import-data-csv-json/333090)

<div class="topic-metadata">

**Author:** [@Haitem\_Touiss](https://discuss.elastic.co/u/Haitem_Touiss)\
**Replies:** 2\
**Last updated:** [May 11, 2023, 12:03am UTC](https://discuss.elastic.co/t/import-data-csv-json/333090 "2023-05-11T00:03:01Z")

</div>

Hello, I am having difficulty importing data into Elasticsearch version 7.17, but it is working fine in the latest version. I have tried several methods, including using Logstash and Beats, but none of them seem to be w…

---

## [Disabling the \_size mapping?](https://discuss.elastic.co/t/disabling-the-size-mapping/332831)

<div class="topic-metadata">

**Author:** [@shani\_angarkadu](https://discuss.elastic.co/u/shani_angarkadu)\
**Replies:** 1\
**Last updated:** [May 10, 2023, 11:57pm UTC](https://discuss.elastic.co/t/disabling-the-size-mapping/332831 "2023-05-10T23:57:28Z")

</div>

I want to enable and disable the size mapping. Enable worked fine after the index refreshed and I disable the \_size set to false but I still able to query the \_size. How can I disable so no one can query?

---

## [Unable to recover my cluster](https://discuss.elastic.co/t/unable-to-recover-my-cluster/333000)

<div class="topic-metadata">

**Author:** [@Ashu\_Mahajan](https://discuss.elastic.co/u/Ashu_Mahajan)\
**Replies:** 12\
**Last updated:** [May 10, 2023, 10:58pm UTC](https://discuss.elastic.co/t/unable-to-recover-my-cluster/333000 "2023-05-10T22:58:56Z")

</div>

We moved our data to new version of elasticsearch. The new cluster have 3 master, 3 hot and 3 warm nodes. Everything was working fine till this morning and all of a cluster health went red. After looking at it further, I…

---

## [Question about Elasticsearch query](https://discuss.elastic.co/t/question-about-elasticsearch-query/331074)

<div class="topic-metadata">

**Author:** [@sayerszero](https://discuss.elastic.co/u/sayerszero)\
**Replies:** 1\
**Last updated:** [May 10, 2023, 9:50pm UTC](https://discuss.elastic.co/t/question-about-elasticsearch-query/331074 "2023-05-10T21:50:02Z")

</div>

New to the community and not sure this is the best category for this question, but here goes: We're trying to monitor CPU thresholds through Rules and Connectors with beats 7.16. We originally were doing this using Metr…

---

## [Issue regarding setup and local host](https://discuss.elastic.co/t/issue-regarding-setup-and-local-host/333017)

<div class="topic-metadata">

**Author:** [@Tushar25](https://discuss.elastic.co/u/Tushar25)\
**Replies:** 1\
**Last updated:** [May 10, 2023, 9:16pm UTC](https://discuss.elastic.co/t/issue-regarding-setup-and-local-host/333017 "2023-05-10T21:16:45Z")

</div>

Hello there, I'm having an issue doing the setup of the version 8.7.1, (http:// localhost:9200/) this link requires a password to which the default USERNAME('elastic') and PASSWORD('changeme') is not working or giving a…

---

## [Ukrainian analyzer](https://discuss.elastic.co/t/ukrainian-analyzer/333062)

<div class="topic-metadata">

**Author:** [@Vladimir\_Talabko](https://discuss.elastic.co/u/Vladimir_Talabko)\
**Replies:** 16\
**Last updated:** [May 10, 2023, 3:46pm UTC](https://discuss.elastic.co/t/ukrainian-analyzer/333062 "2023-05-10T15:46:35Z")

</div>

Hello! I have a hosting with installed the Ukrainian plugin from this page Ukrainian analysis plugin | Elasticsearch Plugins and Integrations \[8.7\] | Elastic . It's proven by this command: bin/elasticsearch-plugin list …

---

## [Suggestions response doesnt contain index information or information about document where the suggestion was found](https://discuss.elastic.co/t/suggestions-response-doesnt-contain-index-information-or-information-about-document-where-the-suggestion-was-found/332543)

