# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=272

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 273

---

## [Configure Plugin through Cluster Settings API - Listen for updates](https://discuss.elastic.co/t/configure-plugin-through-cluster-settings-api-listen-for-updates/329946)

<div class="topic-metadata">

**Author:** [@smillies](https://discuss.elastic.co/u/smillies)\
**Replies:** 5\
**Last updated:** [April 14, 2023, 3:32pm UTC](https://discuss.elastic.co/t/configure-plugin-through-cluster-settings-api-listen-for-updates/329946 "2023-04-14T15:32:05Z")

</div>

Hello there, I am writing a plugin and would like to configure it through the cluster settings API. I have overwritten getSettings, and so far so good. I can also update my dynamic settings through the cluster settings…

---

## [Restrict the Number of Unique term to be indexed for a Document](https://discuss.elastic.co/t/restrict-the-number-of-unique-term-to-be-indexed-for-a-document/329060)

<div class="topic-metadata">

**Author:** [@siddhartha\_c](https://discuss.elastic.co/u/siddhartha_c)\
**Replies:** 6\
**Last updated:** [April 14, 2023, 3:15pm UTC](https://discuss.elastic.co/t/restrict-the-number-of-unique-term-to-be-indexed-for-a-document/329060 "2023-04-14T15:15:10Z")

</div>

Hi , I have a requirement wherein I need to restrict the number of unique terms to Index for any Document to 1000. Any unique terms beyond 1000 for a particular document should be ignored and not Index during Indexing. I…

---

## [Generate node certificate](https://discuss.elastic.co/t/generate-node-certificate/329951)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 4\
**Last updated:** [April 14, 2023, 2:51pm UTC](https://discuss.elastic.co/t/generate-node-certificate/329951 "2023-04-14T14:51:02Z")

</div>

What am I doing wrong? missing some option, parameter? I have my cluster setup with certificate and working fine with following config on all nodes. it was created using /usr/share/elasticsearch/bin/elasticsearch-cert…

---

## [How do you pass custom environment variable on Amazon Elastic Beanstalk (AWS EBS)?](https://discuss.elastic.co/t/how-do-you-pass-custom-environment-variable-on-amazon-elastic-beanstalk-aws-ebs/329972)

<div class="topic-metadata">

**Author:** [@karthik\_kumar](https://discuss.elastic.co/u/karthik_kumar)\
**Replies:** 1\
**Last updated:** [April 14, 2023, 1:38pm UTC](https://discuss.elastic.co/t/how-do-you-pass-custom-environment-variable-on-amazon-elastic-beanstalk-aws-ebs/329972 "2023-04-14T13:38:40Z")

</div>

The Amazon Elastic Beanstalk blurb says: Elastic Beanstalk lets you "open the hood" and retain full control ... even pass environment variables through the Elastic Beanstalk console. How to pass other environment var…

---

## [Winlogbeat not pushing logs to elastic](https://discuss.elastic.co/t/winlogbeat-not-pushing-logs-to-elastic/330014)

<div class="topic-metadata">

**Author:** [@Ben\_C8400](https://discuss.elastic.co/u/Ben_C8400)\
**Replies:** 0\
**Last updated:** [April 14, 2023, 1:20pm UTC](https://discuss.elastic.co/t/winlogbeat-not-pushing-logs-to-elastic/330014 "2023-04-14T13:20:16Z")

</div>

Hi all, I've been trying to setup winlogbeat, but have had no success so far. After running the script i get following result, not giving any errors. On Kibana it actually shows the index template, and the dashboards …

---

## [Azure snapshot issue - getting: blob\_storage\_exception","reason":"Status code 400, "﻿\\nBlobTypeNotSupportedBlock blobs are not supported](https://discuss.elastic.co/t/azure-snapshot-issue-getting-blob-storage-exception-reason-status-code-400-nblobtypenotsupportedblock-blobs-are-not-supported/328690)

<div class="topic-metadata">

**Author:** [@Mariusko82](https://discuss.elastic.co/u/Mariusko82)\
**Replies:** 1\
**Last updated:** [April 14, 2023, 12:43pm UTC](https://discuss.elastic.co/t/azure-snapshot-issue-getting-blob-storage-exception-reason-status-code-400-nblobtypenotsupportedblock-blobs-are-not-supported/328690 "2023-04-14T12:43:01Z")

