# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=151

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 152

---

## [DateTime format in CSV report is not correct. 0's are being appended for nanos](https://discuss.elastic.co/t/datetime-format-in-csv-report-is-not-correct-0s-are-being-appended-for-nanos/322612)

<div class="topic-metadata">

**Author:** [@samee\_alam](https://discuss.elastic.co/u/samee_alam)\
**Replies:** 1\
**Last updated:** [January 18, 2023, 12:17pm UTC](https://discuss.elastic.co/t/datetime-format-in-csv-report-is-not-correct-0s-are-being-appended-for-nanos/322612 "2023-01-18T12:17:48Z")

</div>

ES and kibana version v 7.17.3 When generating CSV report, datetime format is not correct. 0's are being appended for micro and nano seconds, although document holds correct values. Tried playing around with adva…

---

## [Error regarding updation of dashboard through python using elasticsearch-dsl library](https://discuss.elastic.co/t/error-regarding-updation-of-dashboard-through-python-using-elasticsearch-dsl-library/323383)

<div class="topic-metadata">

**Author:** [@Shashank02](https://discuss.elastic.co/u/Shashank02)\
**Replies:** 0\
**Last updated:** [January 18, 2023, 7:13am UTC](https://discuss.elastic.co/t/error-regarding-updation-of-dashboard-through-python-using-elasticsearch-dsl-library/323383 "2023-01-18T07:13:32Z")

</div>

This is the error that I am getting while I am trying to update my Kibana dashboard using the elasticsearchdsl library for python: b'{"statusCode":404,"error":"Not Found","message":"Saved object \[visualization/166353692…

---

## [The button 'Copy cluster ID' for Kibana is no longer visible](https://discuss.elastic.co/t/the-button-copy-cluster-id-for-kibana-is-no-longer-visible/322982)

<div class="topic-metadata">

**Author:** [@m-amano](https://discuss.elastic.co/u/m-amano)\
**Replies:** 2\
**Last updated:** [January 18, 2023, 12:05am UTC](https://discuss.elastic.co/t/the-button-copy-cluster-id-for-kibana-is-no-longer-visible/322982 "2023-01-18T00:05:59Z")

</div>

I used to copy the Kibana Cluster ID from Elastic Cloud Console, but the button has disappeared! before after

---

## [Cant collapse/fold lengthy fields in Kibana Console](https://discuss.elastic.co/t/cant-collapse-fold-lengthy-fields-in-kibana-console/322229)

<div class="topic-metadata">

**Author:** [@nickchomey](https://discuss.elastic.co/u/nickchomey)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 5:59pm UTC](https://discuss.elastic.co/t/cant-collapse-fold-lengthy-fields-in-kibana-console/322229 "2023-01-17T17:59:49Z")

</div>

I am storing some lengthy HTML strings in a binary field (don't need to search it with text and keyword has a 32766 character limit). When I click in Kibana to collapse/fold the field, the button turns red and doesn't do…

---

## [KQL syntax with python](https://discuss.elastic.co/t/kql-syntax-with-python/323218)

<div class="topic-metadata">

**Author:** [@Shashank02](https://discuss.elastic.co/u/Shashank02)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 2:33pm UTC](https://discuss.elastic.co/t/kql-syntax-with-python/323218 "2023-01-17T14:33:13Z")

</div>

I have this idea of using KQL syntax through python or javascript. I have a dashboard named "main" and in that, we have a field called "topic". So, on the dashboard page when I use the KQL syntax and type in the search b…

---

## [Can I create timeline chart in Kibana?](https://discuss.elastic.co/t/can-i-create-timeline-chart-in-kibana/323301)

<div class="topic-metadata">

**Author:** [@Kamil\_BdBelfort](https://discuss.elastic.co/u/Kamil_BdBelfort)\
**Replies:** 3\
**Last updated:** [January 17, 2023, 1:59pm UTC](https://discuss.elastic.co/t/can-i-create-timeline-chart-in-kibana/323301 "2023-01-17T13:59:04Z")

