# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=89

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 90

---

## [What User Role(s) Needed for Magento 2.4.6-p5 Access](https://discuss.elastic.co/t/what-user-role-s-needed-for-magento-2-4-6-p5-access/364178)

<div class="topic-metadata">

**Author:** [@MrHasu](https://discuss.elastic.co/u/MrHasu)\
**Replies:** 5\
**Last updated:** [August 2, 2024, 4:29pm UTC](https://discuss.elastic.co/t/what-user-role-s-needed-for-magento-2-4-6-p5-access/364178 "2024-08-02T16:29:10Z")

</div>

Totally new to Elasticsearch, so please be gentle. I have Elasticsearch v8.14.3 installed on Linux Mint v21.3 (Ubuntu base) and I am trying to find out what User Roles needs to be assigned to a user for my Magento v2.4.…

---

## [Check health of write index of alias?](https://discuss.elastic.co/t/check-health-of-write-index-of-alias/364267)

<div class="topic-metadata">

**Author:** [@nisow95612](https://discuss.elastic.co/u/nisow95612)\
**Replies:** 2\
**Last updated:** [August 2, 2024, 1:27pm UTC](https://discuss.elastic.co/t/check-health-of-write-index-of-alias/364267 "2024-08-02T13:27:20Z")

</div>

Both data streams and Tutorial: Automate rollover with ILM | Elasticsearch Guide \[7.17\] | Elastic keep old index in alias on rollover. I want check by API my aliases are good for write (meaning health is green or yellow)…

---

## [After upgrading from Elasticsearch 7.4.0 to 7.17 .1, the queries are taking too long to return result](https://discuss.elastic.co/t/after-upgrading-from-elasticsearch-7-4-0-to-7-17-1-the-queries-are-taking-too-long-to-return-result/362159)

<div class="topic-metadata">

**Author:** [@RAHUL\_KUMAR12](https://discuss.elastic.co/u/RAHUL_KUMAR12)\
**Replies:** 2\
**Last updated:** [August 2, 2024, 11:40am UTC](https://discuss.elastic.co/t/after-upgrading-from-elasticsearch-7-4-0-to-7-17-1-the-queries-are-taking-too-long-to-return-result/362159 "2024-08-02T11:40:06Z")

</div>

Recently we have upgraded from Elasticsearch 7.4.0 to 7.17.1 and after the upgrade certain queries which were giving results immediately in 7.4.0, are now taking too long to return result. For reference a query which wa…

---

## [Field stored as "text" though it was mapped to "keyword"](https://discuss.elastic.co/t/field-stored-as-text-though-it-was-mapped-to-keyword/364173)

<div class="topic-metadata">

**Author:** [@hjazz6](https://discuss.elastic.co/u/hjazz6)\
**Replies:** 3\
**Last updated:** [August 2, 2024, 6:16am UTC](https://discuss.elastic.co/t/field-stored-as-text-though-it-was-mapped-to-keyword/364173 "2024-08-02T06:16:26Z")

</div>

Hi, I'm running Elasticsearch version 8.8.0, and I want to map source.as.organization.name and destination.as.organization.name as keyword fields. This is data sent to ES using Filebeat, that is automatically getting IP…

---

## [What can the manage token privilege to? can it update some cluster settings, like security, or some other stuff?](https://discuss.elastic.co/t/what-can-the-manage-token-privilege-to-can-it-update-some-cluster-settings-like-security-or-some-other-stuff/362920)

<div class="topic-metadata">

**Author:** [@ChatLee](https://discuss.elastic.co/u/ChatLee)\
**Replies:** 6\
**Last updated:** [August 2, 2024, 3:19am UTC](https://discuss.elastic.co/t/what-can-the-manage-token-privilege-to-can-it-update-some-cluster-settings-like-security-or-some-other-stuff/362920 "2024-08-02T03:19:10Z")

</div>

in the ES guidelines, there does not have too much talks about what the "manage tokne" privilege can be used do. I want to know whether the manage token privilege can be used to update cluster settings, such as security,…

---

## [Need a way to check if field is null](https://discuss.elastic.co/t/need-a-way-to-check-if-field-is-null/362636)

<div class="topic-metadata">

**Author:** [@mg77345](https://discuss.elastic.co/u/mg77345)\
**Replies:** 2\
**Last updated:** [August 1, 2024, 9:00pm UTC](https://discuss.elastic.co/t/need-a-way-to-check-if-field-is-null/362636 "2024-08-01T21:00:56Z")

