# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=177

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 178

---

## [How match indexof in query?](https://discuss.elastic.co/t/how-match-indexof-in-query/315615)

<div class="topic-metadata">

**Author:** [@Nikolas1306](https://discuss.elastic.co/u/Nikolas1306)\
**Replies:** 1\
**Last updated:** [October 2, 2022, 12:20pm UTC](https://discuss.elastic.co/t/how-match-indexof-in-query/315615 "2022-10-02T12:20:30Z")

</div>

i've used this GET /myindex/\_search { "query": { "match\_phrase\_prefix": { "message": "my text\*" } } } but not have results i' ve always #! Elasticsearch built-in security features are not enabled. …

---

## [ELK 8.x Unable to create "Log threshold" Alert Rule for new Index - "There aren't any options available"](https://discuss.elastic.co/t/elk-8-x-unable-to-create-log-threshold-alert-rule-for-new-index-there-arent-any-options-available/314933)

<div class="topic-metadata">

**Author:** [@Cezary](https://discuss.elastic.co/u/Cezary)\
**Replies:** 2\
**Last updated:** [September 30, 2022, 3:43pm UTC](https://discuss.elastic.co/t/elk-8-x-unable-to-create-log-threshold-alert-rule-for-new-index-there-arent-any-options-available/314933 "2022-09-30T15:43:11Z")

</div>

Hello Guys, Fresh install of ELK 8.x New index syslog-\* created via logstash Logstash config: input { tcp { port =\> 5000 type =\> syslog mode =\> "server" ssl\_enable =\> true ssl\_verify =\> false …

---

## [ELK 8.x Logstash creates index with variable name instead variable value](https://discuss.elastic.co/t/elk-8-x-logstash-creates-index-with-variable-name-instead-variable-value/315365)

<div class="topic-metadata">

**Author:** [@Cezary](https://discuss.elastic.co/u/Cezary)\
**Replies:** 1\
**Last updated:** [September 30, 2022, 12:31pm UTC](https://discuss.elastic.co/t/elk-8-x-logstash-creates-index-with-variable-name-instead-variable-value/315365 "2022-09-30T12:31:24Z")

</div>

Hello Guys, I have an issue with Logstash, it creates index in elasticsearch and archive filename with variable name instead variable value and next creates index and archive filename with correct name. My logstash co…

---

## [Advanced Configuration Machine Learning](https://discuss.elastic.co/t/advanced-configuration-machine-learning/315446)

<div class="topic-metadata">

**Author:** [@Aniket\_Pant](https://discuss.elastic.co/u/Aniket_Pant)\
**Replies:** 8\
**Last updated:** [September 30, 2022, 7:58am UTC](https://discuss.elastic.co/t/advanced-configuration-machine-learning/315446 "2022-09-30T07:58:43Z")

</div>

I want to use high count function for a field , for this i select Advanced Confiugration wizard Machine Learning \> Anomaly Detection \> Create Job \> Advanced configuration Here i am using high\_count detector for test…

---

## [Help! How to aggs data by two or more fields, and get the max value of 'count' field?](https://discuss.elastic.co/t/help-how-to-aggs-data-by-two-or-more-fields-and-get-the-max-value-of-count-field/315345)

<div class="topic-metadata">

**Author:** [@Dosia96](https://discuss.elastic.co/u/Dosia96)\
**Replies:** 2\
**Last updated:** [September 30, 2022, 6:52am UTC](https://discuss.elastic.co/t/help-how-to-aggs-data-by-two-or-more-fields-and-get-the-max-value-of-count-field/315345 "2022-09-30T06:52:59Z")

</div>

How to aggs data by two or more fields, and get the max value of 'count' field? I have already config the kibana Y-Axis: Metrics sum('count'), X-Axis: Data Histogram @timestamp , interval : sec terms field(a) order b…

---

## [I tried to upload a log file and a CSV file through the Kibana UI upload file option. But in both cases getting "File structure cannot be determined" error](https://discuss.elastic.co/t/i-tried-to-upload-a-log-file-and-a-csv-file-through-the-kibana-ui-upload-file-option-but-in-both-cases-getting-file-structure-cannot-be-determined-error/314878)

<div class="topic-metadata">

**Author:** [@cadrija](https://discuss.elastic.co/u/cadrija)\
**Replies:** 11\
**Last updated:** [September 30, 2022, 5:23am UTC](https://discuss.elastic.co/t/i-tried-to-upload-a-log-file-and-a-csv-file-through-the-kibana-ui-upload-file-option-but-in-both-cases-getting-file-structure-cannot-be-determined-error/314878 "2022-09-30T05:23:52Z")

