# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=262

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 263

---

## [Elastic and kibana is stop](https://discuss.elastic.co/t/elastic-and-kibana-is-stop/332889)

<div class="topic-metadata">

**Author:** [@Fatiha](https://discuss.elastic.co/u/Fatiha)\
**Replies:** 1\
**Last updated:** [May 9, 2023, 8:55am UTC](https://discuss.elastic.co/t/elastic-and-kibana-is-stop/332889 "2023-05-09T08:55:25Z")

</div>

HI everyone I want to create a project that visualize the data base saved in mysql using kibana in docker now I pull elastic and kibana and mysql cantainer and I run it and it is work but when I turn of my pc or …

---

## [Elasticsearch and kibana access](https://discuss.elastic.co/t/elasticsearch-and-kibana-access/329806)

<div class="topic-metadata">

**Author:** [@roshan\_vikhar](https://discuss.elastic.co/u/roshan_vikhar)\
**Replies:** 2\
**Last updated:** [May 9, 2023, 8:27am UTC](https://discuss.elastic.co/t/elasticsearch-and-kibana-access/329806 "2023-05-09T08:27:09Z")

</div>

I am new in ELK am using elastic ip for connecting both elasticsearch and kibana but only kibana i can access. what should be the changes i have to make in elasticsearch.yml and kibana.yml to make it work.

---

## [Can i check elasticsearch index in file system](https://discuss.elastic.co/t/can-i-check-elasticsearch-index-in-file-system/332634)

<div class="topic-metadata">

**Author:** [@Skairik](https://discuss.elastic.co/u/Skairik)\
**Replies:** 9\
**Last updated:** [May 9, 2023, 6:42am UTC](https://discuss.elastic.co/t/can-i-check-elasticsearch-index-in-file-system/332634 "2023-05-09T06:42:18Z")

</div>

Hello, I wanted to know if there is a way for me to look at the logs of the different indexes directly on my server without going through kibana. After some research I was supposed to have a data folder in /var/lib/ela…

---

## [Issue with Multiple grok patterns in single log ingest pipeline](https://discuss.elastic.co/t/issue-with-multiple-grok-patterns-in-single-log-ingest-pipeline/332842)

<div class="topic-metadata">

**Author:** [@Jason\_Paralta](https://discuss.elastic.co/u/Jason_Paralta)\
**Replies:** 0\
**Last updated:** [May 8, 2023, 7:55pm UTC](https://discuss.elastic.co/t/issue-with-multiple-grok-patterns-in-single-log-ingest-pipeline/332842 "2023-05-08T19:55:07Z")

</div>

Hi All, I am trying to read different log paths, this logs are of different patterns. I have single elastic template for this and have settings of default pipeline configured on same template. Now in log ingest pipeline…

---

## [Kafka can collect java stack log but elastic search cannot. How to fix?](https://discuss.elastic.co/t/kafka-can-collect-java-stack-log-but-elastic-search-cannot-how-to-fix/332612)

<div class="topic-metadata">

**Author:** [@Alwyn\_Tiu](https://discuss.elastic.co/u/Alwyn_Tiu)\
**Replies:** 12\
**Last updated:** [May 9, 2023, 3:40am UTC](https://discuss.elastic.co/t/kafka-can-collect-java-stack-log-but-elastic-search-cannot-how-to-fix/332612 "2023-05-09T03:40:19Z")

</div>

Kafka can collect java stack log but Elasticsearch cannot. How to fix?

---

## [Docs for manually enrolling cluster nodes without enrollment tokens?](https://discuss.elastic.co/t/docs-for-manually-enrolling-cluster-nodes-without-enrollment-tokens/332681)

<div class="topic-metadata">

**Author:** [@andrew.klaassen](https://discuss.elastic.co/u/andrew.klaassen)\
**Replies:** 2\
**Last updated:** [May 8, 2023, 6:40pm UTC](https://discuss.elastic.co/t/docs-for-manually-enrolling-cluster-nodes-without-enrollment-tokens/332681 "2023-05-08T18:40:38Z")

</div>

I'm trying to set up an Elasticsearch cluster using auto-renewing certs with certmonger from our enterprise CA. I'm running into a problem that has been discussed in many threads, where the answer always seems to be som…

---

## [Empty certificate chain on internode handshake with different certificate on each node](https://discuss.elastic.co/t/empty-certificate-chain-on-internode-handshake-with-different-certificate-on-each-node/332836)