</div>

New to elasticsearch. I'm trying to re-index old data into a new index to push it through an updated ingest pipeline. This includes data that's already been through that pipeline, which i want to add to the new index to…

---

## [Replace an ES node](https://discuss.elastic.co/t/replace-an-es-node/364199)

<div class="topic-metadata">

**Author:** [@rihad](https://discuss.elastic.co/u/rihad)\
**Replies:** 5\
**Last updated:** [August 1, 2024, 7:06pm UTC](https://discuss.elastic.co/t/replace-an-es-node/364199 "2024-08-01T19:06:42Z")

</div>

Hi, we have a simple ES cluster consisting of 3 master-eligible nodes, which are also data nodes: node-1: master node-2: replica with shards allocated node-3: empty replica with no shards Now we need to replace node-…

---

## [Adding \_size field to index template](https://discuss.elastic.co/t/adding-size-field-to-index-template/363884)

<div class="topic-metadata">

**Author:** [@artschooldropout](https://discuss.elastic.co/u/artschooldropout)\
**Replies:** 2\
**Last updated:** [August 1, 2024, 4:54pm UTC](https://discuss.elastic.co/t/adding-size-field-to-index-template/363884 "2024-08-01T16:54:17Z")

</div>

I'm running ES 8.13.4, attempting to add the \_size field to an index template. I have successfully installed the \_size plugin on all nodes on the cluster, confirmed by issuing GET /\_cat/plugins When I issue: PUT /\_in…

---

## [Rules and connectors, description is not dynamic which is from the alert](https://discuss.elastic.co/t/rules-and-connectors-description-is-not-dynamic-which-is-from-the-alert/364212)

<div class="topic-metadata">

**Author:** [@Johnson\_will](https://discuss.elastic.co/u/Johnson_will)\
**Replies:** 0\
**Last updated:** [August 1, 2024, 2:30pm UTC](https://discuss.elastic.co/t/rules-and-connectors-description-is-not-dynamic-which-is-from-the-alert/364212 "2024-08-01T14:30:30Z")

</div>

In Watcher the description is dynamic, which is from alert message "description": " {{ctx.payload.hits.hits}}" }""" But in Rules and conectors, unable to find description same as watcher

---

## [Data stream with "managed" tag](https://discuss.elastic.co/t/data-stream-with-managed-tag/364209)

<div class="topic-metadata">

**Author:** [@juancamiloll](https://discuss.elastic.co/u/juancamiloll)\
**Replies:** 0\
**Last updated:** [August 1, 2024, 2:16pm UTC](https://discuss.elastic.co/t/data-stream-with-managed-tag/364209 "2024-08-01T14:16:52Z")

</div>

Hello everyone, thanks in advance to anyone who can solve my doubt. Could someone explain me what is the difference between the data streams that have the "Managed" tag and the ones that don't have it. How can I remove…

---

## [Counting amount of buckets in aggregation](https://discuss.elastic.co/t/counting-amount-of-buckets-in-aggregation/363786)

<div class="topic-metadata">

**Author:** [@Zful](https://discuss.elastic.co/u/Zful)\
**Replies:** 2\
**Last updated:** [August 1, 2024, 1:00pm UTC](https://discuss.elastic.co/t/counting-amount-of-buckets-in-aggregation/363786 "2024-08-01T13:00:00Z")

</div>

Hi! I have an index holding connection events. I want to group them by 3 of their fields: src.ip, dst.ip and port. I'm using composite aggregation for the grouping, but I also need the total amount of buckets. Current…

---

## [Elastic did not load properly](https://discuss.elastic.co/t/elastic-did-not-load-properly/364197)

<div class="topic-metadata">

**Author:** [@Gizaw](https://discuss.elastic.co/u/Gizaw)\
**Replies:** 1\
**Last updated:** [August 1, 2024, 10:49am UTC](https://discuss.elastic.co/t/elastic-did-not-load-properly/364197 "2024-08-01T10:49:09Z")

</div>

" Elastic did not load properly." This problem is stopping me from installing the ES and Kibana. Please help me

---

## [ElasticSearch--Not able to get duration field value in long format in ES index](https://discuss.elastic.co/t/elasticsearch-not-able-to-get-duration-field-value-in-long-format-in-es-index/364179)

<div class="topic-metadata">

**Author:** [@Bhanu\_Praveen](https://discuss.elastic.co/u/Bhanu_Praveen)\
**Replies:** 1\
**Last updated:** [August 1, 2024, 9:41am UTC](https://discuss.elastic.co/t/elasticsearch-not-able-to-get-duration-field-value-in-long-format-in-es-index/364179 "2024-08-01T09:41:51Z")

