# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=300

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 301

---

## [Synonyms Exact match Multiword Search](https://discuss.elastic.co/t/synonyms-exact-match-multiword-search/325439)

<div class="topic-metadata">

**Author:** [@Sahil5](https://discuss.elastic.co/u/Sahil5)\
**Replies:** 3\
**Last updated:** [February 15, 2023, 12:34pm UTC](https://discuss.elastic.co/t/synonyms-exact-match-multiword-search/325439 "2023-02-15T12:34:42Z")

</div>

Hi Team, We are looking for solution to search synonyms with exact match. For Example User is searching string - abc xyz abc has synonyms - abc1 abc2 xyz has synonyms - xyz1 xyz2 Data in Index Article1 - test abc1 …

---

## [Logs, metrics and APM on Solaris, HPUX - I know it's not supported - but related question anyway](https://discuss.elastic.co/t/logs-metrics-and-apm-on-solaris-hpux-i-know-its-not-supported-but-related-question-anyway/325598)

<div class="topic-metadata">

**Author:** [@Melee](https://discuss.elastic.co/u/Melee)\
**Replies:** 0\
**Last updated:** [February 15, 2023, 10:30am UTC](https://discuss.elastic.co/t/logs-metrics-and-apm-on-solaris-hpux-i-know-its-not-supported-but-related-question-anyway/325598 "2023-02-15T10:30:29Z")

</div>

Hello together, we are using the elastic stack (elastic agent, APM agent, heartbeat, logstash, kibana). So far so fine. Now, we have some legacy systems esp. Solaris, HPUX and also RHEL 6. There were already multiple …

---

## [Log4j add more fields](https://discuss.elastic.co/t/log4j-add-more-fields/325546)

<div class="topic-metadata">

**Author:** [@manusha\_karunathilak](https://discuss.elastic.co/u/manusha_karunathilak)\
**Replies:** 0\
**Last updated:** [February 15, 2023, 6:18am UTC](https://discuss.elastic.co/t/log4j-add-more-fields/325546 "2023-02-15T06:18:53Z")

</div>

I have setup to write log4j logs to elasticsearch. However it only maps log4j default fields such as level, message and etc. Full log message contains session id in the console log but that part is not mapped by default…

---

## [Elastic Upgrade Issue](https://discuss.elastic.co/t/elastic-upgrade-issue/325470)

<div class="topic-metadata">

**Author:** [@cobdeng](https://discuss.elastic.co/u/cobdeng)\
**Replies:** 3\
**Last updated:** [February 15, 2023, 7:30am UTC](https://discuss.elastic.co/t/elastic-upgrade-issue/325470 "2023-02-15T07:30:44Z")

</div>

Hi We are currently using Elasticsearch 7.16.2 and are now looking at the upgrade process to 7.16.3 and upwards. When we initially installed Elasticsearch, we used the msi installers that were then available as we are …

---

## [Bash: ./bin/elasticsearch: No such file or directory](https://discuss.elastic.co/t/bash-bin-elasticsearch-no-such-file-or-directory/325506)

<div class="topic-metadata">

**Author:** [@samidha\_dubey](https://discuss.elastic.co/u/samidha_dubey)\
**Replies:** 2\
**Last updated:** [February 15, 2023, 6:40am UTC](https://discuss.elastic.co/t/bash-bin-elasticsearch-no-such-file-or-directory/325506 "2023-02-15T06:40:11Z")

</div>

Hello i am facing issue while setting up users for my ELK stack, I setup ELK on docker so my ELK is running as a docker container i used sebp/elk image and my container is running fine i can access kibana dashboard, i …

---

## [Update\_by\_query - empty failures list in response when conflicts=proceed](https://discuss.elastic.co/t/update-by-query-empty-failures-list-in-response-when-conflicts-proceed/325100)

<div class="topic-metadata">

**Author:** [@Przemyslaw\_Mantaj](https://discuss.elastic.co/u/Przemyslaw_Mantaj)\
**Replies:** 1\
**Last updated:** [February 15, 2023, 5:51am UTC](https://discuss.elastic.co/t/update-by-query-empty-failures-list-in-response-when-conflicts-proceed/325100 "2023-02-15T05:51:30Z")

