# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=308

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 309

---

## [Elasticsearch Question, Disable nesting](https://discuss.elastic.co/t/elasticsearch-question-disable-nesting/324207)

<div class="topic-metadata">

**Author:** [@tglanz](https://discuss.elastic.co/u/tglanz)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 7:02am UTC](https://discuss.elastic.co/t/elasticsearch-question-disable-nesting/324207 "2023-01-31T07:02:19Z")

</div>

Hi, I have a scenario with documents of the form: { "field": "some value", "properties": { "a": "some value of a", "a.b": "some value of a.b" } } I would like to have the following capabilities: Search…

---

## [Migration via snapshot from ELK to ECK 7.17](https://discuss.elastic.co/t/migration-via-snapshot-from-elk-to-eck-7-17/324046)

<div class="topic-metadata">

**Author:** [@charlot\_Attard](https://discuss.elastic.co/u/charlot_Attard)\
**Replies:** 2\
**Last updated:** [January 31, 2023, 6:52am UTC](https://discuss.elastic.co/t/migration-via-snapshot-from-elk-to-eck-7-17/324046 "2023-01-31T06:52:01Z")

</div>

We are in the process of migrating our indices from an ELK version to an ECK version on k8. We took a snapshot of the indices and when we restored them on ECK all the indices were in red state and the error was no\_shard\_…

---

## [Which is faster? Redis or Elastic](https://discuss.elastic.co/t/which-is-faster-redis-or-elastic/323779)

<div class="topic-metadata">

**Author:** [@MaralErdene\_Tumursuh](https://discuss.elastic.co/u/MaralErdene_Tumursuh)\
**Replies:** 2\
**Last updated:** [January 31, 2023, 6:50am UTC](https://discuss.elastic.co/t/which-is-faster-redis-or-elastic/323779 "2023-01-31T06:50:26Z")

</div>

This is weird question. But I want to clear my confusion. Currently, my app using elastic for displaying list. if i use Redis when user first time fetching data, will my performance is speed up? Thanks in advance.

---

## [Join queries or filter queries across indices](https://discuss.elastic.co/t/join-queries-or-filter-queries-across-indices/324275)

<div class="topic-metadata">

**Author:** [@H-Soni](https://discuss.elastic.co/u/H-Soni)\
**Replies:** 12\
**Last updated:** [January 31, 2023, 6:19am UTC](https://discuss.elastic.co/t/join-queries-or-filter-queries-across-indices/324275 "2023-01-31T06:19:44Z")

</div>

Hi, We are thinking of a document model, where we have data in multiple indices. However, when querying that data, we have to perform a join operation on these indices or to be more precise, filter an index's data using…

---

## [RemoteTransportException](https://discuss.elastic.co/t/remotetransportexception/324083)

<div class="topic-metadata">

**Author:** [@Abhinav\_Raj](https://discuss.elastic.co/u/Abhinav_Raj)\
**Replies:** 11\
**Last updated:** [January 31, 2023, 6:09am UTC](https://discuss.elastic.co/t/remotetransportexception/324083 "2023-01-31T06:09:58Z")

</div>

Hi , what is this error saying. I am getting it multiple times . org.elasticsearch.transport.RemoteTransportException: \[indices:data/read/search\[phase/query\]\] Caused by: org.elasticsearch.search.query.QueryPhaseExecuti…

---

## [Lifecycle action \[migrate\] waiting for \[1\] shards to be moved to the \[data\_warm\] tier (tier migration preference configuration is \[data\_warm, data\_hot\])](https://discuss.elastic.co/t/lifecycle-action-migrate-waiting-for-1-shards-to-be-moved-to-the-data-warm-tier-tier-migration-preference-configuration-is-data-warm-data-hot/323915)

<div class="topic-metadata">

**Author:** [@rahul\_sirugudi](https://discuss.elastic.co/u/rahul_sirugudi)\
**Replies:** 2\
**Last updated:** [January 31, 2023, 5:40am UTC](https://discuss.elastic.co/t/lifecycle-action-migrate-waiting-for-1-shards-to-be-moved-to-the-data-warm-tier-tier-migration-preference-configuration-is-data-warm-data-hot/323915 "2023-01-31T05:40:25Z")