</div>

Elasticsearch--Not able to get duration field value in long format in ES index Below is my json log string: { "traceId": "o0uyveRU/8BkjL+lbpDlnQ==", "spanId": "73rmqIRmo34=", "operationName": "ProcessWorkItem", "st…

---

## [Clarification needed: Changing PIT IDs in Elasticsearch](https://discuss.elastic.co/t/clarification-needed-changing-pit-ids-in-elasticsearch/364154)

<div class="topic-metadata">

**Author:** [@Hamza\_Belmellouki](https://discuss.elastic.co/u/Hamza_Belmellouki)\
**Replies:** 1\
**Last updated:** [August 1, 2024, 9:30am UTC](https://discuss.elastic.co/t/clarification-needed-changing-pit-ids-in-elasticsearch/364154 "2024-08-01T09:30:32Z")

</div>

The Elasticsearch documentation for version 7.17 states: The open point in time request and each subsequent search request can return different id; thus always use the most recently received id for the next search requ…

---

## [Snapshot ,restore and free disk space](https://discuss.elastic.co/t/snapshot-restore-and-free-disk-space/364136)

<div class="topic-metadata">

**Author:** [@quan\_w](https://discuss.elastic.co/u/quan_w)\
**Replies:** 4\
**Last updated:** [August 1, 2024, 7:51am UTC](https://discuss.elastic.co/t/snapshot-restore-and-free-disk-space/364136 "2024-08-01T07:51:23Z")

</div>

When I create a snapshot, it prompts NoSuchException: source\_log\_2023\_06\]\[0\]\]\[backup\_repo2:snapshot\_name/tS8r2NxSRV29Qoj\_pZI0Ig\] failed to snapshot shard. And this info: low disk watermark \[85%\] exceeded on \[9kkzFDY6Re…

---

## [Monitor solace message broker using elk stack implementation?](https://discuss.elastic.co/t/monitor-solace-message-broker-using-elk-stack-implementation/364185)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 0\
**Last updated:** [August 1, 2024, 6:04am UTC](https://discuss.elastic.co/t/monitor-solace-message-broker-using-elk-stack-implementation/364185 "2024-08-01T06:04:48Z")

</div>

Hello All, I need to monitor solace message broker using elk , I am not sure how to do this and what could be possible ways used to implement ? Any guidance would be helpful. Thanx

---

## [ElasticSearch--Not able to convert date to nanomillis using index template](https://discuss.elastic.co/t/elasticsearch-not-able-to-convert-date-to-nanomillis-using-index-template/364175)

<div class="topic-metadata">

**Author:** [@Bhanu\_Praveen](https://discuss.elastic.co/u/Bhanu_Praveen)\
**Replies:** 0\
**Last updated:** [August 1, 2024, 2:07am UTC](https://discuss.elastic.co/t/elasticsearch-not-able-to-convert-date-to-nanomillis-using-index-template/364175 "2024-08-01T02:07:18Z")

</div>

Elasticsearch--Not able to convert date to nanomillis using index template. From logstash below json field "startTime" is coming in as date. I need to copy to a new field which i am doing. Then convert it to as below fi…

---

## [All fields from logstash coming in as text to ES, Pls let me know how to set as keyword?](https://discuss.elastic.co/t/all-fields-from-logstash-coming-in-as-text-to-es-pls-let-me-know-how-to-set-as-keyword/364076)

<div class="topic-metadata">

**Author:** [@Bhanu\_Praveen](https://discuss.elastic.co/u/Bhanu_Praveen)\
**Replies:** 3\
**Last updated:** [August 1, 2024, 1:56am UTC](https://discuss.elastic.co/t/all-fields-from-logstash-coming-in-as-text-to-es-pls-let-me-know-how-to-set-as-keyword/364076 "2024-08-01T01:56:21Z")

</div>

All fields from logstash coming in as text to ES, Pls let me know how to set as keyword? Below is my json log string: { "traceId": "o0uyveRU/8BkjL+lbpDlnQ==", "spanId": "73rmqIRmo34=", "operationName": "ProcessWorkI…

---

## [Elastic Search Splitting in Azure Container Apps](https://discuss.elastic.co/t/elastic-search-splitting-in-azure-container-apps/364097)

