# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=105

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 106

---

## [How to loop over the ctx results, so as to send the extracted details in email alert?](https://discuss.elastic.co/t/how-to-loop-over-the-ctx-results-so-as-to-send-the-extracted-details-in-email-alert/339419)

<div class="topic-metadata">

**Author:** [@Divya\_Thaore](https://discuss.elastic.co/u/Divya_Thaore)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 10:17am UTC](https://discuss.elastic.co/t/how-to-loop-over-the-ctx-results-so-as-to-send-the-extracted-details-in-email-alert/339419 "2023-07-27T10:17:58Z")

</div>

The result set for example is : { "\_shards": { "total": 14, "failed": 0, "successful": 14, "skipped": 0 }, "hits": { "hits": \[ { "\_index": "logs-cfsyslog-2023.07.26", "\_type": "\_doc", "\_source": { "msg": "-…

---

## [Kibana - No results match your search criteria](https://discuss.elastic.co/t/kibana-no-results-match-your-search-criteria/339319)

<div class="topic-metadata">

**Author:** [@jsingleton71](https://discuss.elastic.co/u/jsingleton71)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 9:38am UTC](https://discuss.elastic.co/t/kibana-no-results-match-your-search-criteria/339319 "2023-07-27T09:38:26Z")

</div>

All, I have more than 1000 IIS access logs ingested into Elasticsearch 8.8.1. This amounts to around 100GB in actual storage. I can query the data from a Jupyter Notebook and get results using the same indexes. I have c…

---

## [Cannot read properties of undefined (reading 'hapi')"](https://discuss.elastic.co/t/cannot-read-properties-of-undefined-reading-hapi/339403)

<div class="topic-metadata">

**Author:** [@chep](https://discuss.elastic.co/u/chep)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 8:45am UTC](https://discuss.elastic.co/t/cannot-read-properties-of-undefined-reading-hapi/339403 "2023-07-27T08:45:29Z")

</div>

curl -X POST "KIbana URL/api/detection\_engine/rules/\_import" -H 'Content-Type: application/json' -u offsec:student -H 'kbn-xsrf: true' -H 'Content-Type: multipart/form-data' --form "file=@/home/bourne/Downloads/rules\_exp…

---

## [How to get the fleet server backup and restore](https://discuss.elastic.co/t/how-to-get-the-fleet-server-backup-and-restore/339384)

<div class="topic-metadata">

**Author:** [@ankitha\_sn](https://discuss.elastic.co/u/ankitha_sn)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 7:03am UTC](https://discuss.elastic.co/t/how-to-get-the-fleet-server-backup-and-restore/339384 "2023-07-27T07:03:10Z")

</div>

Hi Team, Need help in getting the fleet server backup and how to restore it. Thanks, Ankitha

---

## [Rollup job is not working if page size is greater than 65000](https://discuss.elastic.co/t/rollup-job-is-not-working-if-page-size-is-greater-than-65000/339367)

<div class="topic-metadata">

**Author:** [@akhil\_reddy](https://discuss.elastic.co/u/akhil_reddy)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 3:08am UTC](https://discuss.elastic.co/t/rollup-job-is-not-working-if-page-size-is-greater-than-65000/339367 "2023-07-27T03:08:48Z")

</div>

Hi, I am facing an issue with rollup jobs. If I give the page size as 100000 it is not working and if I give the size as 65000 it works. I tried with different numbers like 70000, 50000 - when the number is greater than…

---

## [Kibana is not working](https://discuss.elastic.co/t/kibana-is-not-working/338991)

<div class="topic-metadata">

**Author:** [@Miguel2](https://discuss.elastic.co/u/Miguel2)\
**Replies:** 11\
**Last updated:** [July 26, 2023, 7:29pm UTC](https://discuss.elastic.co/t/kibana-is-not-working/338991 "2023-07-26T19:29:34Z")