</div>

I have set ILM policy as { "aggregations-lifecycle-policy":{ "version":2, "modified\_date":"2023-01-25T08:51:42.054Z", "policy":{ "phases":{ "warm":{ …

---

## [How to use FSCrawler with Azure Blob Storage?](https://discuss.elastic.co/t/how-to-use-fscrawler-with-azure-blob-storage/324163)

<div class="topic-metadata">

**Author:** [@AbderrahimAl](https://discuss.elastic.co/u/AbderrahimAl)\
**Replies:** 3\
**Last updated:** [January 29, 2023, 1:30pm UTC](https://discuss.elastic.co/t/how-to-use-fscrawler-with-azure-blob-storage/324163 "2023-01-29T13:30:49Z")

</div>

I want to index the documents stored in Azure Blob Storage into Elasticsearch. Is it possible to use FSCrawler in this case by providing the blob container URL?

---

## [Alternative to FiltersAggregator.KeyedFilter in new Java Client](https://discuss.elastic.co/t/alternative-to-filtersaggregator-keyedfilter-in-new-java-client/323860)

<div class="topic-metadata">

**Author:** [@MrMightyNighty](https://discuss.elastic.co/u/MrMightyNighty)\
**Replies:** 0\
**Last updated:** [January 24, 2023, 4:24pm UTC](https://discuss.elastic.co/t/alternative-to-filtersaggregator-keyedfilter-in-new-java-client/323860 "2023-01-24T16:24:55Z")

</div>

Hello there, currently we are in the process of switching to the new Java API Client since Spring Boot 3 isn't supporting the old client anymore (yes you can just add the old client but we want to do it properly …

---

## [No route to host](https://discuss.elastic.co/t/no-route-to-host/323996)

<div class="topic-metadata">

**Author:** [@MALKARAJ\_K](https://discuss.elastic.co/u/MALKARAJ_K)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:37am UTC](https://discuss.elastic.co/t/no-route-to-host/323996 "2023-01-31T00:37:58Z")

</div>

i am trying to connect a node from different machine to the cluster , this node able to find the master node but not able to join it I couldn't able to find any solution for this es 7.5+

---

## [Type: \_doc why is it still there](https://discuss.elastic.co/t/type-doc-why-is-it-still-there/324033)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:35am UTC](https://discuss.elastic.co/t/type-doc-why-is-it-still-there/324033 "2023-01-31T00:35:37Z")

</div>

I thought type = \_doc is deprecated. why is it still here and how do I remove it? This is metricbeat 8.5.3 and elastic also 8.5.3 but it comes with type =\> \_doc ( is this correct ) "@metadata" =\> { "target\_ind…

---

## [OIDC authenticate response documentation shows different response to what I can see](https://discuss.elastic.co/t/oidc-authenticate-response-documentation-shows-different-response-to-what-i-can-see/324013)

<div class="topic-metadata">

**Author:** [@steelydan96](https://discuss.elastic.co/u/steelydan96)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:32am UTC](https://discuss.elastic.co/t/oidc-authenticate-response-documentation-shows-different-response-to-what-i-can-see/324013 "2023-01-31T00:32:06Z")

</div>

Hello, I am using version 8.5.2 of elasticsearch, and the documentation states, for an OIDC authenticate response, I should receive: { "access\_token" : "dGhpcyBpcyBub3QgYSByZWFsIHRva2VuIGJ1dCBpdCBpcyBvbmx5IHRlc3QgZGF0…

---

## [Reset password api](https://discuss.elastic.co/t/reset-password-api/324193)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:20am UTC](https://discuss.elastic.co/t/reset-password-api/324193 "2023-01-31T00:20:05Z")

</div>

Hi i am installing elk stack using ansible playbook. I am able to set password using elasticsearch-reset-password for all users manually, from command line. How can i do the same using the playbook? if i run this comman…

---

## [How do i know how much data is stored in my Elastic search?](https://discuss.elastic.co/t/how-do-i-know-how-much-data-is-stored-in-my-elastic-search/324279)

<div class="topic-metadata">

**Author:** [@Dishatkr](https://discuss.elastic.co/u/Dishatkr)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 11:56pm UTC](https://discuss.elastic.co/t/how-do-i-know-how-much-data-is-stored-in-my-elastic-search/324279 "2023-01-30T23:56:17Z")

</div>

I want to know how much data is stored in my Elastic search, I m exploring the cluster-stats API. Does "store" -\> size\_in\_bytes , show the size of data stored ?