<div class="topic-metadata">

**Author:** [@mcmichaelau](https://discuss.elastic.co/u/mcmichaelau)\
**Replies:** 4\
**Last updated:** [July 31, 2024, 9:39pm UTC](https://discuss.elastic.co/t/elastic-search-splitting-in-azure-container-apps/364097 "2024-07-31T21:39:23Z")

</div>

I am running the elasticsearch image in an azure container app. I have pushed data into ES using logstash via jdbc from a mssql db. In azure, I can see that there are 2 replicas of the image. As I am querying the data, I…

---

## [Performance and Efficiency for Indexing Using Machine Learning Models](https://discuss.elastic.co/t/performance-and-efficiency-for-indexing-using-machine-learning-models/363809)

<div class="topic-metadata">

**Author:** [@Shell\_Dias](https://discuss.elastic.co/u/Shell_Dias)\
**Replies:** 3\
**Last updated:** [July 31, 2024, 8:29pm UTC](https://discuss.elastic.co/t/performance-and-efficiency-for-indexing-using-machine-learning-models/363809 "2024-07-31T20:29:32Z")

</div>

I have a question about the performance of document indexing using the \_elser\_v2 model. I read in the documentation that it can index 26 documents per second, which is already a significant improvement over the v1 model…

---

## [Understanding the scope and data coverage of Point in Time (PIT) snapshots in Elasticsearch](https://discuss.elastic.co/t/understanding-the-scope-and-data-coverage-of-point-in-time-pit-snapshots-in-elasticsearch/364148)

<div class="topic-metadata">

**Author:** [@Hamza\_Belmellouki](https://discuss.elastic.co/u/Hamza_Belmellouki)\
**Replies:** 0\
**Last updated:** [July 31, 2024, 4:07pm UTC](https://discuss.elastic.co/t/understanding-the-scope-and-data-coverage-of-point-in-time-pit-snapshots-in-elasticsearch/364148 "2024-07-31T16:07:00Z")

</div>

Hello, I'm working with Elasticsearch and utilizing the Point in Time (PIT) feature for my queries. I understand that PIT creates a snapshot(kind of) of the data to ensure consistent results across multiple searches, bu…

---

## [Elastic Search update from 7.16.2 to 8.13.3](https://discuss.elastic.co/t/elastic-search-update-from-7-16-2-to-8-13-3/363975)

<div class="topic-metadata">

**Author:** [@nishant\_goyal](https://discuss.elastic.co/u/nishant_goyal)\
**Replies:** 3\
**Last updated:** [July 31, 2024, 1:46pm UTC](https://discuss.elastic.co/t/elastic-search-update-from-7-16-2-to-8-13-3/363975 "2024-07-31T13:46:11Z")

</div>

I updated the Elasticsearch from 7.16.2 version to 8.13.3 After that, i am not able to see any previous document

---

## [Elasticsearch readiness Probe change to httpGet instead of exec](https://discuss.elastic.co/t/elasticsearch-readiness-probe-change-to-httpget-instead-of-exec/363940)

<div class="topic-metadata">

**Author:** [@Rakesh\_9](https://discuss.elastic.co/u/Rakesh_9)\
**Replies:** 2\
**Last updated:** [July 31, 2024, 11:36am UTC](https://discuss.elastic.co/t/elasticsearch-readiness-probe-change-to-httpget-instead-of-exec/363940 "2024-07-31T11:36:23Z")

</div>

Hi, I'm trying to set up an Elasticsearch stack on Kubernetes using the ECK operator. I was able to install the operator successfully. I wanted to change the default readiness prob from exec type ( Default Probe ) to ht…

---

## [How to use Elastic Search with a Self Made SSL certificate not made by using Elastic search.bat](https://discuss.elastic.co/t/how-to-use-elastic-search-with-a-self-made-ssl-certificate-not-made-by-using-elastic-search-bat/364101)

<div class="topic-metadata">

**Author:** [@Likhit](https://discuss.elastic.co/u/Likhit)\
**Replies:** 2\
**Last updated:** [July 31, 2024, 9:35am UTC](https://discuss.elastic.co/t/how-to-use-elastic-search-with-a-self-made-ssl-certificate-not-made-by-using-elastic-search-bat/364101 "2024-07-31T09:35:04Z")

</div>

I am unable to use my certificate which i made using New-SelfSignedCertificate command and i tried replacing it with http.pfx in cert folder along with its configuration on elasticsearch.yml but it ain't working