</div>

Hi all, I would like to create a timeline chart. I have projects that have start-date and end-date values that I would like to visualize. I've been struggling to find a solution for a while now. My data looks like th…

---

## [Kibana Saved Search autosize on a Dashboard](https://discuss.elastic.co/t/kibana-saved-search-autosize-on-a-dashboard/323266)

<div class="topic-metadata">

**Author:** [@andreatera](https://discuss.elastic.co/u/andreatera)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 1:58pm UTC](https://discuss.elastic.co/t/kibana-saved-search-autosize-on-a-dashboard/323266 "2023-01-17T13:58:34Z")

</div>

Hello all, we're using Kibana 7.17.3 with a simple Dashboard having inside a Saved Search. This search frame have not the possibility to autosize its height when you resize the Window of your client browser. Is there …

---

## [SMB traffic spike](https://discuss.elastic.co/t/smb-traffic-spike/323318)

<div class="topic-metadata">

**Author:** [@Elnur\_Abbasov](https://discuss.elastic.co/u/Elnur_Abbasov)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 1:22pm UTC](https://discuss.elastic.co/t/smb-traffic-spike/323318 "2023-01-17T13:22:26Z")

</div>

Hi, we have Palo Alto logs in our elasticsearch database. I need to do anomaly detection based on SMB traffic. How can I do that ? My first attempt was to set destination.port to 445 or 139, but couldn't find a way to sp…

---

## [Does Elastic env. auto-localize to EFIGS languages based on browser language header?](https://discuss.elastic.co/t/does-elastic-env-auto-localize-to-efigs-languages-based-on-browser-language-header/323072)

<div class="topic-metadata">

**Author:** [@JPT\_Manche](https://discuss.elastic.co/u/JPT_Manche)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 12:04pm UTC](https://discuss.elastic.co/t/does-elastic-env-auto-localize-to-efigs-languages-based-on-browser-language-header/323072 "2023-01-17T12:04:21Z")

</div>

Does Elastic environment auto-localize to EFIGS (English, French, Italian, German and Spanish) languages based on browser language header? I’m super new to elastic and I can’t really find this. I want to know if consol…

---

## [How to create Gantt chart visualization](https://discuss.elastic.co/t/how-to-create-gantt-chart-visualization/322319)

<div class="topic-metadata">

**Author:** [@Kamil\_BdBelfort](https://discuss.elastic.co/u/Kamil_BdBelfort)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 11:37am UTC](https://discuss.elastic.co/t/how-to-create-gantt-chart-visualization/322319 "2023-01-17T11:37:44Z")

</div>

Hi there, I have been looking on previous posts and options in Vega / custom visualization to create Gantt Chart-like visualization for more than a day now. Part of my data are projects, I have start dates, end dates, …

---

## [Dashboard: increasing the number of entries shown in "options list" filter controls](https://discuss.elastic.co/t/dashboard-increasing-the-number-of-entries-shown-in-options-list-filter-controls/322751)

<div class="topic-metadata">

**Author:** [@hkhalil](https://discuss.elastic.co/u/hkhalil)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 11:00am UTC](https://discuss.elastic.co/t/dashboard-increasing-the-number-of-entries-shown-in-options-list-filter-controls/322751 "2023-01-17T11:00:19Z")

</div>

Hi, We are using filtering controls in our dashboards, specifically "Options List". We've noticed that the max number of entries shown in the dropdown is 10. Is there a way to increase this value ? The following topi…

---

## [How to get network drop details in packetbeat dashboard?](https://discuss.elastic.co/t/how-to-get-network-drop-details-in-packetbeat-dashboard/323311)

<div class="topic-metadata">

**Author:** [@jisha](https://discuss.elastic.co/u/jisha)\
**Replies:** 0\
**Last updated:** [January 17, 2023, 10:09am UTC](https://discuss.elastic.co/t/how-to-get-network-drop-details-in-packetbeat-dashboard/323311 "2023-01-17T10:09:41Z")

</div>

Hi, How to check if the network got failed/dropped in packetbeat dashboard? please help me Thanks jp

---

## [Elasticsearch kubernetes deployment](https://discuss.elastic.co/t/elasticsearch-kubernetes-deployment/323306)

<div class="topic-metadata">

**Author:** [@Ayyappan](https://discuss.elastic.co/u/Ayyappan)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 9:30am UTC](https://discuss.elastic.co/t/elasticsearch-kubernetes-deployment/323306 "2023-01-17T09:30:56Z")

</div>

is it possible to restore the data from the cache once its cleared/overwritten?