</div>

Continuing the discussion from Update\_by\_query with proceed does not return failure: I repeat @Paul\_Le\_Tilly question. Is it possible to return the failures list when the conflicts option has been set to proceed? Than…

---

## [Error importing Kibana dashboards: fail to import the dashboards in Kibana:](https://discuss.elastic.co/t/error-importing-kibana-dashboards-fail-to-import-the-dashboards-in-kibana/316015)

<div class="topic-metadata">

**Author:** [@Joao\_Malebo](https://discuss.elastic.co/u/Joao_Malebo)\
**Replies:** 6\
**Last updated:** [February 15, 2023, 4:16am UTC](https://discuss.elastic.co/t/error-importing-kibana-dashboards-fail-to-import-the-dashboards-in-kibana/316015 "2023-02-15T04:16:07Z")

</div>

I'm having errors when running the command to check the version information. To load dashboards when Logstash is enabled, you need to disable Logstash output and enable Elasticsearch output: Follow the command and error…

---

## [Elasticsearch + Java - Inconsistent Search/Query time](https://discuss.elastic.co/t/elasticsearch-java-inconsistent-search-query-time/325527)

<div class="topic-metadata">

**Author:** [@Java2avaj](https://discuss.elastic.co/u/Java2avaj)\
**Replies:** 0\
**Last updated:** [February 15, 2023, 3:38am UTC](https://discuss.elastic.co/t/elasticsearch-java-inconsistent-search-query-time/325527 "2023-02-15T03:38:35Z")

</div>

We are searching over 10million documents with a simple query that contains bool and multiple shoulds. But query time is inconsistent- taking sometimes 100ms sometimes 4 seconds. How can we tune this so that query time …

---

## [Editing a managed policy can break Kibana caution](https://discuss.elastic.co/t/editing-a-managed-policy-can-break-kibana-caution/325515)

<div class="topic-metadata">

**Author:** [@David41](https://discuss.elastic.co/u/David41)\
**Replies:** 1\
**Last updated:** [February 14, 2023, 10:54pm UTC](https://discuss.elastic.co/t/editing-a-managed-policy-can-break-kibana-caution/325515 "2023-02-14T22:54:04Z")

</div>

Hi, I am wanting to edit an existing policy and I notice that there is a caution symbol that states that "Editing a managed policy can break Kibana" I am not sure if it will break or not . However there is an option tha…

---

## [Elasticsearch query for \`SELECT id FROM foo WHERE id NOT IN (SELECT id FROM foo WHERE ...)](https://discuss.elastic.co/t/elasticsearch-query-for-select-id-from-foo-where-id-not-in-select-id-from-foo-where/325302)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 4\
**Last updated:** [February 14, 2023, 7:51pm UTC](https://discuss.elastic.co/t/elasticsearch-query-for-select-id-from-foo-where-id-not-in-select-id-from-foo-where/325302 "2023-02-14T19:51:34Z")

</div>

I want to do a "not in present index" type of operation. For example, let's say I have an index called customer\_subscription with just these 4 records: | customer\_id | pay\_date | +-------------+------------+ | …

---

## [Yum is unable to update/install from elastic repo](https://discuss.elastic.co/t/yum-is-unable-to-update-install-from-elastic-repo/325221)

<div class="topic-metadata">

**Author:** [@Thomas3](https://discuss.elastic.co/u/Thomas3)\
**Replies:** 3\
**Last updated:** [February 14, 2023, 2:20pm UTC](https://discuss.elastic.co/t/yum-is-unable-to-update-install-from-elastic-repo/325221 "2023-02-14T14:20:51Z")

</div>

Hello, when trying to perform updates in RHEL8, I'm getting Failed to download metadata for repo 'logstash-7.x': Cannot download repomd.xml: Cannot download repodata/repomd.xml: All mirrors were tried with the follo…

---

## [SnapShot with select indices is still using all indices](https://discuss.elastic.co/t/snapshot-with-select-indices-is-still-using-all-indices/325437)

<div class="topic-metadata">

**Author:** [@tymercer](https://discuss.elastic.co/u/tymercer)\
**Replies:** 2\
**Last updated:** [February 14, 2023, 12:26pm UTC](https://discuss.elastic.co/t/snapshot-with-select-indices-is-still-using-all-indices/325437 "2023-02-14T12:26:00Z")