</div>

I am new to Elastic. I have setup ELK in Ubuntu machine. I tried to upload a log file and a CSV file through the Kibana UI upload file option. But in both cases getting "File structure cannot be determined" error. I h…

---

## [Kibana is not coming up](https://discuss.elastic.co/t/kibana-is-not-coming-up/315263)

<div class="topic-metadata">

**Author:** [@DineshGarimella](https://discuss.elastic.co/u/DineshGarimella)\
**Replies:** 9\
**Last updated:** [September 29, 2022, 8:28pm UTC](https://discuss.elastic.co/t/kibana-is-not-coming-up/315263 "2022-09-29T20:28:57Z")

</div>

{"type":"log","@timestamp":"2022-09-27T11:07:06Z","tags":\["status","plugin:kibana@6.4.0","info"\],"pid":153778,"state":"green","message":"Status changed from uninitialized to green - Ready","prevState":"uninitialized","pr…

---

## [Hide Exit Full Screen button](https://discuss.elastic.co/t/hide-exit-full-screen-button/315435)

<div class="topic-metadata">

**Author:** [@S-elk](https://discuss.elastic.co/u/S-elk)\
**Replies:** 1\
**Last updated:** [September 29, 2022, 3:16pm UTC](https://discuss.elastic.co/t/hide-exit-full-screen-button/315435 "2022-09-29T15:16:48Z")

</div>

Hello! I want to put a dashboard on a room screen in fullscreen. i got this with: &\_a=(fullScreenMode:!t) But the exit button remains, I would like to know if this can be hidden somehow. Thanks in advance!

---

## [Cannot add more than 10 columns in kibana table](https://discuss.elastic.co/t/cannot-add-more-than-10-columns-in-kibana-table/315442)

<div class="topic-metadata">

**Author:** [@Pierre\_Abi\_Chedid](https://discuss.elastic.co/u/Pierre_Abi_Chedid)\
**Replies:** 1\
**Last updated:** [September 29, 2022, 3:04pm UTC](https://discuss.elastic.co/t/cannot-add-more-than-10-columns-in-kibana-table/315442 "2022-09-29T15:04:27Z")

</div>

Hello, I seem to have a problem when trying to add more than 10 columns in my kibana visualization I get the following error: Any idea on how to resolve the problem?

---

## [Sharing resources (Data views and Dashboards) across Spaces](https://discuss.elastic.co/t/sharing-resources-data-views-and-dashboards-across-spaces/312933)

<div class="topic-metadata">

**Author:** [@yelloyonder](https://discuss.elastic.co/u/yelloyonder)\
**Replies:** 3\
**Last updated:** [September 29, 2022, 1:10pm UTC](https://discuss.elastic.co/t/sharing-resources-data-views-and-dashboards-across-spaces/312933 "2022-09-29T13:10:06Z")

</div>

Hi, I've been trying to setup Spaces in Kibana (Elastic cloud) for non-admin teams so they only see the Kibana resources they need e.g. Discover and Dashboards under Analytics and not Security. When moving to the new S…

---

## [Lens Metric: split by keyword](https://discuss.elastic.co/t/lens-metric-split-by-keyword/310755)

<div class="topic-metadata">

**Author:** [@obi134](https://discuss.elastic.co/u/obi134)\
**Replies:** 3\
**Last updated:** [September 29, 2022, 9:17am UTC](https://discuss.elastic.co/t/lens-metric-split-by-keyword/310755 "2022-09-29T09:17:43Z")

</div>

Hi there, Currently I am using Metric visualization to show a status of different devices: In this metric I am showing the last status and split the group by device id. Additionally I defined ranges and selected a co…

---

## [How to create a kibana dashboard which could search through index relations?](https://discuss.elastic.co/t/how-to-create-a-kibana-dashboard-which-could-search-through-index-relations/315276)

<div class="topic-metadata">

**Author:** [@Ibrahim\_Z\_HIDIR](https://discuss.elastic.co/u/Ibrahim_Z_HIDIR)\
**Replies:** 8\
**Last updated:** [September 29, 2022, 8:25am UTC](https://discuss.elastic.co/t/how-to-create-a-kibana-dashboard-which-could-search-through-index-relations/315276 "2022-09-29T08:25:16Z")