</div>

Hello I'm trying to learn the ELK stack from scratch, I'm currently having problems with kibana not getting active as shown below: myuser@myuser-pc:~$ systemctl status kibana × kibana.service - Kibana Loaded: loade…

---

## [Kibana Error Unable to revive connection](https://discuss.elastic.co/t/kibana-error-unable-to-revive-connection/339344)

<div class="topic-metadata">

**Author:** [@fjcd1990](https://discuss.elastic.co/u/fjcd1990)\
**Replies:** 0\
**Last updated:** [July 26, 2023, 7:08pm UTC](https://discuss.elastic.co/t/kibana-error-unable-to-revive-connection/339344 "2023-07-26T19:08:19Z")

</div>

hi everyone i need help with this error in my kibana service, because the credencial SSL TLS has expired and i don't know how to use the elastic elasticsearch-certutil. "path" : "/usr/share/elasticsearch/config/http-ce…

---

## [Vega Sankey Diagram](https://discuss.elastic.co/t/vega-sankey-diagram/338149)

<div class="topic-metadata">

**Author:** [@Ranger\_Rick](https://discuss.elastic.co/u/Ranger_Rick)\
**Replies:** 4\
**Last updated:** [July 26, 2023, 4:09pm UTC](https://discuss.elastic.co/t/vega-sankey-diagram/338149 "2023-07-26T16:09:34Z")

</div>

Good afternoon! I created some Sankeys to better visualize certain relationships and they mostly work well. Following the example provided here: Sankey Creation resulting in clean graphs but with a slight issue. The da…

---

## [Alerts are not triggering in Kibana 7.17.11](https://discuss.elastic.co/t/alerts-are-not-triggering-in-kibana-7-17-11/339285)

<div class="topic-metadata">

**Author:** [@malak](https://discuss.elastic.co/u/malak)\
**Replies:** 1\
**Last updated:** [July 26, 2023, 3:29pm UTC](https://discuss.elastic.co/t/alerts-are-not-triggering-in-kibana-7-17-11/339285 "2023-07-26T15:29:27Z")

</div>

Hello, I have a basic license where I create a Threat matching rule. Previewing rule is showing the expected result however, the rule is not triggering. Any idea?

---

## [Incorrect links in Kibana plugin documentation](https://discuss.elastic.co/t/incorrect-links-in-kibana-plugin-documentation/339097)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 3\
**Last updated:** [July 26, 2023, 10:28am UTC](https://discuss.elastic.co/t/incorrect-links-in-kibana-plugin-documentation/339097 "2023-07-26T10:28:02Z")

</div>

Hi, Please update documentation for plugin development. There is very little/vague documentation, out of which most of them contains incorrect links to examples and github. This is just an example(Elasticsearch servic…

---

## [Charts plugin or @elastic/charts](https://discuss.elastic.co/t/charts-plugin-or-elastic-charts/339033)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 6\
**Last updated:** [July 26, 2023, 8:16am UTC](https://discuss.elastic.co/t/charts-plugin-or-elastic-charts/339033 "2023-07-26T08:16:11Z")

</div>

Hi, I am creating an external plugin in Kibana 8.8.1 using React. I want to create charts inside my plugin. I expect them to be clickable and also just like in Kibana, when I click on a particular chart item (like bar …

---

## [Date Filter](https://discuss.elastic.co/t/date-filter/337023)

<div class="topic-metadata">

**Author:** [@Kumar\_Abhinav](https://discuss.elastic.co/u/Kumar_Abhinav)\
**Replies:** 3\
**Last updated:** [July 26, 2023, 7:11am UTC](https://discuss.elastic.co/t/date-filter/337023 "2023-07-26T07:11:23Z")

</div>

I am trying to see how many count of items named from the data index has expiry date less than 30 days from now and also the count of items having expiry date till the next 30 days. I have tried a lot in TSVB with three …