</div>

Elasticsearch Version Version: 8.2.3, Build: default/docker/9905bfb62a3f0b044948376b4f607f70a8a151b4/2022-06-08T22:21:36.455508792Z, JVM: 18.0.1.1 Installed Plugins No response Java Version bundled OS Version Linux el…

---

## [Elasticsearch is not allowing me to upload news category dataset](https://discuss.elastic.co/t/elasticsearch-is-not-allowing-me-to-upload-news-category-dataset/330001)

<div class="topic-metadata">

**Author:** [@Arvind\_Singharpuria](https://discuss.elastic.co/u/Arvind_Singharpuria)\
**Replies:** 2\
**Last updated:** [April 14, 2023, 12:18pm UTC](https://discuss.elastic.co/t/elasticsearch-is-not-allowing-me-to-upload-news-category-dataset/330001 "2023-04-14T12:18:45Z")

</div>

While uploading the dataset, it is showing me this error

---

## [Negative boosting via elastic cloud admin panel](https://discuss.elastic.co/t/negative-boosting-via-elastic-cloud-admin-panel/329999)

<div class="topic-metadata">

**Author:** [@oleksiiorel](https://discuss.elastic.co/u/oleksiiorel)\
**Replies:** 0\
**Last updated:** [April 14, 2023, 10:39am UTC](https://discuss.elastic.co/t/negative-boosting-via-elastic-cloud-admin-panel/329999 "2023-04-14T10:39:21Z")

</div>

Hi guys! Is it possible to set negative boosting for a specific field via elastic cloud admin panel ( App search). I found an option to set only positive boosting. I know how to do it with API, but is there any way to do…

---

## [Search with cluster wildcard returns data from non-matching indices](https://discuss.elastic.co/t/search-with-cluster-wildcard-returns-data-from-non-matching-indices/329990)

<div class="topic-metadata">

**Author:** [@VincentR](https://discuss.elastic.co/u/VincentR)\
**Replies:** 0\
**Last updated:** [April 14, 2023, 9:41am UTC](https://discuss.elastic.co/t/search-with-cluster-wildcard-returns-data-from-non-matching-indices/329990 "2023-04-14T09:41:24Z")

</div>

Hello, I am currently migrating from Elastic Search 7.17.8 to 8.6.2 and I am observing a very strange change of behaviour in the search API. Using the search REST api, when the index pattern (target) contains both a …

---

## [Pipelined bucket aggregation](https://discuss.elastic.co/t/pipelined-bucket-aggregation/329989)

<div class="topic-metadata">

**Author:** [@HansPeterSloot](https://discuss.elastic.co/u/HansPeterSloot)\
**Replies:** 0\
**Last updated:** [April 14, 2023, 9:38am UTC](https://discuss.elastic.co/t/pipelined-bucket-aggregation/329989 "2023-04-14T09:38:56Z")

</div>

Hello I am ingesting logs from different servers into elastic and want to be alerted when a server suddenly stops sending data. For this I have come up with this aggregation: GET .xxxt\*/\_search?size=0 { "query": { …

---

## [Help with Nest Fluent DSL query](https://discuss.elastic.co/t/help-with-nest-fluent-dsl-query/329982)

<div class="topic-metadata">

**Author:** [@vdelcampo](https://discuss.elastic.co/u/vdelcampo)\
**Replies:** 0\
**Last updated:** [April 14, 2023, 8:08am UTC](https://discuss.elastic.co/t/help-with-nest-fluent-dsl-query/329982 "2023-04-14T08:08:07Z")

</div>

Hi! I need help with below query. I´m using .NET Nest library, and I need to convert it to Fluent DSL: GET md-tpmiddle-f5-\*/\_count { "query": { "bool": { "filter": \[ { "bool": { …

---

## [How long does it take to clone an index with 2TB of data?](https://discuss.elastic.co/t/how-long-does-it-take-to-clone-an-index-with-2tb-of-data/329969)

<div class="topic-metadata">

**Author:** [@dilshadpaleri](https://discuss.elastic.co/u/dilshadpaleri)\
**Replies:** 2\
**Last updated:** [April 14, 2023, 7:45am UTC](https://discuss.elastic.co/t/how-long-does-it-take-to-clone-an-index-with-2tb-of-data/329969 "2023-04-14T07:45:41Z")