---

## [Vegalite - Filter Flatten Data](https://discuss.elastic.co/t/vegalite-filter-flatten-data/323123)

<div class="topic-metadata">

**Author:** [@Siva\_Kumar\_Menta](https://discuss.elastic.co/u/Siva_Kumar_Menta)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 9:21am UTC](https://discuss.elastic.co/t/vegalite-filter-flatten-data/323123 "2023-01-17T09:21:09Z")

</div>

Hi All, I have data in Elasticsearch index "testdata" with few fields in array format. While trying to apply filter on flattened data @ line #18 as {"filter":"ms \> 1"} getting error. Syntax wise it looks fine but not su…

---

## [Need to know the cost of ELK product without support in all categories](https://discuss.elastic.co/t/need-to-know-the-cost-of-elk-product-without-support-in-all-categories/323302)

<div class="topic-metadata">

**Author:** [@Abj\_Ins](https://discuss.elastic.co/u/Abj_Ins)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 9:02am UTC](https://discuss.elastic.co/t/need-to-know-the-cost-of-elk-product-without-support-in-all-categories/323302 "2023-01-17T09:02:50Z")

</div>

Hi Team, Need to know the cost of ELK product without support.

---

## [Will this thing work regarding updation of Kibana dashboard through python](https://discuss.elastic.co/t/will-this-thing-work-regarding-updation-of-kibana-dashboard-through-python/323298)

<div class="topic-metadata">

**Author:** [@Shashank02](https://discuss.elastic.co/u/Shashank02)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 7:12am UTC](https://discuss.elastic.co/t/will-this-thing-work-regarding-updation-of-kibana-dashboard-through-python/323298 "2023-01-17T07:12:27Z")

</div>

This is a code that I wrote by taking references from many sites: import requests headers = { 'Content-Type': 'application/json', 'kbn-version': '8.4.1' } data = { "options": { "query": { …

---

## [How to set kibana basePath on cloud kibana instance](https://discuss.elastic.co/t/how-to-set-kibana-basepath-on-cloud-kibana-instance/323291)

<div class="topic-metadata">

**Author:** [@dinesh.mandrekar](https://discuss.elastic.co/u/dinesh.mandrekar)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 7:09am UTC](https://discuss.elastic.co/t/how-to-set-kibana-basepath-on-cloud-kibana-instance/323291 "2023-01-17T07:09:55Z")

</div>

kibana instance on cloud elastic does not allow setting basePath in kibana user settings. Is there an alternate solution for this?

---

## [Kibana security\_exception Error](https://discuss.elastic.co/t/kibana-security-exception-error/323215)

<div class="topic-metadata">

**Author:** [@vibuverma07](https://discuss.elastic.co/u/vibuverma07)\
**Replies:** 4\
**Last updated:** [January 17, 2023, 4:54am UTC](https://discuss.elastic.co/t/kibana-security-exception-error/323215 "2023-01-17T04:54:27Z")

</div>

Getting this error on Kibana 8.5.2 \[ERROR\]\[http\] ResponseError: security\_exception: \[security\_exception\] Reason: action \[indices:admin/resolve/index\] is unauthorized for user \[temporarykibanasuperuser\] with effective ro…

---

## [How to track the user commands in Kibana?](https://discuss.elastic.co/t/how-to-track-the-user-commands-in-kibana/323092)

<div class="topic-metadata">

**Author:** [@Shiva\_Subramaniyan](https://discuss.elastic.co/u/Shiva_Subramaniyan)\
**Replies:** 2\
**Last updated:** [January 17, 2023, 1:49am UTC](https://discuss.elastic.co/t/how-to-track-the-user-commands-in-kibana/323092 "2023-01-17T01:49:14Z")

