# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=179

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 180

---

## [Use of Index Pattern with Canvas](https://discuss.elastic.co/t/use-of-index-pattern-with-canvas/314788)

<div class="topic-metadata">

**Author:** [@hnf](https://discuss.elastic.co/u/hnf)\
**Replies:** 4\
**Last updated:** [September 21, 2022, 3:53pm UTC](https://discuss.elastic.co/t/use-of-index-pattern-with-canvas/314788 "2022-09-21T15:53:56Z")

</div>

Hello Everyone, I have an index pattern that I want to use with Canvas. I tried to use poc\_alarms-%{dd-MM-YYYY} in the select request but I get this error I don't have a problem when I try with the full name referenc…

---

## [How to query for getting aggregating count of variable in "Rules and Connectors"](https://discuss.elastic.co/t/how-to-query-for-getting-aggregating-count-of-variable-in-rules-and-connectors/314776)

<div class="topic-metadata">

**Author:** [@girish\_5565](https://discuss.elastic.co/u/girish_5565)\
**Replies:** 0\
**Last updated:** [September 20, 2022, 1:00pm UTC](https://discuss.elastic.co/t/how-to-query-for-getting-aggregating-count-of-variable-in-rules-and-connectors/314776 "2022-09-20T13:00:50Z")

</div>

Hi , Please help me in this regard, how to get the aggregated count of one variable by query in Rules. Thanks & Regards, Gireesh

---

## [Display latency, throughput of APM instrumented apps in custom Kibana dashboard](https://discuss.elastic.co/t/display-latency-throughput-of-apm-instrumented-apps-in-custom-kibana-dashboard/314306)

<div class="topic-metadata">

**Author:** [@catalin.bulancea](https://discuss.elastic.co/u/catalin.bulancea)\
**Replies:** 5\
**Last updated:** [September 21, 2022, 9:45am UTC](https://discuss.elastic.co/t/display-latency-throughput-of-apm-instrumented-apps-in-custom-kibana-dashboard/314306 "2022-09-21T09:45:28Z")

</div>

Hello people, We have instrumented some Java and .NET applications with APM agents. So in Kibana-\>APM -\>Services we can see the apps and all the relevant metrics like Throughput, Latency, Failed transaction rate, etc. …

---

## [Back up data from Elasticsearch and Kibana to another server](https://discuss.elastic.co/t/back-up-data-from-elasticsearch-and-kibana-to-another-server/314826)

<div class="topic-metadata">

**Author:** [@rt\_888](https://discuss.elastic.co/u/rt_888)\
**Replies:** 2\
**Last updated:** [September 21, 2022, 5:49am UTC](https://discuss.elastic.co/t/back-up-data-from-elasticsearch-and-kibana-to-another-server/314826 "2022-09-21T05:49:16Z")

</div>

I have read the documentation for Restore and Backup with this link Blockquote But since i am running ELK on docker, is it a good way to migrate all of its data (indice, dashboards) to another server using Docker vol…

---

## [Label data line as first or last](https://discuss.elastic.co/t/label-data-line-as-first-or-last/314817)

<div class="topic-metadata">

**Author:** [@razmizafiruddin](https://discuss.elastic.co/u/razmizafiruddin)\
**Replies:** 6\
**Last updated:** [September 21, 2022, 2:35am UTC](https://discuss.elastic.co/t/label-data-line-as-first-or-last/314817 "2022-09-21T02:35:36Z")

</div>

Hi, i am new to kibana, i have some data loaded into index pattern as below. new data will be uploaded every 30 min. i am having problem to label/determine the first and last data for each serial number. i think it is ac…

---

## [Fleet sever is automatically connected](https://discuss.elastic.co/t/fleet-sever-is-automatically-connected/314741)

<div class="topic-metadata">

**Author:** [@vikas-mishra](https://discuss.elastic.co/u/vikas-mishra)\
**Replies:** 1\
**Last updated:** [September 20, 2022, 11:14pm UTC](https://discuss.elastic.co/t/fleet-sever-is-automatically-connected/314741 "2022-09-20T23:14:23Z")