---

## [全角数字を一文字ずつ区切られないようにしたい](https://discuss.elastic.co/t/topic/364123)

<div class="topic-metadata">

**Author:** [@Totsuka](https://discuss.elastic.co/u/Totsuka)\
**Replies:** 0\
**Last updated:** [July 31, 2024, 8:55am UTC](https://discuss.elastic.co/t/topic/364123 "2024-07-31T08:55:08Z")

</div>

全角数字を半角数字にし、一文字ずつ区切られないように設定するプラグインをご教示いただけますでしょうか。 □事象 GET kensyo\_index/\_analyze { "text" : "６０００", "analyzer": "my\_custom\_analyzer" } { "tokens" : \[ { "token" : "６", "start\_offset" : 0, "…

---

## [Is elasticsearch anyway associated with pmlogger service](https://discuss.elastic.co/t/is-elasticsearch-anyway-associated-with-pmlogger-service/364106)

<div class="topic-metadata">

**Author:** [@martianzz](https://discuss.elastic.co/u/martianzz)\
**Replies:** 2\
**Last updated:** [July 31, 2024, 8:49am UTC](https://discuss.elastic.co/t/is-elasticsearch-anyway-associated-with-pmlogger-service/364106 "2024-07-31T08:49:16Z")

</div>

Is Elasticsearch associated with the pmlogger service in any way? I noticed that the pmlogger service in my 3-node ELK stack cluster has started automatically, and logs are being filled up in /var/log/pcp/pmlogger on all…

---

## [Highlight fragments of fields that use the html\_strip char filter still contain HTML tags](https://discuss.elastic.co/t/highlight-fragments-of-fields-that-use-the-html-strip-char-filter-still-contain-html-tags/363994)

<div class="topic-metadata">

**Author:** [@paulmuller](https://discuss.elastic.co/u/paulmuller)\
**Replies:** 2\
**Last updated:** [July 30, 2024, 6:14pm UTC](https://discuss.elastic.co/t/highlight-fragments-of-fields-that-use-the-html-strip-char-filter-still-contain-html-tags/363994 "2024-07-30T18:14:36Z")

</div>

Why do highlight fragments of HTML-stripped fields still contain HTML tags? From all I know based on what the documentation says, I should get the stripped but highlighted text? Here's what I have. HTML analyzer GET /m…

---

## [Storing machine learning results in elasticsearch](https://discuss.elastic.co/t/storing-machine-learning-results-in-elasticsearch/364022)

<div class="topic-metadata">

**Author:** [@Septianingrum.17](https://discuss.elastic.co/u/Septianingrum.17)\
**Replies:** 1\
**Last updated:** [July 31, 2024, 7:04am UTC](https://discuss.elastic.co/t/storing-machine-learning-results-in-elasticsearch/364022 "2024-07-31T07:04:36Z")

</div>

Dear All, I have 2 elasticsearch nodes in 1 cluster, I give node 1 all roles except ml, node 2 I only give the ml role, when machine learning runs and displays the results, where are the ml results stored? on node 2 or …

---

## [Index name to match the pattern \`\`^.\*-\\d+\`](https://discuss.elastic.co/t/index-name-to-match-the-pattern-d/364098)

<div class="topic-metadata">

**Author:** [@sundar.s](https://discuss.elastic.co/u/sundar.s)\
**Replies:** 1\
**Last updated:** [July 31, 2024, 6:49am UTC](https://discuss.elastic.co/t/index-name-to-match-the-pattern-d/364098 "2024-07-31T06:49:47Z")

</div>

As per the Elastic search documentation, we could see that there is a prerequisite on the indexing name conventions. \*\*\`index name \[x\] does not match pattern \`\`^.\*-\\d+\` The index name’s regex pattern matching is a prer…

---

## [With default\_pipeline, restHighLevelClient's bulkProcessor can't insert records](https://discuss.elastic.co/t/with-default-pipeline-resthighlevelclients-bulkprocessor-cant-insert-records/364015)

<div class="topic-metadata">

**Author:** [@jimmy0](https://discuss.elastic.co/u/jimmy0)\
**Replies:** 3\
**Last updated:** [July 31, 2024, 6:48am UTC](https://discuss.elastic.co/t/with-default-pipeline-resthighlevelclients-bulkprocessor-cant-insert-records/364015 "2024-07-31T06:48:36Z")

</div>

with default\_pipeline PUT \_ingest/pipeline/lzm\_pipeline { "description" : "lzm pipeline", "processors" : \[ { "set": { "field": "ts", "value": "{{\_ingest.timestamp}}" } } \] } r…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=88)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=90)