---

## [Write data to Elasticsearch through plugin](https://discuss.elastic.co/t/write-data-to-elasticsearch-through-plugin/339260)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 0\
**Last updated:** [July 26, 2023, 6:55am UTC](https://discuss.elastic.co/t/write-data-to-elasticsearch-through-plugin/339260 "2023-07-26T06:55:28Z")

</div>

Hi, I am creating an external plugin in Kibana 8.8.1 using React. I want to write data to an Elasticsearch index on a button click inside the plugin. I presume I will have to use the Elasticsearch service provided by …

---

## [I don't know , how to solve this errorr.. , while try to reset the passcode in terminul](https://discuss.elastic.co/t/i-dont-know-how-to-solve-this-errorr-while-try-to-reset-the-passcode-in-terminul/339242)

<div class="topic-metadata">

**Author:** [@hari\_prabhu](https://discuss.elastic.co/u/hari_prabhu)\
**Replies:** 4\
**Last updated:** [July 26, 2023, 5:07am UTC](https://discuss.elastic.co/t/i-dont-know-how-to-solve-this-errorr-while-try-to-reset-the-passcode-in-terminul/339242 "2023-07-26T05:07:17Z")

</div>

./elasticsearch-env: line 86: cd: /etc/elasticsearch: Permission denied \`\`\` 86th line : \`\`\` ES\_PATH\_CONF = "cd" "$ES\_PATH\_CONF" ; \`pwd\` \`\`\`

---

## [Aligning array elements with parent in table visualization](https://discuss.elastic.co/t/aligning-array-elements-with-parent-in-table-visualization/338962)

<div class="topic-metadata">

**Author:** [@Thomas.c](https://discuss.elastic.co/u/Thomas.c)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 7:16pm UTC](https://discuss.elastic.co/t/aligning-array-elements-with-parent-in-table-visualization/338962 "2023-07-25T19:16:53Z")

</div>

I'm trying to create a table visualization in Kibana. My data structure is like this: Vehicle{ Vehicle Number Vehicle make Vehicle model Vehicle year} Each record can have multiple vehicles in it, so the parent Veh…

---

## [Kibana server is not ready yet](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/339009)

<div class="topic-metadata">

**Author:** [@SUNA](https://discuss.elastic.co/u/SUNA)\
**Replies:** 9\
**Last updated:** [July 25, 2023, 4:27pm UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/339009 "2023-07-25T16:27:43Z")

</div>

Hi Team, My ELK cluster running in one node. while clearing Queue, I had restarted kibana and elk services. from now my URL is stuck with below error. Kibana server is not ready yet In order to fix this i have restar…

---

## [Kibana cuts HH:mm:ss off date in Table visualization](https://discuss.elastic.co/t/kibana-cuts-hhss-off-date-in-table-visualization/339195)

<div class="topic-metadata">

**Author:** [@OrangeBanana](https://discuss.elastic.co/u/OrangeBanana)\
**Replies:** 2\
**Last updated:** [July 25, 2023, 3:23pm UTC](https://discuss.elastic.co/t/kibana-cuts-hhss-off-date-in-table-visualization/339195 "2023-07-25T15:23:50Z")

</div>

In Elasticsearch I have dates saved in the yyyy-MM-ddTHH:mm:ssZ format. However in my Kibana Table visualization only the yyyy-MM-dd part is shown. When I click on the data field in Kibana the date format is also shown a…

---

## [Kibana alert with index connector: indexing {{context}} as JSON](https://discuss.elastic.co/t/kibana-alert-with-index-connector-indexing-context-as-json/339205)

<div class="topic-metadata">

**Author:** [@dmcarmen](https://discuss.elastic.co/u/dmcarmen)\
**Replies:** 0\
**Last updated:** [July 25, 2023, 2:04pm UTC](https://discuss.elastic.co/t/kibana-alert-with-index-connector-indexing-context-as-json/339205 "2023-07-25T14:04:48Z")

</div>

Hi, I am trying to setup an ES query alert using an index connector. I would like to have a similar behavior to the predefined alert index, but my ELK version is 7.12 and that index was not available for that version. I…