</div>

Hi, I want to create an identical copy of an existing index with about 2 TB of data, Clone API seems to be the best option here. To clone an index, the index must be marked as read-only, so it will block my application …

---

## [How to use elastic in wiki js](https://discuss.elastic.co/t/how-to-use-elastic-in-wiki-js/329978)

<div class="topic-metadata">

**Author:** [@Kwa](https://discuss.elastic.co/u/Kwa)\
**Replies:** 0\
**Last updated:** [April 14, 2023, 7:13am UTC](https://discuss.elastic.co/t/how-to-use-elastic-in-wiki-js/329978 "2023-04-14T07:13:00Z")

</div>

Hi everyone, i have elasticsearch installed locally in a VM with version 7.17.8. By calling http://localhost:9200 in the browser i get the information like cluster\_name, cluster\_uuid etc. In elasticsearch.yml i have en…

---

## [Elastic 8 not search with hyphen](https://discuss.elastic.co/t/elastic-8-not-search-with-hyphen/327824)

<div class="topic-metadata">

**Author:** [@suresh\_chaudhari](https://discuss.elastic.co/u/suresh_chaudhari)\
**Replies:** 6\
**Last updated:** [April 14, 2023, 6:50am UTC](https://discuss.elastic.co/t/elastic-8-not-search-with-hyphen/327824 "2023-04-14T06:50:40Z")

</div>

I have documents with id fields {id:domain-837}{id:domain-838} these are automatically stored using mapping with data type keyword. "id": { "type": "text", "fields": { "keyword": { "ignore\_above": 256, "type": "keywor…

---

## [After creating the snapshot, getting snapshot\_missing\_exception and no\_such\_file\_exception](https://discuss.elastic.co/t/after-creating-the-snapshot-getting-snapshot-missing-exception-and-no-such-file-exception/329970)

<div class="topic-metadata">

**Author:** [@Ramesh\_Perumal](https://discuss.elastic.co/u/Ramesh_Perumal)\
**Replies:** 1\
**Last updated:** [April 14, 2023, 6:27am UTC](https://discuss.elastic.co/t/after-creating-the-snapshot-getting-snapshot-missing-exception-and-no-such-file-exception/329970 "2023-04-14T06:27:48Z")

</div>

Hi All, I have created the repository to create snapshot with the following steps in two node (machine) cluster: curl -XPUT "https://:9200$HOSTNAME/\_snapshot/test13?verify=false" -H 'Content-Type: application/json' -…

---

## [Filebeat Input X kafka topics](https://discuss.elastic.co/t/filebeat-input-x-kafka-topics/329950)

<div class="topic-metadata">

**Author:** [@luizsouzagarcia](https://discuss.elastic.co/u/luizsouzagarcia)\
**Replies:** 1\
**Last updated:** [April 13, 2023, 9:49pm UTC](https://discuss.elastic.co/t/filebeat-input-x-kafka-topics/329950 "2023-04-13T21:49:21Z")

</div>

Is it possible to consume all topics of a kafka cluster through filebeat input? ex: type: kafka hosts: - ${KAFKA\_BROKERCONNECT} topics: \["\*"\]. --------\> It doesn't work, I've tried several regex =/ group\_id: "kaf…

---

## [From the time to time Elastic's docs.count value is updated by logstash. Is it normal?](https://discuss.elastic.co/t/from-the-time-to-time-elastics-docs-count-value-is-updated-by-logstash-is-it-normal/329875)

<div class="topic-metadata">

**Author:** [@german](https://discuss.elastic.co/u/german)\
**Replies:** 4\
**Last updated:** [April 13, 2023, 7:42pm UTC](https://discuss.elastic.co/t/from-the-time-to-time-elastics-docs-count-value-is-updated-by-logstash-is-it-normal/329875 "2023-04-13T19:42:41Z")

</div>

Hi everybody, I have a little question about elastic's docs.count as I have noticed that it's not updated constantly. For example: (Don't pay attention to credentials. It's only a lab test). The 3487 docs.count val…

---

## [Same synonyms in different synonym files](https://discuss.elastic.co/t/same-synonyms-in-different-synonym-files/329358)