</div>

Hello, pretty new to ES and everything related to it. Just trying to do a snapshot and only selecting a set of things from 2023 and everything with .xxx in the name as part of it, tons of old data we aren't capable of d…

---

## [Parse different records in 1 document](https://discuss.elastic.co/t/parse-different-records-in-1-document/325471)

<div class="topic-metadata">

**Author:** [@Bart-d-sdlr](https://discuss.elastic.co/u/Bart-d-sdlr)\
**Replies:** 0\
**Last updated:** [February 14, 2023, 12:25pm UTC](https://discuss.elastic.co/t/parse-different-records-in-1-document/325471 "2023-02-14T12:25:52Z")

</div>

Hi, I have a (maybe stupid) question concerning parsing of custom logfile where the Date is the first record followed by the detailed lines (time,....) I don't use logstash, but filebeat and pipelines Simple example: …

---

## [500Gb text data per day - how to design elk solution](https://discuss.elastic.co/t/500gb-text-data-per-day-how-to-design-elk-solution/325432)

<div class="topic-metadata">

**Author:** [@coldcoder8502](https://discuss.elastic.co/u/coldcoder8502)\
**Replies:** 1\
**Last updated:** [February 14, 2023, 12:19pm UTC](https://discuss.elastic.co/t/500gb-text-data-per-day-how-to-design-elk-solution/325432 "2023-02-14T12:19:15Z")

</div>

I have a device which is sending 500GB text data (logs) per day to my central server. I want to design a system using which user can: Apply exact-match filters and go through data using pagination Export PDF/CSV report…

---

## [Elasticsearch Master Quorum is lost](https://discuss.elastic.co/t/elasticsearch-master-quorum-is-lost/325459)

<div class="topic-metadata">

**Author:** [@tusharnemade](https://discuss.elastic.co/u/tusharnemade)\
**Replies:** 3\
**Last updated:** [February 14, 2023, 11:46am UTC](https://discuss.elastic.co/t/elasticsearch-master-quorum-is-lost/325459 "2023-02-14T11:46:57Z")

</div>

Hello : We are having Elasticsearch version 7.8.0 , running with 6 node cluster. All 6 nodes were data and master nodes. We have lost 3 Nodes out of 6 , and now we have message in logfile \[2023-02-14T10:58:47,994\]\[WA…

---

## [Retrieve data having date from 1st, Jan to current date on a date field](https://discuss.elastic.co/t/retrieve-data-having-date-from-1st-jan-to-current-date-on-a-date-field/325451)

<div class="topic-metadata">

**Author:** [@kajalp](https://discuss.elastic.co/u/kajalp)\
**Replies:** 3\
**Last updated:** [February 14, 2023, 10:24am UTC](https://discuss.elastic.co/t/retrieve-data-having-date-from-1st-jan-to-current-date-on-a-date-field/325451 "2023-02-14T10:24:20Z")

</div>

Hi All, I have data with a date field having dates from last 3 years. What I want? I want to get all the records from Jan1st to current day at any given time over a year. I tried below query: GET index\_name/\_search …

---

## [Query performance measuring tool](https://discuss.elastic.co/t/query-performance-measuring-tool/325446)

<div class="topic-metadata">

**Author:** [@siddhartha\_c](https://discuss.elastic.co/u/siddhartha_c)\
**Replies:** 2\
**Last updated:** [February 14, 2023, 10:20am UTC](https://discuss.elastic.co/t/query-performance-measuring-tool/325446 "2023-02-14T10:20:06Z")

</div>

How do I monitor the search performance for an Index, wherein data is constantly getting indexed. I want to restrict the size of the Index wherein the search performance starts degrading with new incoming data. We have…

---

## [Elastic keeps creating indices with replica:1](https://discuss.elastic.co/t/elastic-keeps-creating-indices-with-replica-1/325390)

<div class="topic-metadata">

**Author:** [@martijnomoda](https://discuss.elastic.co/u/martijnomoda)\
**Replies:** 2\
**Last updated:** [February 14, 2023, 9:26am UTC](https://discuss.elastic.co/t/elastic-keeps-creating-indices-with-replica-1/325390 "2023-02-14T09:26:01Z")