</div>

Hi everybody I have 3 different indices, A, B and C A and B both sharing a field suppose F1 B and C also sharing another field suppose F2 I've added 3 different saved search to a dash board. So when I want to sear…

---

## [Kibana startup stuck when elasticsearch use http](https://discuss.elastic.co/t/kibana-startup-stuck-when-elasticsearch-use-http/315414)

<div class="topic-metadata">

**Author:** [@acerphoenix](https://discuss.elastic.co/u/acerphoenix)\
**Replies:** 2\
**Last updated:** [September 29, 2022, 3:11am UTC](https://discuss.elastic.co/t/kibana-startup-stuck-when-elasticsearch-use-http/315414 "2022-09-29T03:11:15Z")

</div>

Hello, I install es and kibana version 8.4.2, they enable https by default. but i prefer http in private network. so i follow the official instruction, download es and start it, and get some security information indicat…

---

## [Kibana dashboard error](https://discuss.elastic.co/t/kibana-dashboard-error/315332)

<div class="topic-metadata">

**Author:** [@wodhgud](https://discuss.elastic.co/u/wodhgud)\
**Replies:** 1\
**Last updated:** [September 29, 2022, 2:19am UTC](https://discuss.elastic.co/t/kibana-dashboard-error/315332 "2022-09-29T02:19:28Z")

</div>

I am currently using version 7.11.1. When dashboarding in kibana " \[parent\] data too large, data for \[index:data/read/search\[step/query\]\] is \[1045822710/997.3mb\], It is larger than the limit of \[1020054732/972.7mb\]. A…

---

## [Kibana index import success but different user none index](https://discuss.elastic.co/t/kibana-index-import-success-but-different-user-none-index/312977)

<div class="topic-metadata">

**Author:** [@laminus](https://discuss.elastic.co/u/laminus)\
**Replies:** 1\
**Last updated:** [September 28, 2022, 8:07pm UTC](https://discuss.elastic.co/t/kibana-index-import-success-but-different-user-none-index/312977 "2022-09-28T20:07:35Z")

</div>

hello please help me old kibana used index obect export and new kibana index obect import success but different user none index what can i do?

---

## [Is custom plugin creation methodology and code same for Kibana 7 and 8?](https://discuss.elastic.co/t/is-custom-plugin-creation-methodology-and-code-same-for-kibana-7-and-8/313236)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 1\
**Last updated:** [September 28, 2022, 6:23pm UTC](https://discuss.elastic.co/t/is-custom-plugin-creation-methodology-and-code-same-for-kibana-7-and-8/313236 "2022-09-28T18:23:25Z")

</div>

Hi, I have already started creating a custom external plugin (using React) in Kibana 8.5 source code. Can I install the same plugin in any version of Kibana, given I specify the same (version) when building the plugin? …

---

## [How to change the logo in Kibana 8.3.3](https://discuss.elastic.co/t/how-to-change-the-logo-in-kibana-8-3-3/313462)

<div class="topic-metadata">

**Author:** [@Arsalan1](https://discuss.elastic.co/u/Arsalan1)\
**Replies:** 2\
**Last updated:** [September 28, 2022, 5:30pm UTC](https://discuss.elastic.co/t/how-to-change-the-logo-in-kibana-8-3-3/313462 "2022-09-28T17:30:56Z")

</div>

I am facing some issues during the logo customization in Kibana version 8.3.3. I don't know how to customize the logo in Kibana. So, I read some blogs and discussion related to this topic but all in vain. can any one hel…

---

## [Is there a plan to update nodejs version to v16.17.1 in kibana 7.17?](https://discuss.elastic.co/t/is-there-a-plan-to-update-nodejs-version-to-v16-17-1-in-kibana-7-17/315350)

<div class="topic-metadata">

**Author:** [@tan\_minkee](https://discuss.elastic.co/u/tan_minkee)\
**Replies:** 2\
**Last updated:** [September 28, 2022, 1:30pm UTC](https://discuss.elastic.co/t/is-there-a-plan-to-update-nodejs-version-to-v16-17-1-in-kibana-7-17/315350 "2022-09-28T13:30:53Z")

</div>

As per subject. Would like to request kibana v7.17 to update nodejs to v16.17.1 due to its vulnerability in CVE - CVE-2022-35255 (mitre.org) and CVE - CVE-2022-35256 (mitre.org)