<div class="topic-metadata">

**Author:** [@antoinelefloch](https://discuss.elastic.co/u/antoinelefloch)\
**Replies:** 4\
**Last updated:** [April 13, 2023, 6:26pm UTC](https://discuss.elastic.co/t/same-synonyms-in-different-synonym-files/329358 "2023-04-13T18:26:19Z")

</div>

Hello, it seems synonyms in 2nd file are not taken into account if already used in 1st file. In 1st file, I have: aaa,bbb In second file, I have: aaa,synaaa bbb,synbbb ccc,synccc When I do the \_analyze { "expl…

---

## [How can I check the avaiability of a Heartbeat monitor in Elasticsearch?](https://discuss.elastic.co/t/how-can-i-check-the-avaiability-of-a-heartbeat-monitor-in-elasticsearch/329942)

<div class="topic-metadata">

**Author:** [@SamuelSMendes](https://discuss.elastic.co/u/SamuelSMendes)\
**Replies:** 2\
**Last updated:** [April 13, 2023, 4:59pm UTC](https://discuss.elastic.co/t/how-can-i-check-the-avaiability-of-a-heartbeat-monitor-in-elasticsearch/329942 "2023-04-13T16:59:47Z")

</div>

I have a few monitors in heartbeat which I am going to plan a few alerts. One of the alerts should be aiming for the avaiability of a monitor in the uptime in a range of a whole period of time (could be a day or a month)…

---

## [Programmatically trigger the search action (React UI)](https://discuss.elastic.co/t/programmatically-trigger-the-search-action-react-ui/329943)

<div class="topic-metadata">

**Author:** [@Olivia\_Xu](https://discuss.elastic.co/u/Olivia_Xu)\
**Replies:** 0\
**Last updated:** [April 13, 2023, 3:52pm UTC](https://discuss.elastic.co/t/programmatically-trigger-the-search-action-react-ui/329943 "2023-04-13T15:52:34Z")

</div>

We hope to programmatically trigger the search action in some cases without the user having to type and click the search button from the front end. We are using React UI components. Is this possible to achieve? We have t…

---

## [Getting updated documents](https://discuss.elastic.co/t/getting-updated-documents/329910)

<div class="topic-metadata">

**Author:** [@Ismet](https://discuss.elastic.co/u/Ismet)\
**Replies:** 5\
**Last updated:** [April 13, 2023, 3:21pm UTC](https://discuss.elastic.co/t/getting-updated-documents/329910 "2023-04-13T15:21:11Z")

</div>

How to get all documents that have been edited in the last 24 hours and return only the id and attributes that have been changed? Is it possible to do this automatically via Elasticsearch without tracking each attribute?…

---

## [Reindexing with a script including hashing](https://discuss.elastic.co/t/reindexing-with-a-script-including-hashing/329937)

<div class="topic-metadata">

**Author:** [@hannesulrich](https://discuss.elastic.co/u/hannesulrich)\
**Replies:** 0\
**Last updated:** [April 13, 2023, 2:30pm UTC](https://discuss.elastic.co/t/reindexing-with-a-script-including-hashing/329937 "2023-04-13T14:30:50Z")

</div>

Hey, we are currently looking into reindexing our indices and adding a new field which is the hash fingerprint of a larger field. Our approach is to pass the script to the reindexing api, but it won't work. Our request…

---

## [Versioning in Update API](https://discuss.elastic.co/t/versioning-in-update-api/329934)

<div class="topic-metadata">

**Author:** [@Mykyta\_Piddubskiy](https://discuss.elastic.co/u/Mykyta_Piddubskiy)\
**Replies:** 0\
**Last updated:** [April 13, 2023, 1:53pm UTC](https://discuss.elastic.co/t/versioning-in-update-api/329934 "2023-04-13T13:53:41Z")

</div>

Hello, I need to do version checks when I do some operations in Elastic. Example: I want to use date instance in milliseconds as a version to reject any old doc updates. So I chose \_version as a suitable mechanism fo…

---

## [Can I save the fields that I only want?](https://discuss.elastic.co/t/can-i-save-the-fields-that-i-only-want/329736)

<div class="topic-metadata">

**Author:** [@lilyyy](https://discuss.elastic.co/u/lilyyy)\
**Replies:** 2\
**Last updated:** [April 13, 2023, 1:29pm UTC](https://discuss.elastic.co/t/can-i-save-the-fields-that-i-only-want/329736 "2023-04-13T13:29:34Z")