</div>

Hi, We have already installed auditbeat and metricbeat agents (version 7.10.2) on our RHEL / Linux servers and we want to track the "commands" that the user had executed on the server through Kibana dashboards. We do no…

---

## [Importing index field](https://discuss.elastic.co/t/importing-index-field/323155)

<div class="topic-metadata">

**Author:** [@Zay\_Lin\_Htun](https://discuss.elastic.co/u/Zay_Lin_Htun)\
**Replies:** 1\
**Last updated:** [January 17, 2023, 1:22am UTC](https://discuss.elastic.co/t/importing-index-field/323155 "2023-01-17T01:22:17Z")

</div>

Hi folks, I have issues on lacking field on index in elk of beats (filebeat, auditbeat and winlogbeat). current my log flows is log source hosts \>\> kafka \>\> logstash \>\> elastic cloud (elk). according to my understandi…

---

## [Help with grok filter on ingest pipeline](https://discuss.elastic.co/t/help-with-grok-filter-on-ingest-pipeline/321568)

<div class="topic-metadata">

**Author:** [@RaonyO](https://discuss.elastic.co/u/RaonyO)\
**Replies:** 4\
**Last updated:** [January 16, 2023, 8:17pm UTC](https://discuss.elastic.co/t/help-with-grok-filter-on-ingest-pipeline/321568 "2023-01-16T20:17:51Z")

</div>

Hello, I'm trying to use the following grok filter, but I'm getting a message saying it's in an invalid json format, but I think my filter is written correctly. can you help me with this? filter: (%{TIMESTAMP\_ISO8601:t…

---

## [Dashboard: "options list" entries sorting](https://discuss.elastic.co/t/dashboard-options-list-entries-sorting/322753)

<div class="topic-metadata">

**Author:** [@hkhalil](https://discuss.elastic.co/u/hkhalil)\
**Replies:** 3\
**Last updated:** [January 16, 2023, 8:01pm UTC](https://discuss.elastic.co/t/dashboard-options-list-entries-sorting/322753 "2023-01-16T20:01:57Z")

</div>

Hi, We are using filtering controls in our dashboards ("Options List"). Specifically, one of our controls is for the following field: "session\_id": { "type": "text", "fields": { "keyword": { …

---

## [A question about a potential vulnerability in Kibana](https://discuss.elastic.co/t/a-question-about-a-potential-vulnerability-in-kibana/323195)

<div class="topic-metadata">

**Author:** [@frenkel](https://discuss.elastic.co/u/frenkel)\
**Replies:** 3\
**Last updated:** [January 16, 2023, 7:23pm UTC](https://discuss.elastic.co/t/a-question-about-a-potential-vulnerability-in-kibana/323195 "2023-01-16T19:23:20Z")

</div>

Hi, There is this CVE about a vulnerability in JsonWebToken: https://nvd.nist.gov/vuln/detail/CVE-2022-23529 This is a vulnerability about insecure input validation in jwt.verify function, in JsonWebToken versions \<= …

---

## [Upgrade from version 8.5 to 8.6 - license error](https://discuss.elastic.co/t/upgrade-from-version-8-5-to-8-6-license-error/323032)

<div class="topic-metadata">

**Author:** [@thiavs](https://discuss.elastic.co/u/thiavs)\
**Replies:** 6\
**Last updated:** [January 16, 2023, 5:14pm UTC](https://discuss.elastic.co/t/upgrade-from-version-8-5-to-8-6-license-error/323032 "2023-01-16T17:14:03Z")

</div>

After updating from version 8.5 to 8.6, my fleet server does not work, I cannot see my agents online, in the logs I have the following situation: Reason: current license is non-compliant for \[categorize-text-agg\]","l…

---

## [Anonymous login for kibana embed fix](https://discuss.elastic.co/t/anonymous-login-for-kibana-embed-fix/323060)

<div class="topic-metadata">

**Author:** [@Prashant2](https://discuss.elastic.co/u/Prashant2)\
**Replies:** 1\
**Last updated:** [January 16, 2023, 5:09pm UTC](https://discuss.elastic.co/t/anonymous-login-for-kibana-embed-fix/323060 "2023-01-16T17:09:56Z")

</div>

I need to embed the kibana dashboard to. my react app. Where do I need to add the kibana.yml file anonymous login https://dub-test-new.kb.us-central1.gcp.cloud.es.io:9243/ this is the link to my kibana dashboard.