---

## [How to Send the alerts to opsgenie from kibana using ALERT-API URL](https://discuss.elastic.co/t/how-to-send-the-alerts-to-opsgenie-from-kibana-using-alert-api-url/315370)

<div class="topic-metadata">

**Author:** [@ankamsandeep](https://discuss.elastic.co/u/ankamsandeep)\
**Replies:** 1\
**Last updated:** [September 28, 2022, 1:02pm UTC](https://discuss.elastic.co/t/how-to-send-the-alerts-to-opsgenie-from-kibana-using-alert-api-url/315370 "2022-09-28T13:02:46Z")

</div>

Hi all, I am new to Elastic and Kibana, can anyone help in how can i integrate opsgenie with Kibana using Alert api. Unable to find the solution, if any one of you can assist on this would be really helpful. Looking …

---

## [Lens Download as CSV](https://discuss.elastic.co/t/lens-download-as-csv/315325)

<div class="topic-metadata">

**Author:** [@Anil\_Alapati](https://discuss.elastic.co/u/Anil_Alapati)\
**Replies:** 1\
**Last updated:** [September 28, 2022, 7:58am UTC](https://discuss.elastic.co/t/lens-download-as-csv/315325 "2022-09-28T07:58:22Z")

</div>

Hi, I am using Lens method to create bar views on Kibana. I am using Vertical stack bar. Once the Bar Graph is created. I am trying to download the data of the Bar Graph as Csv file. The csv file download has the multip…

---

## [Kibana 8.4 expanded document views objects in multiple rows](https://discuss.elastic.co/t/kibana-8-4-expanded-document-views-objects-in-multiple-rows/315252)

<div class="topic-metadata">

**Author:** [@Kadir\_Goktas](https://discuss.elastic.co/u/Kadir_Goktas)\
**Replies:** 6\
**Last updated:** [September 28, 2022, 6:58am UTC](https://discuss.elastic.co/t/kibana-8-4-expanded-document-views-objects-in-multiple-rows/315252 "2022-09-28T06:58:57Z")

</div>

we have recently upgraded our stack to 8.4 and noticed that when we expand a document object fields are displayed in multiple rows as attached below; previously the field is displayed as a json with a toggle details …

---

## [Machine Learning low sum is not working as expected](https://discuss.elastic.co/t/machine-learning-low-sum-is-not-working-as-expected/315292)

<div class="topic-metadata">

**Author:** [@Ann\_Abbott](https://discuss.elastic.co/u/Ann_Abbott)\
**Replies:** 1\
**Last updated:** [September 27, 2022, 7:08pm UTC](https://discuss.elastic.co/t/machine-learning-low-sum-is-not-working-as-expected/315292 "2022-09-27T19:08:54Z")

</div>

Hi, I am trying to use machine learning - anomaly detection. Whenever I try to use regular sum function it detects both low and high anomalies. High sum is also working expected since it's only showing high anomalies. …

---

## [Generate reports from a script in CSV is not working](https://discuss.elastic.co/t/generate-reports-from-a-script-in-csv-is-not-working/314876)

<div class="topic-metadata">

**Author:** [@thirty2](https://discuss.elastic.co/u/thirty2)\
**Replies:** 4\
**Last updated:** [September 27, 2022, 5:33pm UTC](https://discuss.elastic.co/t/generate-reports-from-a-script-in-csv-is-not-working/314876 "2022-09-27T17:33:38Z")

</div>

Hi, i am trying to use a script to generate reports in CSV and i am following the steps as written in the documentation here When i try to run a curl command i am getting error like this: {"error":"Incorrect HTTP me…

---

## [User control and management](https://discuss.elastic.co/t/user-control-and-management/315279)

<div class="topic-metadata">

**Author:** [@meyer1](https://discuss.elastic.co/u/meyer1)\
**Replies:** 1\
**Last updated:** [September 27, 2022, 3:18pm UTC](https://discuss.elastic.co/t/user-control-and-management/315279 "2022-09-27T15:18:58Z")

</div>

Hello everyone, I need a little information, is it possible to create a user on kibana and give him access to a certain dashboard? Or is he obliged to have access to all of them? If it is possible to do it, how to do i…

---

## [Default elastic user with superuser role has no access to APM API](https://discuss.elastic.co/t/default-elastic-user-with-superuser-role-has-no-access-to-apm-api/314955)