<div class="topic-metadata">

**Author:** [@Diana\_Mihutescu](https://discuss.elastic.co/u/Diana_Mihutescu)\
**Replies:** 0\
**Last updated:** [May 8, 2023, 5:49pm UTC](https://discuss.elastic.co/t/empty-certificate-chain-on-internode-handshake-with-different-certificate-on-each-node/332836 "2023-05-08T17:49:54Z")

</div>

Hello, I configured a two nodes cluster with xpack.security.enabled: true xpack.security.http.ssl.enabled: true xpack.security.transport.ssl.enabled: true xpack.security.transport.ssl.verification\_mode: "certificate" x…

---

## [Metric Aggregations on Multiple Filters](https://discuss.elastic.co/t/metric-aggregations-on-multiple-filters/332662)

<div class="topic-metadata">

**Author:** [@hi\_xavier](https://discuss.elastic.co/u/hi_xavier)\
**Replies:** 2\
**Last updated:** [May 8, 2023, 5:56pm UTC](https://discuss.elastic.co/t/metric-aggregations-on-multiple-filters/332662 "2023-05-08T17:56:45Z")

</div>

Hello, Is there a way to run the a metric aggregation (value count for example) on multiple filters. For example, I'm currently able to get the counts of successes and errors all users are getting with the following ag…

---

## ["The processor action grok does not exist" in FileBeat. Why ? (Custom Logs Integration)](https://discuss.elastic.co/t/the-processor-action-grok-does-not-exist-in-filebeat-why-custom-logs-integration/332756)

<div class="topic-metadata">

**Author:** [@mehdi-lamrani](https://discuss.elastic.co/u/mehdi-lamrani)\
**Replies:** 3\
**Last updated:** [May 8, 2023, 4:00pm UTC](https://discuss.elastic.co/t/the-processor-action-grok-does-not-exist-in-filebeat-why-custom-logs-integration/332756 "2023-05-08T16:00:17Z")

</div>

I am a bit confused here. Grok is available in Ingest Processors but not in Filebeat processors May I ask why ? :thinking: I was hoping to do this , but it breaks, as I am getting the following error : \[elastic\_a…

---

## [Watcher configurtion](https://discuss.elastic.co/t/watcher-configurtion/332827)

<div class="topic-metadata">

**Author:** [@prithvi](https://discuss.elastic.co/u/prithvi)\
**Replies:** 0\
**Last updated:** [May 8, 2023, 2:34pm UTC](https://discuss.elastic.co/t/watcher-configurtion/332827 "2023-05-08T14:34:00Z")

</div>

Hi, Let me explain my architecture here, we have 3 master nodes and 10 data nodes. We need to configure watcher to trigger email alert. challenge here it is very secured environment. anyone pleas ehelp me to configure t…

---

## [Is the dot product score calculation for the vector of byte element\_type correct? I think it is a bug](https://discuss.elastic.co/t/is-the-dot-product-score-calculation-for-the-vector-of-byte-element-type-correct-i-think-it-is-a-bug/331033)

<div class="topic-metadata">

**Author:** [@wangyanbin](https://discuss.elastic.co/u/wangyanbin)\
**Replies:** 6\
**Last updated:** [May 8, 2023, 1:58pm UTC](https://discuss.elastic.co/t/is-the-dot-product-score-calculation-for-the-vector-of-byte-element-type-correct-i-think-it-is-a-bug/331033 "2023-05-08T13:58:10Z")

</div>

I found the dot product score calculation for the vector of byte element\_type is wrong: 0.5 + (dot\_product(query, vector) / (32768 \* dims)) which is same as : 0.5 + (dot\_product(query, vector) / (128\*128\*2\* dims)) ref…

---

## [Search for an exact Date, ignoring the time\_zone](https://discuss.elastic.co/t/search-for-an-exact-date-ignoring-the-time-zone/332716)

<div class="topic-metadata">

**Author:** [@wil93](https://discuss.elastic.co/u/wil93)\
**Replies:** 5\
**Last updated:** [May 8, 2023, 12:47pm UTC](https://discuss.elastic.co/t/search-for-an-exact-date-ignoring-the-time-zone/332716 "2023-05-08T12:47:16Z")

</div>

Given the following document: PUT /examples/\_doc/1 { "item": "Phone X", "price": 799, "lastUpdateDate" : "2023-05-01T01:00:00+02:00" } No explicit 'Mapping' for index 'examples' is provided (Elasticsearch will t…