</div>

I have an cloud Elastic cluster with 1 hot node and 1 cold node. Because of this, I limited my replica to 0 when an index has been created. I have done this trough a index template with a high prioritity (99999), with th…

---

## [What is the time complexity of query a word in lucene?](https://discuss.elastic.co/t/what-is-the-time-complexity-of-query-a-word-in-lucene/325385)

<div class="topic-metadata">

**Author:** [@dan\_kim](https://discuss.elastic.co/u/dan_kim)\
**Replies:** 7\
**Last updated:** [February 14, 2023, 9:10am UTC](https://discuss.elastic.co/t/what-is-the-time-complexity-of-query-a-word-in-lucene/325385 "2023-02-14T09:10:22Z")

</div>

Hello! please let me know what is the time complexity of query in lucene index . for example, jus simple query to a index like "localhost:9200/index1/\_search?q={searchWord}" I know it is inverted index , but i think …

---

## [How to index a book](https://discuss.elastic.co/t/how-to-index-a-book/325448)

<div class="topic-metadata">

**Author:** [@Piyush\_Purohit](https://discuss.elastic.co/u/Piyush_Purohit)\
**Replies:** 1\
**Last updated:** [February 14, 2023, 8:54am UTC](https://discuss.elastic.co/t/how-to-index-a-book/325448 "2023-02-14T08:54:56Z")

</div>

I want to index a book, in that I want to store book\_name,page\_number and page\_content following is sample - { "book\_name": "first", "pages" : \[ { "page\_number" : 1, "page\_content" : "test data for check." }, { …

---

## [Elasticsearch and Power bi connection through ODBC driver](https://discuss.elastic.co/t/elasticsearch-and-power-bi-connection-through-odbc-driver/325405)

<div class="topic-metadata">

**Author:** [@Vitaliy.N](https://discuss.elastic.co/u/Vitaliy.N)\
**Replies:** 6\
**Last updated:** [February 14, 2023, 8:31am UTC](https://discuss.elastic.co/t/elasticsearch-and-power-bi-connection-through-odbc-driver/325405 "2023-02-14T08:31:58Z")

</div>

Hello Everyone, I am trying to connect Elasticsearch (running in docker container) with desktop power bi and having some issues. When testing connection using ODBC driver I am getting this error "libcurl: failed to per…

---

## [How to start the ELK watcher (POST \_watcher/\_start) in shell script through curl command](https://discuss.elastic.co/t/how-to-start-the-elk-watcher-post-watcher-start-in-shell-script-through-curl-command/325379)

<div class="topic-metadata">

**Author:** [@basavarajvn0513](https://discuss.elastic.co/u/basavarajvn0513)\
**Replies:** 2\
**Last updated:** [February 14, 2023, 7:36am UTC](https://discuss.elastic.co/t/how-to-start-the-elk-watcher-post-watcher-start-in-shell-script-through-curl-command/325379 "2023-02-14T07:36:31Z")

</div>

I have shell script to get the status of the elk watcher curl -k -s -X GET -H "Authorization: AAAAAA https://elastic If the status is not started I am sending the alerts . Now I also I want to start the elk watcher.…

---

## [Elasticsearch instance hangs for a while](https://discuss.elastic.co/t/elasticsearch-instance-hangs-for-a-while/325442)

<div class="topic-metadata">

**Author:** [@taghizadeh](https://discuss.elastic.co/u/taghizadeh)\
**Replies:** 0\
**Last updated:** [February 14, 2023, 6:58am UTC](https://discuss.elastic.co/t/elasticsearch-instance-hangs-for-a-while/325442 "2023-02-14T06:58:13Z")

</div>

I have an instance of elasticsearch (v8.6.1) with single node configuration. The hardware spec is: RAM: 32GB Storage: 1TB NVME-M2 CPU: 20 core Currently less than 30% of storage is used and swap is off. The problem…

---

## [Installation Guide](https://discuss.elastic.co/t/installation-guide/325434)

<div class="topic-metadata">

**Author:** [@ELK\_USR1](https://discuss.elastic.co/u/ELK_USR1)\
**Replies:** 3\
**Last updated:** [February 14, 2023, 6:47am UTC](https://discuss.elastic.co/t/installation-guide/325434 "2023-02-14T06:47:48Z")

</div>

Hi, Can Somebody gives me the steps to install the ELK stack on Linux node through package installation.