<div class="topic-metadata">

**Author:** [@danksim](https://discuss.elastic.co/u/danksim)\
**Replies:** 5\
**Last updated:** [September 27, 2022, 1:54pm UTC](https://discuss.elastic.co/t/default-elastic-user-with-superuser-role-has-no-access-to-apm-api/314955 "2022-09-27T13:54:36Z")

</div>

Elasticsearch and Kibana are both running v7.6.2 on EKS using Helm When logged in as the default elastic user with the superuser role, I am getting a 500 Internal Server Error when making requests to the APM API in the …

---

## [Search within "text" field in discover mode](https://discuss.elastic.co/t/search-within-text-field-in-discover-mode/314120)

<div class="topic-metadata">

**Author:** [@Mark\_S](https://discuss.elastic.co/u/Mark_S)\
**Replies:** 4\
**Last updated:** [September 27, 2022, 1:05pm UTC](https://discuss.elastic.co/t/search-within-text-field-in-discover-mode/314120 "2022-09-27T13:05:28Z")

</div>

kibana filters in "discover" mode seem to have "exist", "is", "is not" but no "contains" value. Is there any way to use "contains" for a text field? e.g. with Elasticsearch Query DSL?

---

## [FATAL Error: "elastalert-kibana-plugin.serverHost" and "elastalert-kibana-plugin.serverPort" settings were not applied](https://discuss.elastic.co/t/fatal-error-elastalert-kibana-plugin-serverhost-and-elastalert-kibana-plugin-serverport-settings-were-not-applied/315242)

<div class="topic-metadata">

**Author:** [@MdRashid](https://discuss.elastic.co/u/MdRashid)\
**Replies:** 1\
**Last updated:** [September 27, 2022, 11:48am UTC](https://discuss.elastic.co/t/fatal-error-elastalert-kibana-plugin-serverhost-and-elastalert-kibana-plugin-serverport-settings-were-not-applied/315242 "2022-09-27T11:48:48Z")

</div>

Issue or Error i got #docker logs elk\_kibana.1.nobzh4lt68m3wgacvuh3vfijs {"type":"log","@timestamp":"2022-09-27T08:46:23Z","tags":\["fatal","root"\],"pid":1,"message":"{ Error: \\"elastalert-kibana-plugin.serverHost\\" and…

---

## [Unable to find certificate for ca\_cert argument while connecting to kibana (for developer)](https://discuss.elastic.co/t/unable-to-find-certificate-for-ca-cert-argument-while-connecting-to-kibana-for-developer/314377)

<div class="topic-metadata">

**Author:** [@Azhar\_Uddin1](https://discuss.elastic.co/u/Azhar_Uddin1)\
**Replies:** 2\
**Last updated:** [September 27, 2022, 9:07am UTC](https://discuss.elastic.co/t/unable-to-find-certificate-for-ca-cert-argument-while-connecting-to-kibana-for-developer/314377 "2022-09-27T09:07:28Z")

</div>

When downloading elastic kibana for here we were getting the certificate in a terminal which look like below HTTP CA certificate SHA-256 fingerprint: a52dd93511e8c6045e21f16654b77c9ee0f34aea26d9f40320b531c474676228 I…

---

## [Add total row in Canvas Datatable](https://discuss.elastic.co/t/add-total-row-in-canvas-datatable/315144)

<div class="topic-metadata">

**Author:** [@Chiaaa](https://discuss.elastic.co/u/Chiaaa)\
**Replies:** 2\
**Last updated:** [September 27, 2022, 8:35am UTC](https://discuss.elastic.co/t/add-total-row-in-canvas-datatable/315144 "2022-09-27T08:35:36Z")

</div>

Hi everyone, I have a question: I need to add a line with totals on my Canvas datatable. It's possibile ? I created in Canvas a table with ES SQL Query and I cannot import Table object from Kibana, because in Canvas I…

---

## [Kibana Create Role API returns 404](https://discuss.elastic.co/t/kibana-create-role-api-returns-404/315211)

<div class="topic-metadata">

**Author:** [@jlos](https://discuss.elastic.co/u/jlos)\
**Replies:** 3\
**Last updated:** [September 26, 2022, 11:25pm UTC](https://discuss.elastic.co/t/kibana-create-role-api-returns-404/315211 "2022-09-26T23:25:48Z")

</div>

Hello, I know this is technically a duplicate of this discussion right here, but I'm not satisfied with the outcome of it. I'm attempting to use Kibana's create/update role API to create a user role. I'm following the …

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=176)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=178)