---

## [Snapshot policy will continue to backup fail when the backup jumps out of shard error](https://discuss.elastic.co/t/snapshot-policy-will-continue-to-backup-fail-when-the-backup-jumps-out-of-shard-error/337738)

<div class="topic-metadata">

**Author:** [@Lily1](https://discuss.elastic.co/u/Lily1)\
**Replies:** 6\
**Last updated:** [July 25, 2023, 12:16pm UTC](https://discuss.elastic.co/t/snapshot-policy-will-continue-to-backup-fail-when-the-backup-jumps-out-of-shard-error/337738 "2023-07-25T12:16:26Z")

</div>

Version: Elasticsearch 7.16.2 S3 Storage Classes: new file saving S3 Standard, after month turn to S3 Glacier Regularly back up the index of the same Aliases to s3 every day. Recently, the following error suddenly po…

---

## [How to get details of fleet server](https://discuss.elastic.co/t/how-to-get-details-of-fleet-server/338868)

<div class="topic-metadata">

**Author:** [@Nishant\_Chauhan](https://discuss.elastic.co/u/Nishant_Chauhan)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 10:00am UTC](https://discuss.elastic.co/t/how-to-get-details-of-fleet-server/338868 "2023-07-25T10:00:49Z")

</div>

How can I list number/name of hosts connected to any specific Fleet server.

---

## [Integrations not updating and fleet server page not loading](https://discuss.elastic.co/t/integrations-not-updating-and-fleet-server-page-not-loading/338517)

<div class="topic-metadata">

**Author:** [@theacodes](https://discuss.elastic.co/u/theacodes)\
**Replies:** 4\
**Last updated:** [July 25, 2023, 9:43am UTC](https://discuss.elastic.co/t/integrations-not-updating-and-fleet-server-page-not-loading/338517 "2023-07-25T09:43:16Z")

</div>

Integrations are not updating and the fleet server page is not loading. Using ELK 8.8.1

---

## [Rebuild builtin indices](https://discuss.elastic.co/t/rebuild-builtin-indices/337098)

<div class="topic-metadata">

**Author:** [@rokka](https://discuss.elastic.co/u/rokka)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 9:19am UTC](https://discuss.elastic.co/t/rebuild-builtin-indices/337098 "2023-07-25T09:19:12Z")

</div>

Hi, for an unkown reason some builtin indices like ".geoip\_databases" or ".kibana\_7.16.2\_001" are corrupt in my ES instance. Is there a way to rebuilt them? Greetings Andre

---

## [Merge records into one table](https://discuss.elastic.co/t/merge-records-into-one-table/339067)

<div class="topic-metadata">

**Author:** [@akeelow](https://discuss.elastic.co/u/akeelow)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 8:50am UTC](https://discuss.elastic.co/t/merge-records-into-one-table/339067 "2023-07-25T08:50:41Z")

</div>

Hello! cisco gateway sends 4 log entries for one voip call. All four records have a common id. Is it possible to create such a query in the Kibana interface to create a table where each row will contain the following fie…

---

## [Getting the error after upgrading from v6 to v7](https://discuss.elastic.co/t/getting-the-error-after-upgrading-from-v6-to-v7/339034)

<div class="topic-metadata">

**Author:** [@sonujatav35](https://discuss.elastic.co/u/sonujatav35)\
**Replies:** 3\
**Last updated:** [July 25, 2023, 8:44am UTC](https://discuss.elastic.co/t/getting-the-error-after-upgrading-from-v6-to-v7/339034 "2023-07-25T08:44:31Z")

</div>

Hi ES community, I have one question recently i have done reindexing then ES up-gradation from v6.8.23 to v7.17.9. After this operation i noticed some error in elastic-search. Text fields are not optimised for operatio…

---

## [Get Unique Values for Elastic UI Donut Charts](https://discuss.elastic.co/t/get-unique-values-for-elastic-ui-donut-charts/339087)