</div>

Hi there, I am trying to set up my fleet server. On my kibana page it was showing fleet server is connected. Even though I' have changed the host is it still connecting to the old fleet server ? Any how by ignoring it…

---

## [Table View not loading on Dashboard without manual "Refresh"](https://discuss.elastic.co/t/table-view-not-loading-on-dashboard-without-manual-refresh/313634)

<div class="topic-metadata">

**Author:** [@matled](https://discuss.elastic.co/u/matled)\
**Replies:** 2\
**Last updated:** [September 20, 2022, 8:14pm UTC](https://discuss.elastic.co/t/table-view-not-loading-on-dashboard-without-manual-refresh/313634 "2022-09-20T20:14:12Z")

</div>

Strange Issue, not sure how to debug. We habe a dashboards with several elements. Everything works fine except the table views they either don't load like below or generate the message "aborted". The query complexity is …

---

## [Fields .keyword](https://discuss.elastic.co/t/fields-keyword/314800)

<div class="topic-metadata">

**Author:** [@Kaname\_Nishioka](https://discuss.elastic.co/u/Kaname_Nishioka)\
**Replies:** 2\
**Last updated:** [September 20, 2022, 7:34pm UTC](https://discuss.elastic.co/t/fields-keyword/314800 "2022-09-20T19:34:27Z")

</div>

Hey guys, My first post in this community, I need reindex all my fields setting type to keyword, but when I do this, the field ".keyword" is removed and my dashboards is deployed using field ".keyword", Is it possible t…

---

## [How to saved a query using API](https://discuss.elastic.co/t/how-to-saved-a-query-using-api/314683)

<div class="topic-metadata">

**Author:** [@Azhar\_Uddin1](https://discuss.elastic.co/u/Azhar_Uddin1)\
**Replies:** 3\
**Last updated:** [September 20, 2022, 10:05am UTC](https://discuss.elastic.co/t/how-to-saved-a-query-using-api/314683 "2022-09-20T10:05:51Z")

</div>

I am filtering out the elastic sample data using the elasticsearch client but how could I achieve to create a saved object using API (using Elasticsearch client) and apply it There is documentation for saved objects AP…

---

## [How to detect and send bucket score merging 2 ML Job](https://discuss.elastic.co/t/how-to-detect-and-send-bucket-score-merging-2-ml-job/314729)

<div class="topic-metadata">

**Author:** [@minkiyo](https://discuss.elastic.co/u/minkiyo)\
**Replies:** 1\
**Last updated:** [September 20, 2022, 8:44am UTC](https://discuss.elastic.co/t/how-to-detect-and-send-bucket-score-merging-2-ml-job/314729 "2022-09-20T08:44:17Z")

</div>

I can get and check bucket score merging 2 ml job in anomaly exploreer using "edit job selection". additional, I wand to set alert rule merging two ml job. result type : bucket select job: only one job seleted....... …

---

## [Kibana Dashboard ElastiFlow 4.0.1 issue](https://discuss.elastic.co/t/kibana-dashboard-elastiflow-4-0-1-issue/311797)

<div class="topic-metadata">

**Author:** [@boot4root](https://discuss.elastic.co/u/boot4root)\
**Replies:** 7\
**Last updated:** [September 20, 2022, 6:45am UTC](https://discuss.elastic.co/t/kibana-dashboard-elastiflow-4-0-1-issue/311797 "2022-09-20T06:45:56Z")

</div>

Good afternoon, I ran into a problem, for some reason, after using ElastiFlow 4.0.1 on Dash Board for a while, the circles on dashboard began to distort, unfortunately ElastiFlow switched to the commercial version and cl…

---

## [No login with 'elastic' user after upgrading from 7.17.1 to 8.3.2](https://discuss.elastic.co/t/no-login-with-elastic-user-after-upgrading-from-7-17-1-to-8-3-2/314515)