</div>

Hello all. I collect the network packet data through the 'tshark' and then the packet is filtered through logstash. But there are a lot of fields in packet data so when I see data in the elasticsearch, there are a lot …

---

## [Unable to start logstash on FreeBSD](https://discuss.elastic.co/t/unable-to-start-logstash-on-freebsd/329874)

<div class="topic-metadata">

**Author:** [@odhiambo](https://discuss.elastic.co/u/odhiambo)\
**Replies:** 4\
**Last updated:** [April 13, 2023, 1:05pm UTC](https://discuss.elastic.co/t/unable-to-start-logstash-on-freebsd/329874 "2023-04-13T13:05:45Z")

</div>

I have installed logstash on FreeBSD. For some reason, starting or stopping it prompts for Kerberos authentication. I am not sure where it is getting this from, although it does seem there is some kerberos config somewhe…

---

## [Search using special characters in standard analyzer](https://discuss.elastic.co/t/search-using-special-characters-in-standard-analyzer/329920)

<div class="topic-metadata">

**Author:** [@Umang\_Pachaury](https://discuss.elastic.co/u/Umang_Pachaury)\
**Replies:** 0\
**Last updated:** [April 13, 2023, 10:36am UTC](https://discuss.elastic.co/t/search-using-special-characters-in-standard-analyzer/329920 "2023-04-13T10:36:23Z")

</div>

Hi guys, I have a cluster running and I have run into a problem involving including special characters in my search query. Now I did not setup the mapping for the index the mapping is dynamic and the analyzer is also st…

---

## [Elasticsearch data migration to elastic cloud](https://discuss.elastic.co/t/elasticsearch-data-migration-to-elastic-cloud/329897)

<div class="topic-metadata">

**Author:** [@amaan05](https://discuss.elastic.co/u/amaan05)\
**Replies:** 1\
**Last updated:** [April 13, 2023, 7:43am UTC](https://discuss.elastic.co/t/elasticsearch-data-migration-to-elastic-cloud/329897 "2023-04-13T07:43:46Z")

</div>

Hi, I want to migrate data from elasticsearch to elastic cloud. kindly suggest how can I do the same. Thanks,

---

## [What are fees for cross cluster replication and cross region replication and search](https://discuss.elastic.co/t/what-are-fees-for-cross-cluster-replication-and-cross-region-replication-and-search/329886)

<div class="topic-metadata">

**Author:** [@suresh\_chaudhari](https://discuss.elastic.co/u/suresh_chaudhari)\
**Replies:** 1\
**Last updated:** [April 13, 2023, 7:21am UTC](https://discuss.elastic.co/t/what-are-fees-for-cross-cluster-replication-and-cross-region-replication-and-search/329886 "2023-04-13T07:21:34Z")

</div>

As per this link for platinum it is 125 dollars per month. How much it is for onprem will it increase if we use 100GB RAM 2 tb storage for each node.

---

## [Elasticsearch index heavy reads](https://discuss.elastic.co/t/elasticsearch-index-heavy-reads/327739)

<div class="topic-metadata">

**Author:** [@hopa56](https://discuss.elastic.co/u/hopa56)\
**Replies:** 12\
**Last updated:** [April 13, 2023, 6:55am UTC](https://discuss.elastic.co/t/elasticsearch-index-heavy-reads/327739 "2023-04-13T06:55:56Z")

</div>

i have 3 indices in the cluster that are read-heavy and the load on the nodes on which the shards of these indices are located is very high (the indexes are small, the largest index weighs 5 gigabytes) we are thinking …

---

## [Elasticsearch local computer, use it on a dreamiest website](https://discuss.elastic.co/t/elasticsearch-local-computer-use-it-on-a-dreamiest-website/329879)

<div class="topic-metadata">

**Author:** [@Francisco\_Martell](https://discuss.elastic.co/u/Francisco_Martell)\
**Replies:** 1\
**Last updated:** [April 13, 2023, 6:24am UTC](https://discuss.elastic.co/t/elasticsearch-local-computer-use-it-on-a-dreamiest-website/329879 "2023-04-13T06:24:30Z")

</div>

if I have Elasticsearch on my local computer running, can I make a search bar and query data to display on a website I host with dream host? Sorry for anybody questions, all these topics are new to me and I haven't foun…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=271)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=273)