---

## [Request contains unrecognized parameters for Search API](https://discuss.elastic.co/t/request-contains-unrecognized-parameters-for-search-api/325139)

<div class="topic-metadata">

**Author:** [@Abhilash\_Kumar](https://discuss.elastic.co/u/Abhilash_Kumar)\
**Replies:** 8\
**Last updated:** [February 14, 2023, 6:08am UTC](https://discuss.elastic.co/t/request-contains-unrecognized-parameters-for-search-api/325139 "2023-02-14T06:08:17Z")

</div>

Hi folks, In our project, when we are trying to query ES Search API we are getting the below error { "error": { "root\_cause": \[ { "type": "illegal\_argument\_exception", …

---

## [Resetting versions](https://discuss.elastic.co/t/resetting-versions/324994)

<div class="topic-metadata">

**Author:** [@Limess](https://discuss.elastic.co/u/Limess)\
**Replies:** 1\
**Last updated:** [February 14, 2023, 5:25am UTC](https://discuss.elastic.co/t/resetting-versions/324994 "2023-02-14T05:25:34Z")

</div>

Hello, I've seen a few posts on this in the past but was wondering if there's any newer solution: We have had issues in production where we indexed documents with an external, then had to restore older versions of the …

---

## [Please add more examples on the new Java API Client](https://discuss.elastic.co/t/please-add-more-examples-on-the-new-java-api-client/325297)

<div class="topic-metadata">

**Author:** [@imhoffdavid](https://discuss.elastic.co/u/imhoffdavid)\
**Replies:** 0\
**Last updated:** [February 10, 2023, 8:58pm UTC](https://discuss.elastic.co/t/please-add-more-examples-on-the-new-java-api-client/325297 "2023-02-10T20:58:02Z")

</div>

This page in particular: Using the Java API Client | Elasticsearch Java API Client \[8.6\] | Elastic . Is not fleshed out enough. Coming from the old client and trying to migrate my elastic update calls to the new client …

---

## [Delete UNASSIGNED replica shards in elasticsearch 6.8.23](https://discuss.elastic.co/t/delete-unassigned-replica-shards-in-elasticsearch-6-8-23/325000)

<div class="topic-metadata">

**Author:** [@mohammed\_faisal](https://discuss.elastic.co/u/mohammed_faisal)\
**Replies:** 1\
**Last updated:** [February 14, 2023, 5:19am UTC](https://discuss.elastic.co/t/delete-unassigned-replica-shards-in-elasticsearch-6-8-23/325000 "2023-02-14T05:19:42Z")

</div>

How do i remove the UNASSIGNED replica shard from the index

---

## [Elasticsearch sizing and update in a docker enviroment](https://discuss.elastic.co/t/elasticsearch-sizing-and-update-in-a-docker-enviroment/325334)

<div class="topic-metadata">

**Author:** [@Lay0ut](https://discuss.elastic.co/u/Lay0ut)\
**Replies:** 1\
**Last updated:** [February 14, 2023, 4:51am UTC](https://discuss.elastic.co/t/elasticsearch-sizing-and-update-in-a-docker-enviroment/325334 "2023-02-14T04:51:22Z")

</div>

Hello everybody, I am currently taking over our Elastic cluster at my company after the person who set it up and managed it so far left the company. Given my limited experience with the ELK stack, I have a few questions…

---

## [JDBC Connection Pool for Elastic sql](https://discuss.elastic.co/t/jdbc-connection-pool-for-elastic-sql/325320)

<div class="topic-metadata">

**Author:** [@varindersandhu](https://discuss.elastic.co/u/varindersandhu)\
**Replies:** 0\
**Last updated:** [February 11, 2023, 5:33pm UTC](https://discuss.elastic.co/t/jdbc-connection-pool-for-elastic-sql/325320 "2023-02-11T17:33:21Z")

</div>

Hi Team, trying to build osgi plugin for elastic sql driver to query ES . Not able to find ConnectionPoolSource class name from x-pack-sql-jdbc-8.6.1.jar . Any idea which class will replace EsDataSourcePool in code below …

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=299)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=301)