<div class="topic-metadata">

**Author:** [@schawla](https://discuss.elastic.co/u/schawla)\
**Replies:** 3\
**Last updated:** [May 10, 2023, 2:18pm UTC](https://discuss.elastic.co/t/suggestions-response-doesnt-contain-index-information-or-information-about-document-where-the-suggestion-was-found/332543 "2023-05-10T14:18:57Z")

</div>

Hi, I am trying to trace a suggestion to its source document returned by my search suggestion query in Elasticsearch 7.9 It seems the suggest Options only returns the suggested text , frequency and score. I see that the…

---

## [Difference between UNIX\_MS and epoch\_millis in date processor?](https://discuss.elastic.co/t/difference-between-unix-ms-and-epoch-millis-in-date-processor/333048)

<div class="topic-metadata">

**Author:** [@chengye233](https://discuss.elastic.co/u/chengye233)\
**Replies:** 1\
**Last updated:** [May 10, 2023, 1:40pm UTC](https://discuss.elastic.co/t/difference-between-unix-ms-and-epoch-millis-in-date-processor/333048 "2023-05-10T13:40:17Z")

</div>

Hi, I use ingest pipeline to add @timestamp field automatically from a exist date type field. My exist date type field is called uploadTime and it's date format is epoch\_millis. In the processor, I firstly use epoch\_mi…

---

## [Vector knn search with more than 1024 dimensions](https://discuss.elastic.co/t/vector-knn-search-with-more-than-1024-dimensions/332819)

<div class="topic-metadata">

**Author:** [@sbruinsje](https://discuss.elastic.co/u/sbruinsje)\
**Replies:** 4\
**Last updated:** [May 10, 2023, 1:35pm UTC](https://discuss.elastic.co/t/vector-knn-search-with-more-than-1024-dimensions/332819 "2023-05-10T13:35:26Z")

</div>

If I understood correctly, from version 8.8 elasticsearch will support knn search for vectors over 1024 dimensions. Is there any indication when this will be released? I'm trying to work with openai embeddings (2nd gener…

---

## [Search Query Based on Nested Fields](https://discuss.elastic.co/t/search-query-based-on-nested-fields/333084)

<div class="topic-metadata">

**Author:** [@Mustafa\_AYDOGDU](https://discuss.elastic.co/u/Mustafa_AYDOGDU)\
**Replies:** 4\
**Last updated:** [May 10, 2023, 1:04pm UTC](https://discuss.elastic.co/t/search-query-based-on-nested-fields/333084 "2023-05-10T13:04:01Z")

</div>

I have this kind of data: "1655184519597531137": { "reply\_depth": 1, "gather\_likes": false, "gather\_user\_data": "false", "keyword": "galatasaray", "gather\_retw…

---

## [Term suggester returning correct suggestions for misspelled words outside of suggester data source](https://discuss.elastic.co/t/term-suggester-returning-correct-suggestions-for-misspelled-words-outside-of-suggester-data-source/333083)

<div class="topic-metadata">

**Author:** [@MilanGatyas](https://discuss.elastic.co/u/MilanGatyas)\
**Replies:** 0\
**Last updated:** [May 10, 2023, 12:26pm UTC](https://discuss.elastic.co/t/term-suggester-returning-correct-suggestions-for-misspelled-words-outside-of-suggester-data-source/333083 "2023-05-10T12:26:07Z")

</div>

Please help me understand why this happens. We use Elasticsearch 7.10 term suggester. The field didYouMean.trigram we use for the suggestions has the following mapping "didYouMean" : { "type" : "text", "fields" : { …

---

## [Can I do a sum on the fields that have 'keyword' type](https://discuss.elastic.co/t/can-i-do-a-sum-on-the-fields-that-have-keyword-type/333076)

<div class="topic-metadata">

**Author:** [@searchwithme](https://discuss.elastic.co/u/searchwithme)\
**Replies:** 1\
**Last updated:** [May 10, 2023, 11:06am UTC](https://discuss.elastic.co/t/can-i-do-a-sum-on-the-fields-that-have-keyword-type/333076 "2023-05-10T11:06:31Z")