<div class="topic-metadata">

**Author:** [@cyrildaniel](https://discuss.elastic.co/u/cyrildaniel)\
**Replies:** 1\
**Last updated:** [July 25, 2023, 7:44am UTC](https://discuss.elastic.co/t/get-unique-values-for-elastic-ui-donut-charts/339087 "2023-07-25T07:44:36Z")

</div>

I would like to show the total unique count of vendors in the middle of the donut chart, but by default the total count comes. Is there a way to show the unique number of vendors? In the below image instead of 98 it sho…

---

## [Not able to download all rows of data in CSV](https://discuss.elastic.co/t/not-able-to-download-all-rows-of-data-in-csv/338638)

<div class="topic-metadata">

**Author:** [@hjazz6](https://discuss.elastic.co/u/hjazz6)\
**Replies:** 13\
**Last updated:** [July 24, 2023, 10:53pm UTC](https://discuss.elastic.co/t/not-able-to-download-all-rows-of-data-in-csv/338638 "2023-07-24T22:53:12Z")

</div>

Hi, I have a query that generated 25 hits, and I have selected a few columns to display in the tabular format. When I tried to export the results by generating a CSV report, I'm only able to export 15 rows, not all 25 r…

---

## [Find all numbers in a text with](https://discuss.elastic.co/t/find-all-numbers-in-a-text-with/339020)

<div class="topic-metadata">

**Author:** [@kbfifi](https://discuss.elastic.co/u/kbfifi)\
**Replies:** 2\
**Last updated:** [July 24, 2023, 8:39pm UTC](https://discuss.elastic.co/t/find-all-numbers-in-a-text-with/339020 "2023-07-24T20:39:33Z")

</div>

I'm a newbe and trying to find all numbers in text with GROK. I'm using GROK debugger. My sample text: "Sample content with date 11 22 2022 and entity California and another date 1 1 1999 2-3-2024" I hope to get an ar…

---

## [No autorizated for monitoring error](https://discuss.elastic.co/t/no-autorizated-for-monitoring-error/338968)

<div class="topic-metadata">

**Author:** [@hlcxpl](https://discuss.elastic.co/u/hlcxpl)\
**Replies:** 2\
**Last updated:** [July 24, 2023, 7:30pm UTC](https://discuss.elastic.co/t/no-autorizated-for-monitoring-error/338968 "2023-07-24T19:30:34Z")

</div>

You are not authorized to access Monitoring. To use Monitoring, you need the privileges granted by both the \`kibana\_admin\` and \`monitoring\_user \` roles. If you are attempting to access a dedicated monitoring cluster, th…

---

## [Kibana Data Path / Chromium Files](https://discuss.elastic.co/t/kibana-data-path-chromium-files/338908)

<div class="topic-metadata">

**Author:** [@jokulicz](https://discuss.elastic.co/u/jokulicz)\
**Replies:** 4\
**Last updated:** [July 24, 2023, 7:16pm UTC](https://discuss.elastic.co/t/kibana-data-path-chromium-files/338908 "2023-07-24T19:16:47Z")

</div>

Hi! I am running the latest version of Kibana on Windows. I set the data.path variable in the config to change the location of the data and this works for the uuid file, but not for the chromium folders that are create…

---

## [Use Elasticsearch service for retrieving data from ES](https://discuss.elastic.co/t/use-elasticsearch-service-for-retrieving-data-from-es/339099)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 0\
**Last updated:** [July 24, 2023, 12:43pm UTC](https://discuss.elastic.co/t/use-elasticsearch-service-for-retrieving-data-from-es/339099 "2023-07-24T12:43:17Z")

</div>

Hi, How to use Elasticsearch service inside plugin? I am developing an external plugin in Kibana 8.1.1 using React. I want to retrieve data from ES at server side using the Elasticsearch service. I couldn't find any d…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=104)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=106)