---

## [Formatted time string with nanoseconds is not converted to nanosecond timestamp value when sorting on \_search queries](https://discuss.elastic.co/t/formatted-time-string-with-nanoseconds-is-not-converted-to-nanosecond-timestamp-value-when-sorting-on-search-queries/330046)

<div class="topic-metadata">

**Author:** [@jsun-m](https://discuss.elastic.co/u/jsun-m)\
**Replies:** 5\
**Last updated:** [May 8, 2023, 12:04pm UTC](https://discuss.elastic.co/t/formatted-time-string-with-nanoseconds-is-not-converted-to-nanosecond-timestamp-value-when-sorting-on-search-queries/330046 "2023-05-08T12:04:27Z")

</div>

Query: return { "sort": \[ { "time": "desc" }, \], "\_source": \["@timestamp", "message", "time"\], "runtime\_mappings": { "date\_has\_nanos": …

---

## [Elasticsearch upgrade](https://discuss.elastic.co/t/elasticsearch-upgrade/332805)

<div class="topic-metadata">

**Author:** [@Krzysztof\_Dabrowski](https://discuss.elastic.co/u/Krzysztof_Dabrowski)\
**Replies:** 4\
**Last updated:** [May 8, 2023, 11:44am UTC](https://discuss.elastic.co/t/elasticsearch-upgrade/332805 "2023-05-08T11:44:10Z")

</div>

Hey. I wanted to upgrade elasticsearch from 7.16 to 8.7. First I upgraded ES to 7.17 but I didn't restarted the service and immediately upgraded to 8.7. Now Elasticsearch wont start due to error: cannot upgrade a node f…

---

## [Elasticsearch 7.10.2 backup](https://discuss.elastic.co/t/elasticsearch-7-10-2-backup/332642)

<div class="topic-metadata">

**Author:** [@jomaguca](https://discuss.elastic.co/u/jomaguca)\
**Replies:** 20\
**Last updated:** [May 8, 2023, 11:21am UTC](https://discuss.elastic.co/t/elasticsearch-7-10-2-backup/332642 "2023-05-08T11:21:52Z")

</div>

Hi everyone My name is José Manuel and I am trying to make a back from elasticsearch 7.10.2, but show me the next error # curl -X PUT localhost:9200/\_snapshot/my\_backup?pretty -H 'Content-Type: application/json' -d '{…

---

## [Alias creation](https://discuss.elastic.co/t/alias-creation/332273)

<div class="topic-metadata">

**Author:** [@sebinnsebastiann](https://discuss.elastic.co/u/sebinnsebastiann)\
**Replies:** 4\
**Last updated:** [May 8, 2023, 8:55am UTC](https://discuss.elastic.co/t/alias-creation/332273 "2023-05-08T08:55:08Z")

</div>

I deployed efk-8.7.0 using kubernetes. elasticsearch: docker.elastic.co/elasticsearch/elasticsearch:8.7.0 kibana: docker.elastic.co/kibana/kibana:8.7.0 fluentbit: fluent/fluent-bit:2.1.1 Everyday logs are created …

---

## [Nested document or separate index](https://discuss.elastic.co/t/nested-document-or-separate-index/331011)

<div class="topic-metadata">

**Author:** [@Rishabh\_Jain1](https://discuss.elastic.co/u/Rishabh_Jain1)\
**Replies:** 2\
**Last updated:** [May 8, 2023, 6:23am UTC](https://discuss.elastic.co/t/nested-document-or-separate-index/331011 "2023-05-08T06:23:10Z")

</div>

Hi I want to use elasticsearch in our company. The usage is as following: We have million of influencers and each influencers have 1000s of posts just like instagram. I have 2 use cases: Search among these posts and …

---

## [ES hadoop spark connector having a issue with nested json](https://discuss.elastic.co/t/es-hadoop-spark-connector-having-a-issue-with-nested-json/332551)

<div class="topic-metadata">

**Author:** [@Kuldeep\_Pal](https://discuss.elastic.co/u/Kuldeep_Pal)\
**Replies:** 3\
**Last updated:** [May 4, 2023, 3:52pm UTC](https://discuss.elastic.co/t/es-hadoop-spark-connector-having-a-issue-with-nested-json/332551 "2023-05-04T15:52:26Z")

</div>

org.elasticsearch.hadoop.rest.EsHadoopParsingException: org.elasticsearch.hadoop.EsHadoopIllegalStateException: Position for 'contacts.phone' not found in row; typically this is caused by a mapping inconsistency Not abl…