</div>

I have a field that is keyword type. The index looks like this: { "key": 1 }, { "key": 2 }, { "key": 3 }, { "key":"abc" }, { "key":"zyx" } Some values are numeric and some are strings. Is there a way to …

---

## [Check performance of cluster](https://discuss.elastic.co/t/check-performance-of-cluster/332996)

<div class="topic-metadata">

**Author:** [@NNI](https://discuss.elastic.co/u/NNI)\
**Replies:** 11\
**Last updated:** [May 10, 2023, 9:56am UTC](https://discuss.elastic.co/t/check-performance-of-cluster/332996 "2023-05-10T09:56:45Z")

</div>

Hi We're facing some performance issue cluster build on 9 nodes 3x ingest 3x master 3x data (on NVMe disks) index\_with\_data 2 r STARTED 10590253 elk\_es\_data-1 index\_with\_data 2 p …

---

## [Aggregating unique (timestamp) values](https://discuss.elastic.co/t/aggregating-unique-timestamp-values/333043)

<div class="topic-metadata">

**Author:** [@idrv](https://discuss.elastic.co/u/idrv)\
**Replies:** 0\
**Last updated:** [May 10, 2023, 8:13am UTC](https://discuss.elastic.co/t/aggregating-unique-timestamp-values/333043 "2023-05-10T08:13:27Z")

</div>

Hello, community! I hope my question doesn't double something already asked and answered here. I'm searching for the best way to store aggregated data in a dedicated index. In the best-case scenario, it should include …

---

## [What are the best ways to find near phrases? How to combine them to find near to nearest near? ))](https://discuss.elastic.co/t/what-are-the-best-ways-to-find-near-phrases-how-to-combine-them-to-find-near-to-nearest-near/333042)

<div class="topic-metadata">

**Author:** [@Eduard\_mart](https://discuss.elastic.co/u/Eduard_mart)\
**Replies:** 0\
**Last updated:** [May 10, 2023, 8:11am UTC](https://discuss.elastic.co/t/what-are-the-best-ways-to-find-near-phrases-how-to-combine-them-to-find-near-to-nearest-near/333042 "2023-05-10T08:11:59Z")

</div>

How to find nearest near. Example: "query" : { "query\_string": { "query": "\\"field korean\\"~10", "fields" : \["message.stemmed"\], "default\_operator": "AND" } It finds all strings that contain …

---

## [Mapping conflict between two indexes of different versions of metricbeat](https://discuss.elastic.co/t/mapping-conflict-between-two-indexes-of-different-versions-of-metricbeat/333010)

<div class="topic-metadata">

**Author:** [@ElasticLiver](https://discuss.elastic.co/u/ElasticLiver)\
**Replies:** 7\
**Last updated:** [May 10, 2023, 5:19am UTC](https://discuss.elastic.co/t/mapping-conflict-between-two-indexes-of-different-versions-of-metricbeat/333010 "2023-05-10T05:19:15Z")

</div>

Hi, I have two metricbeats with diferent versions pointing to the same elasticsearch, the difference between their mapping is causing me problems when I try to use the control visualization in kibana. if i choose to u…

---

## [Trace source of authentication failures from logs](https://discuss.elastic.co/t/trace-source-of-authentication-failures-from-logs/333005)

<div class="topic-metadata">

**Author:** [@Russell\_Fulton](https://discuss.elastic.co/u/Russell_Fulton)\
**Replies:** 1\
**Last updated:** [May 10, 2023, 12:40am UTC](https://discuss.elastic.co/t/trace-source-of-authentication-failures-from-logs/333005 "2023-05-10T00:40:13Z")

</div>

I am seeing this log repeated twice a minute on one of my ES servers: \[2023-05-10T00:11:33,186\]\[WARN \]\[o.e.x.s.a.RealmsAuthenticator\] \[secesprd02\] Authentication to realm default\_native failed - Password authentication …

---

## [Restoring snapshot from one cluster to brand new deployment](https://discuss.elastic.co/t/restoring-snapshot-from-one-cluster-to-brand-new-deployment/332844)