<div class="topic-metadata">

**Author:** [@gerib](https://discuss.elastic.co/u/gerib)\
**Replies:** 10\
**Last updated:** [September 20, 2022, 1:32am UTC](https://discuss.elastic.co/t/no-login-with-elastic-user-after-upgrading-from-7-17-1-to-8-3-2/314515 "2022-09-20T01:32:16Z")

</div>

Our Cerebro shows the cluster in green, all of our 9 nodes are there with ES: 8.3.2. There are no \[ERROR\]s in Kibana's log, just \[INFO \]s and \[WARN \]s. This appeared in the process of upgrading our dev cluster and we…

---

## [Custom Kibana build on 8.x version with Elastic Cloud](https://discuss.elastic.co/t/custom-kibana-build-on-8-x-version-with-elastic-cloud/314721)

<div class="topic-metadata">

**Author:** [@Venkatesh\_Guruprasad](https://discuss.elastic.co/u/Venkatesh_Guruprasad)\
**Replies:** 3\
**Last updated:** [September 19, 2022, 10:13pm UTC](https://discuss.elastic.co/t/custom-kibana-build-on-8-x-version-with-elastic-cloud/314721 "2022-09-19T22:13:05Z")

</div>

We are trying to deploy custom kibana build of 8.x release & connect to an existing elastic cloud deployment. How can we accomplish that? We are using Elastic Cloud connected to GCP currently. We also have an internal o…

---

## [Install Certificate .PFX](https://discuss.elastic.co/t/install-certificate-pfx/314444)

<div class="topic-metadata">

**Author:** [@ojeffu](https://discuss.elastic.co/u/ojeffu)\
**Replies:** 2\
**Last updated:** [September 19, 2022, 5:16pm UTC](https://discuss.elastic.co/t/install-certificate-pfx/314444 "2022-09-19T17:16:52Z")

</div>

Hi, I'm new here and I have some questions. I need to install a client generated certificate on your linux server. Its format is PFX, how do I convert it to an acceptable format? Another point, should it be installed …

---

## [Couldn't find Kibana verification code](https://discuss.elastic.co/t/couldnt-find-kibana-verification-code/314402)

<div class="topic-metadata">

**Author:** [@Sher\_Khan](https://discuss.elastic.co/u/Sher_Khan)\
**Replies:** 1\
**Last updated:** [September 19, 2022, 2:24pm UTC](https://discuss.elastic.co/t/couldnt-find-kibana-verification-code/314402 "2022-09-19T14:24:22Z")

</div>

Using ELK Stack version 8.4.1 When i entered http://localhost:5601/ in the address bar following screens occur First I generate an enrollment token by running below command then I pasted it in the enrollment token…

---

## [New Control Filter Version 8](https://discuss.elastic.co/t/new-control-filter-version-8/314654)

<div class="topic-metadata">

**Author:** [@Irwan\_Kurniawan](https://discuss.elastic.co/u/Irwan_Kurniawan)\
**Replies:** 1\
**Last updated:** [September 19, 2022, 2:01pm UTC](https://discuss.elastic.co/t/new-control-filter-version-8/314654 "2022-09-19T14:01:34Z")

</div>

Hi, I want to do drilldown with filter. I already apply with filter but when I do drill down, the filter doesn't work. It happen in new control for version 8. It works with old control (version 7). Is it a bug or need di…

---

## [Unable to login to kibana with username elastic](https://discuss.elastic.co/t/unable-to-login-to-kibana-with-username-elastic/314681)

<div class="topic-metadata">

**Author:** [@amad](https://discuss.elastic.co/u/amad)\
**Replies:** 1\
**Last updated:** [September 19, 2022, 1:48pm UTC](https://discuss.elastic.co/t/unable-to-login-to-kibana-with-username-elastic/314681 "2022-09-19T13:48:45Z")

</div>

Password is working for elasticsearch I can't access kibana dashboard using these creds. Need help. Thanks in advance