---

## [Problems connecting to ES from Databricks using spark connector](https://discuss.elastic.co/t/problems-connecting-to-es-from-databricks-using-spark-connector/332411)

<div class="topic-metadata">

**Author:** [@lhfo](https://discuss.elastic.co/u/lhfo)\
**Replies:** 2\
**Last updated:** [May 5, 2023, 8:52am UTC](https://discuss.elastic.co/t/problems-connecting-to-es-from-databricks-using-spark-connector/332411 "2023-05-05T08:52:52Z")

</div>

Hi all, I am trying to connect with ES from our Databricks cluster. I have successfully installed elasticsearch-spark-30\_2.12:8.4.3 on the cluster and confirmed that the elastic version == 8.3.4. I am able to query d…

---

## [How to change the cluster name of an elk cluster with 3 master nodes](https://discuss.elastic.co/t/how-to-change-the-cluster-name-of-an-elk-cluster-with-3-master-nodes/332564)

<div class="topic-metadata">

**Author:** [@coy\_aprieto](https://discuss.elastic.co/u/coy_aprieto)\
**Replies:** 3\
**Last updated:** [May 5, 2023, 9:51am UTC](https://discuss.elastic.co/t/how-to-change-the-cluster-name-of-an-elk-cluster-with-3-master-nodes/332564 "2023-05-05T09:51:33Z")

</div>

Hi, I'm trying to find a way to change the cluster name of my whole elk cluster (7 data nodes, 3 master). If i change the cluster name in config and restart a non-current-master node, it will fail to rejoin cluster aft…

---

## [Convert text field to date in ingest pipeline](https://discuss.elastic.co/t/convert-text-field-to-date-in-ingest-pipeline/332595)

<div class="topic-metadata">

**Author:** [@KentLee](https://discuss.elastic.co/u/KentLee)\
**Replies:** 2\
**Last updated:** [May 5, 2023, 12:59pm UTC](https://discuss.elastic.co/t/convert-text-field-to-date-in-ingest-pipeline/332595 "2023-05-05T12:59:25Z")

</div>

Hi, I am creating a ingest pipeline to ingest application log to elastic and I have the log line format as follow: \[2023-05-03 16:12:19,420\] - \[Application Name\] - \[INFO\] - Log details goes here Based on this format I…

---

## [Elasticsearch IndexLifecycleRunner part of source code, log level Setting is not appropriate?](https://discuss.elastic.co/t/elasticsearch-indexlifecyclerunner-part-of-source-code-log-level-setting-is-not-appropriate/332542)

<div class="topic-metadata">

**Author:** [@yujie\_wang](https://discuss.elastic.co/u/yujie_wang)\
**Replies:** 1\
**Last updated:** [May 6, 2023, 2:37am UTC](https://discuss.elastic.co/t/elasticsearch-indexlifecyclerunner-part-of-source-code-log-level-setting-is-not-appropriate/332542 "2023-05-06T02:37:14Z")

</div>

Hi, Recently, I've been reading the source code of the latest version (8.7.1) of Elasticsearch and I have a question about the log level settings that I can't figure out. I noticed that the "current step \[{}\] for index…

---

## [ExponentialDate function in new .Net client for v.8](https://discuss.elastic.co/t/exponentialdate-function-in-new-net-client-for-v-8/332704)

<div class="topic-metadata">

**Author:** [@Martin\_Hallonqvist](https://discuss.elastic.co/u/Martin_Hallonqvist)\
**Replies:** 1\
**Last updated:** [May 8, 2023, 5:16am UTC](https://discuss.elastic.co/t/exponentialdate-function-in-new-net-client-for-v-8/332704 "2023-05-08T05:16:01Z")

</div>

I'm trying to migrate older .Net code using the NEST client to adopting the new Elastic.Clients.Elasticsearch .Net client but I'm having problem implementing the ExponentialDate function. In our prior solution, we had a…

---

## [Any logs to monitor ingest pipelines ? (Fleet + Custom Log Integration + Custom configurations)](https://discuss.elastic.co/t/any-logs-to-monitor-ingest-pipelines-fleet-custom-log-integration-custom-configurations/332761)

<div class="topic-metadata">

**Author:** [@mehdi-lamrani](https://discuss.elastic.co/u/mehdi-lamrani)\
**Replies:** 1\
**Last updated:** [May 8, 2023, 3:35am UTC](https://discuss.elastic.co/t/any-logs-to-monitor-ingest-pipelines-fleet-custom-log-integration-custom-configurations/332761 "2023-05-08T03:35:48Z")