---

## [What ruby gem version should I use with ES 7.17.x](https://discuss.elastic.co/t/what-ruby-gem-version-should-i-use-with-es-7-17-x/324190)

<div class="topic-metadata">

**Author:** [@Russell\_Fulton](https://discuss.elastic.co/u/Russell_Fulton)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 11:47pm UTC](https://discuss.elastic.co/t/what-ruby-gem-version-should-i-use-with-es-7-17-x/324190 "2023-01-30T23:47:37Z")

</div>

I have just brought up a new linux VM to run an application that talks ES 7 but I can not find any gems for version 7. The latest (8.6.0) says that the server is not running ES : (. Presumably it only works with ES 8.x …

---

## [Elastic image 8.5.3 Vulnerabilities](https://discuss.elastic.co/t/elastic-image-8-5-3-vulnerabilities/324259)

<div class="topic-metadata">

**Author:** [@rajn27](https://discuss.elastic.co/u/rajn27)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 9:35pm UTC](https://discuss.elastic.co/t/elastic-image-8-5-3-vulnerabilities/324259 "2023-01-30T21:35:33Z")

</div>

We are downloading elastic images of docker hub. Elastic image is showing log4j vulnerabilities in 8.5.3 and 8.6 the images released in Dec 2022 and Jan2023. These vulnerabilities were addressed a year ago in dec 2021. C…

---

## [Problems with Scroll and Slice](https://discuss.elastic.co/t/problems-with-scroll-and-slice/324271)

<div class="topic-metadata">

**Author:** [@Olli1](https://discuss.elastic.co/u/Olli1)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 9:17pm UTC](https://discuss.elastic.co/t/problems-with-scroll-and-slice/324271 "2023-01-30T21:17:29Z")

</div>

Hello Com, i have a problem with my Code. When i want to Scroll and Slice about 100.000 data, i get the following Error: # Request: {"scroll":"2m","scroll\_id":"FGluY2x1ZGVfY29udGV4dF91dWlkDnF1ZXJ5VGhlbkZldGNoAhZvNUctQk…

---

## [Problem with restoring old (6.8) indices on ES 8.6.1](https://discuss.elastic.co/t/problem-with-restoring-old-6-8-indices-on-es-8-6-1/324235)

<div class="topic-metadata">

**Author:** [@lno](https://discuss.elastic.co/u/lno)\
**Replies:** 6\
**Last updated:** [January 30, 2023, 8:04pm UTC](https://discuss.elastic.co/t/problem-with-restoring-old-6-8-indices-on-es-8-6-1/324235 "2023-01-30T20:04:17Z")

</div>

Hi, we have some issues with restoring old (6.8.13) indices on the latest 8.6.1 version. Restore fails on some shards with these messages : Caused by: \[users/owINpknoTCmTe2kMmzuRhg\]\[\[users\]\[25\]\] org.elasticsearch.index.…

---

## [NoAliveNodes Elasticsearch-PHP (Ingest-Attachment)](https://discuss.elastic.co/t/noalivenodes-elasticsearch-php-ingest-attachment/324151)

<div class="topic-metadata">

**Author:** [@SplendX](https://discuss.elastic.co/u/SplendX)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 7:21pm UTC](https://discuss.elastic.co/t/noalivenodes-elasticsearch-php-ingest-attachment/324151 "2023-01-30T19:21:12Z")

</div>

Hello, I'm new to programming. when used in php-es code "return $client-\>ingest()-\>putPipeline($params);" outputs an error "NoAliveNodes", but when using for example "return $client-\>index($params);" it works! Plugin Ing…