<div class="topic-metadata">

**Author:** [@Buddha](https://discuss.elastic.co/u/Buddha)\
**Replies:** 2\
**Last updated:** [May 9, 2023, 10:29pm UTC](https://discuss.elastic.co/t/restoring-snapshot-from-one-cluster-to-brand-new-deployment/332844 "2023-05-09T22:29:18Z")

</div>

Hello, I am using the Clastic cloud services and I was going through a practice exercise of restoring snapshot from one deployment to brand new deployment in case of any disaster. The GUi is straight forward, but I am …

---

## [Runtime field causes the error "A document doesn't have a field"](https://discuss.elastic.co/t/runtime-field-causes-the-error-a-document-doesnt-have-a-field/332848)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 3\
**Last updated:** [May 9, 2023, 8:34pm UTC](https://discuss.elastic.co/t/runtime-field-causes-the-error-a-document-doesnt-have-a-field/332848 "2023-05-09T20:34:35Z")

</div>

I'm trying to use a run time field but I keep getting the error: A document doesn't have a value for a field! Use doc\[\<field\>\].size()==0 to check if a document is missing a field! You can reproduce the issue by running…

---

## [Support for multiple named computed scores in a single search](https://discuss.elastic.co/t/support-for-multiple-named-computed-scores-in-a-single-search/332995)

<div class="topic-metadata">

**Author:** [@Krum\_Bakalsky](https://discuss.elastic.co/u/Krum_Bakalsky)\
**Replies:** 0\
**Last updated:** [May 9, 2023, 7:05pm UTC](https://discuss.elastic.co/t/support-for-multiple-named-computed-scores-in-a-single-search/332995 "2023-05-09T19:05:38Z")

</div>

Hello Elasticsearch community, When serving a given search query, our service is computing and using proximity score for each document in our index relative to the given query. This we currently implement by invoking th…

---

## [Using a modal to display Elastic Search-UI results, but there is a weird lag where only part of the original search term is searched](https://discuss.elastic.co/t/using-a-modal-to-display-elastic-search-ui-results-but-there-is-a-weird-lag-where-only-part-of-the-original-search-term-is-searched/332973)

<div class="topic-metadata">

**Author:** [@Jonah\_Cornish\_Packer](https://discuss.elastic.co/u/Jonah_Cornish_Packer)\
**Replies:** 1\
**Last updated:** [May 9, 2023, 5:33pm UTC](https://discuss.elastic.co/t/using-a-modal-to-display-elastic-search-ui-results-but-there-is-a-weird-lag-where-only-part-of-the-original-search-term-is-searched/332973 "2023-05-09T17:33:12Z")

</div>

I have implemented Elastic's Search-UI on my website, where the user can enter their search term on the parent page and when they submit their search the results show up in a modal. The modal displays the search results …

---

## [CVEs present in the latest version](https://discuss.elastic.co/t/cves-present-in-the-latest-version/332950)

<div class="topic-metadata">

**Author:** [@beltran-rubo](https://discuss.elastic.co/u/beltran-rubo)\
**Replies:** 1\
**Last updated:** [May 9, 2023, 3:03pm UTC](https://discuss.elastic.co/t/cves-present-in-the-latest-version/332950 "2023-05-09T15:03:18Z")

</div>

In the latest release, at this moment 8.7.1, there are vulnerabilities in some jar files included. From Trivy scanner: CVE-2020-15522 CVE-2020-8908 CVE-2021-29425 CVE-2021-40690 CVE-2022-1471 CVE-2022-45146 CVE-20…

---

## [Unable to Connect with elastic cloud](https://discuss.elastic.co/t/unable-to-connect-with-elastic-cloud/332456)

<div class="topic-metadata">

**Author:** [@Mohd\_Ahmad](https://discuss.elastic.co/u/Mohd_Ahmad)\
**Replies:** 4\
**Last updated:** [May 4, 2023, 2:46am UTC](https://discuss.elastic.co/t/unable-to-connect-with-elastic-cloud/332456 "2023-05-04T02:46:22Z")

</div>

Uncaught Elastic\\Transport\\Exception\\NoNodeAvailableException: No alive nodes. All the 1 nodes seem to be down. My php client is hosted at 000webhost and i am creating client with api key and cloud id but it is throwing…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=260)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=262)