</div>

8.7 here I've configured a basic pipeline for fleet and elastic-agent using custom configuration (see below) when the pipeline fails documents are not inserted in the data stream. How to get some logs about how did th…

---

## [Elasticsearch cluster red state](https://discuss.elastic.co/t/elasticsearch-cluster-red-state/332722)

<div class="topic-metadata">

**Author:** [@mark\_twin75](https://discuss.elastic.co/u/mark_twin75)\
**Replies:** 1\
**Last updated:** [May 8, 2023, 3:31am UTC](https://discuss.elastic.co/t/elasticsearch-cluster-red-state/332722 "2023-05-08T03:31:46Z")

</div>

Hello all, I am trying to reset elastic user password , while resting password with bin/elasticsearch-reset-password -u elastic command ,my cluster status changed from yellow state to red state . all master nodes are …

---

## [Example of dot\_product similarity on dense\_vector field index document](https://discuss.elastic.co/t/example-of-dot-product-similarity-on-dense-vector-field-index-document/332396)

<div class="topic-metadata">

**Author:** [@adrian-arapiles](https://discuss.elastic.co/u/adrian-arapiles)\
**Replies:** 2\
**Last updated:** [May 8, 2023, 3:22am UTC](https://discuss.elastic.co/t/example-of-dot-product-similarity-on-dense-vector-field-index-document/332396 "2023-05-08T03:22:32Z")

</div>

Hi, I'm trying to benchmark different possibilities with dense\_vector and knn search. I want to test cosine similarity vs dot\_produce similarity because in documentation says that dot\_product is a optimized way to perf…

---

## [Parallel execution of bulk request](https://discuss.elastic.co/t/parallel-execution-of-bulk-request/332627)

<div class="topic-metadata">

**Author:** [@Daniel\_Schneider](https://discuss.elastic.co/u/Daniel_Schneider)\
**Replies:** 5\
**Last updated:** [May 8, 2023, 3:19am UTC](https://discuss.elastic.co/t/parallel-execution-of-bulk-request/332627 "2023-05-08T03:19:21Z")

</div>

Hi, In topic: Parallel execution of bulk request it was clarified that if a bulk contains multiple operations on the same document then they are processed in order. On the other hand in documentation I did not find any…

---

## [Migrate snapshot repository](https://discuss.elastic.co/t/migrate-snapshot-repository/332510)

<div class="topic-metadata">

**Author:** [@anon90868141](https://discuss.elastic.co/u/anon90868141)\
**Replies:** 1\
**Last updated:** [May 8, 2023, 3:01am UTC](https://discuss.elastic.co/t/migrate-snapshot-repository/332510 "2023-05-08T03:01:02Z")

</div>

Hello, I backuped my data into a nfs share and now received a bigger one, so I have to migrate the old snapshot repository into the new nfs share because I want to keep the data. Can I just copy the files from the moun…

---

## [Understanding node.max\_local\_storage\_nodes?](https://discuss.elastic.co/t/understanding-node-max-local-storage-nodes/332682)

<div class="topic-metadata">

**Author:** [@lakh](https://discuss.elastic.co/u/lakh)\
**Replies:** 1\
**Last updated:** [May 8, 2023, 2:51am UTC](https://discuss.elastic.co/t/understanding-node-max-local-storage-nodes/332682 "2023-05-08T02:51:05Z")

</div>

Hi, my setup is that I have multiple people running their own docker containers on different machines that have access to shared storage. I've put the elasticsearch- folder in that shared location (so the /data/index fol…

---

## [Why traffic between filebeat and elasticsearch contains “Apache Struts2 OGNL Remote Code Execution Vulnerability”](https://discuss.elastic.co/t/why-traffic-between-filebeat-and-elasticsearch-contains-apache-struts2-ognl-remote-code-execution-vulnerability/332505)

<div class="topic-metadata">

**Author:** [@wlane](https://discuss.elastic.co/u/wlane)\
**Replies:** 3\
**Last updated:** [May 8, 2023, 2:44am UTC](https://discuss.elastic.co/t/why-traffic-between-filebeat-and-elasticsearch-contains-apache-struts2-ognl-remote-code-execution-vulnerability/332505 "2023-05-08T02:44:07Z")

</div>

Hi guys, We used Filebeat to send application logs to Elasticsearch. And these two components are deployed in different environments with firewall PaloAlto in between. We found that after transmitting for a period of t…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=261)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=263)