---

## [Inconsistent datastream index rollover](https://discuss.elastic.co/t/inconsistent-datastream-index-rollover/324264)

<div class="topic-metadata">

**Author:** [@Maaayank](https://discuss.elastic.co/u/Maaayank)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 6:40pm UTC](https://discuss.elastic.co/t/inconsistent-datastream-index-rollover/324264 "2023-01-30T18:40:55Z")

</div>

Hello, I'd like to use datastream +ilm policy to roll index on daily basis and delete them after 1 month. It's important for me to roll index on daily basis without fail ( 10-20 mins delay doesn't doesn't affect me). F…

---

## [Filter on distinct nested documents](https://discuss.elastic.co/t/filter-on-distinct-nested-documents/324168)

<div class="topic-metadata">

**Author:** [@Sadia\_Mukhtar](https://discuss.elastic.co/u/Sadia_Mukhtar)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 5:09pm UTC](https://discuss.elastic.co/t/filter-on-distinct-nested-documents/324168 "2023-01-30T17:09:26Z")

</div>

I am very new to Elasticsearch and it's data modeling techniques. My dataset is a list of users and locations the users' have been associated with. I am trying to implement a type-ahead search on locations, I need to get…

---

## [Best practice for the creation of an index](https://discuss.elastic.co/t/best-practice-for-the-creation-of-an-index/324246)

<div class="topic-metadata">

**Author:** [@QuentinV](https://discuss.elastic.co/u/QuentinV)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 3:55pm UTC](https://discuss.elastic.co/t/best-practice-for-the-creation-of-an-index/324246 "2023-01-30T15:55:20Z")

</div>

Hello. I'm working on a project with Elastic for my company. I have to export some logs from the test software of our solution to an elastic database. Every night, the test software will create many logs with Java, us…

---

## [Calculating Chronological Contiguous Document Sequences](https://discuss.elastic.co/t/calculating-chronological-contiguous-document-sequences/324240)

<div class="topic-metadata">

**Author:** [@Guy\_Segev](https://discuss.elastic.co/u/Guy_Segev)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 2:57pm UTC](https://discuss.elastic.co/t/calculating-chronological-contiguous-document-sequences/324240 "2023-01-30T14:57:06Z")

</div>

Hi, Would appreciate help with the following conundrum: I have an index with time-series events; here are some document examples: { "timestamp": 1, "status": "running" } { "timestamp": 2, "status": "running" } { "ti…

---

## [Multiple follower pattern for same primary index](https://discuss.elastic.co/t/multiple-follower-pattern-for-same-primary-index/324232)

<div class="topic-metadata">

**Author:** [@Jairam\_Gauns](https://discuss.elastic.co/u/Jairam_Gauns)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 1:30pm UTC](https://discuss.elastic.co/t/multiple-follower-pattern-for-same-primary-index/324232 "2023-01-30T13:30:27Z")

</div>

Hi Team, We have multiple follower pattern that match the same time series index from primary. In one of the follower we have a prefix and suffix in another follower pattern. Currently the replication of the new inde…

---

## [Upgrade ELK from 7.2.0 to 8.4.3](https://discuss.elastic.co/t/upgrade-elk-from-7-2-0-to-8-4-3/324228)

<div class="topic-metadata">

**Author:** [@rampratap](https://discuss.elastic.co/u/rampratap)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 12:56pm UTC](https://discuss.elastic.co/t/upgrade-elk-from-7-2-0-to-8-4-3/324228 "2023-01-30T12:56:11Z")

</div>

I am trying to upgrade from ELK 7.2.0 to 8.4.3 but getting below error , please help or suggest on the compatible version to upgrade to fatal exception while booting Elasticsearch org.elasticsearch.ElasticsearchExceptio…

---

## [Zeek/Bro to ECS Field Mappings](https://discuss.elastic.co/t/zeek-bro-to-ecs-field-mappings/324120)

<div class="topic-metadata">

**Author:** [@3weekwhiskers](https://discuss.elastic.co/u/3weekwhiskers)\
**Replies:** 3\
**Last updated:** [January 30, 2023, 12:41pm UTC](https://discuss.elastic.co/t/zeek-bro-to-ecs-field-mappings/324120 "2023-01-30T12:41:47Z")