---

## [In Kibana Agg Based Metric, how to show in the results only the highest (doc\_count wise) '1 min' bucket?](https://discuss.elastic.co/t/in-kibana-agg-based-metric-how-to-show-in-the-results-only-the-highest-doc-count-wise-1-min-bucket/322257)

<div class="topic-metadata">

**Author:** [@tds21](https://discuss.elastic.co/u/tds21)\
**Replies:** 1\
**Last updated:** [January 16, 2023, 5:04pm UTC](https://discuss.elastic.co/t/in-kibana-agg-based-metric-how-to-show-in-the-results-only-the-highest-doc-count-wise-1-min-bucket/322257 "2023-01-16T17:04:49Z")

</div>

I created an Agg Based Metric with: METRICS - Max Bucket aggregation, that has bucket terms agg for source IP, which basically counts the top source IP and returns it BUCKETS - Date Histogram with timestamp field, wi…

---

## [Kibana Visualize Lens not showing nested fields](https://discuss.elastic.co/t/kibana-visualize-lens-not-showing-nested-fields/322691)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 3\
**Last updated:** [January 16, 2023, 3:47pm UTC](https://discuss.elastic.co/t/kibana-visualize-lens-not-showing-nested-fields/322691 "2023-01-16T15:47:26Z")

</div>

I'm not sure what I did wrong, but Kibana Lenses aren't showing me the nested field inventory.equipment. In terms of what I did, I set up an index and added a document with this script: PUT warehouse POST warehouse/\_ma…

---

## [Kibana Kubernetes Dashboard - Metric issue](https://discuss.elastic.co/t/kibana-kubernetes-dashboard-metric-issue/323252)

<div class="topic-metadata">

**Author:** [@Swathi12](https://discuss.elastic.co/u/Swathi12)\
**Replies:** 5\
**Last updated:** [January 16, 2023, 2:31pm UTC](https://discuss.elastic.co/t/kibana-kubernetes-dashboard-metric-issue/323252 "2023-01-16T14:31:09Z")

</div>

Hi, i am currently working on kubernetes-metricbeat and in kibana dashboard the metrics in kibana are available only on weekdays. At the weekend the metrics are not anymore available and everything is crashed.... Does …

---

## [Kibana development server up and running, but not picking up changes](https://discuss.elastic.co/t/kibana-development-server-up-and-running-but-not-picking-up-changes/323253)

<div class="topic-metadata">

**Author:** [@mpjjonker](https://discuss.elastic.co/u/mpjjonker)\
**Replies:** 6\
**Last updated:** [January 16, 2023, 2:17pm UTC](https://discuss.elastic.co/t/kibana-development-server-up-and-running-but-not-picking-up-changes/323253 "2023-01-16T14:17:20Z")

</div>

Hi, I have followed the instructions to setup a development environment for plugin development. I also do see the first attempt (created by the create-plugin-script), but when I make a change to any of the files (publi…

---

## [Coremigration error while importing dashboards from dev instance to prod instance](https://discuss.elastic.co/t/coremigration-error-while-importing-dashboards-from-dev-instance-to-prod-instance/323239)

<div class="topic-metadata">

**Author:** [@krishnaabylle](https://discuss.elastic.co/u/krishnaabylle)\
**Replies:** 2\
**Last updated:** [January 16, 2023, 2:08pm UTC](https://discuss.elastic.co/t/coremigration-error-while-importing-dashboards-from-dev-instance-to-prod-instance/323239 "2023-01-16T14:08:13Z")

</div>

Hi everyone Can anyone help me with this error.We have a dev and prod instance.i exported one dashboard in dev and While migrating dashboard from dev instance to prod instane getting the error as …

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=150)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=152)