</div>

Is there a Zeek field to ECS field mapping document? Other than the logtype.yml files which actually do the conversion and renames, I have not been able to find anything. I'm avoiding having to build this mapping from sc…

---

## [Elasticsearch AbstractElasticsearchRepository. e:Request processing failed; nested exception is org.springframework.dao.DataAccessResourceFailureException: Timeout connecting to \[elasticsearch. Timeout connecting to Springboot Application Error](https://discuss.elastic.co/t/elasticsearch-abstractelasticsearchrepository-e-request-processing-failed-nested-exception-is-org-springframework-dao-dataaccessresourcefailureexception-timeout-connecting-to-elasticsearch-timeout-connecting-to-springboot-application-error/323819)

<div class="topic-metadata">

**Author:** [@my\_space](https://discuss.elastic.co/u/my_space)\
**Replies:** 7\
**Last updated:** [January 30, 2023, 11:42am UTC](https://discuss.elastic.co/t/elasticsearch-abstractelasticsearchrepository-e-request-processing-failed-nested-exception-is-org-springframework-dao-dataaccessresourcefailureexception-timeout-connecting-to-elasticsearch-timeout-connecting-to-springboot-application-error/323819 "2023-01-30T11:42:35Z")

</div>

Version Spring Data Elasticsearch: 4.0.0.RELEASE Version Elasticsearch Client in build: 7.6.2 Version Elasticsearch Client used: 7.6.2 e:Request processing failed; nested exception is org.springframework.dao.DataAcces…

---

## [Get just some fields of all elements using curl](https://discuss.elastic.co/t/get-just-some-fields-of-all-elements-using-curl/324184)

<div class="topic-metadata">

**Author:** [@sphawk](https://discuss.elastic.co/u/sphawk)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 9:36am UTC](https://discuss.elastic.co/t/get-just-some-fields-of-all-elements-using-curl/324184 "2023-01-30T09:36:21Z")

</div>

Hi people. I need some help. I'm trying to make a query via curl to get some fields of all elements of a shard. I've tried this command: curl -s -H 'Content-Type: application/json' 'http://localhost:9200/video/\_searc…

---

## [Gradle assemble error](https://discuss.elastic.co/t/gradle-assemble-error/324198)

<div class="topic-metadata">

**Author:** [@mkkim](https://discuss.elastic.co/u/mkkim)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 8:18am UTC](https://discuss.elastic.co/t/gradle-assemble-error/324198 "2023-01-30T08:18:16Z")

</div>

\[kor\] 안녕하세요, 저는 한국인입니다. 저는 엘라스틱서치에 사용자 사전을 이용한 노리 플러그인을 이용하고자 합니다. 다음 링크를 참고해서 사용하고 있었습니다. (https://github.com/jimczi/nori/blob/master/how-to-custom-dict.asciidoc) 하지만 elasticsearch를 git pull한 후 gradle assemble을 할 …

---

## [Is there a slow log (or something similar) for shard refresh durations?](https://discuss.elastic.co/t/is-there-a-slow-log-or-something-similar-for-shard-refresh-durations/324188)

<div class="topic-metadata">

**Author:** [@BenB196](https://discuss.elastic.co/u/BenB196)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 12:02am UTC](https://discuss.elastic.co/t/is-there-a-slow-log-or-something-similar-for-shard-refresh-durations/324188 "2023-01-30T00:02:07Z")

</div>

Hi All, I'm attempting to debug a somewhat strange issue. Where I have a query which runs every 60 seconds to check a set of logs and if there are no logs for 90 seconds then trigger an alert (this is done via a Kibana …

---

## [Shard lock issue](https://discuss.elastic.co/t/shard-lock-issue/324094)

<div class="topic-metadata">

**Author:** [@akihu](https://discuss.elastic.co/u/akihu)\
**Replies:** 10\
**Last updated:** [January 29, 2023, 10:49pm UTC](https://discuss.elastic.co/t/shard-lock-issue/324094 "2023-01-29T22:49:33Z")

</div>

Dear Community, Would you happen to have any hints what might be wrong (and how to resolve it) with my elasticsearch cluster. I've cluster with three master nodes and two data nodes. Most of the indices are configured …

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=307)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=309)