---

## [How to find or query duplicate offsets?](https://discuss.elastic.co/t/how-to-find-or-query-duplicate-offsets/314456)

<div class="topic-metadata">

**Author:** [@connectgeeks](https://discuss.elastic.co/u/connectgeeks)\
**Replies:** 6\
**Last updated:** [September 19, 2022, 1:04pm UTC](https://discuss.elastic.co/t/how-to-find-or-query-duplicate-offsets/314456 "2022-09-19T13:04:33Z")

</div>

I’m having duplicate records in my indexes. How can I find list of duplicate records ? Duplicate records have same offset, can you suggest the query to find list of offset with more than one count ? Or any other way to…

---

## [Saved object not found & cannot delete it](https://discuss.elastic.co/t/saved-object-not-found-cannot-delete-it/314164)

<div class="topic-metadata">

**Author:** [@uae\_user](https://discuss.elastic.co/u/uae_user)\
**Replies:** 4\
**Last updated:** [September 19, 2022, 5:50am UTC](https://discuss.elastic.co/t/saved-object-not-found-cannot-delete-it/314164 "2022-09-19T05:50:50Z")

</div>

Hello, I re-indexed my data and created a new data view after deleting the old one. There are some visualization objects linked to the old data view which I managed to create again and remove the old one however there a…

---

## [Unable to access kibana dashboard](https://discuss.elastic.co/t/unable-to-access-kibana-dashboard/314637)

<div class="topic-metadata">

**Author:** [@Cipta\_Daffa](https://discuss.elastic.co/u/Cipta_Daffa)\
**Replies:** 1\
**Last updated:** [September 18, 2022, 2:59pm UTC](https://discuss.elastic.co/t/unable-to-access-kibana-dashboard/314637 "2022-09-18T14:59:39Z")

</div>

With this configuration, i can't access kibana dashboard? there's anybody can help me? thank you

---

## [How to config OpenTelemetry Log](https://discuss.elastic.co/t/how-to-config-opentelemetry-log/314622)

<div class="topic-metadata">

**Author:** [@yingziisme](https://discuss.elastic.co/u/yingziisme)\
**Replies:** 1\
**Last updated:** [September 17, 2022, 2:56pm UTC](https://discuss.elastic.co/t/how-to-config-opentelemetry-log/314622 "2022-09-17T14:56:02Z")

</div>

In Observability Page, find the error "Expected ")", ":", "\<", "\<=", "\>", "\>=", AND, OR, whitespace but end of input found." like below picture. but I can find Log from Trace details By Trace logs

---

## [Query DSL in kibana discover](https://discuss.elastic.co/t/query-dsl-in-kibana-discover/314526)

<div class="topic-metadata">

**Author:** [@Aniket\_Pant](https://discuss.elastic.co/u/Aniket_Pant)\
**Replies:** 2\
**Last updated:** [September 16, 2022, 6:58pm UTC](https://discuss.elastic.co/t/query-dsl-in-kibana-discover/314526 "2022-09-16T18:58:46Z")

</div>

I want to run this below query in kibana discover filter "aggs": { "response\_term": { "terms": { "field": "ResponseCode.keyword", "size": 100000 }, "aggs": { "response": { "…

---

## [Create a table where the columns change depending on which fields exist for the data returned (given filters and searches)](https://discuss.elastic.co/t/create-a-table-where-the-columns-change-depending-on-which-fields-exist-for-the-data-returned-given-filters-and-searches/314596)

<div class="topic-metadata">

**Author:** [@akitatak](https://discuss.elastic.co/u/akitatak)\
**Replies:** 0\
**Last updated:** [September 16, 2022, 5:55pm UTC](https://discuss.elastic.co/t/create-a-table-where-the-columns-change-depending-on-which-fields-exist-for-the-data-returned-given-filters-and-searches/314596 "2022-09-16T17:55:21Z")

</div>

Hello, So in my index pattern objects\* has multiple different object types within it that all have their own fields. Example: Object 1: type=house, id=0, color=blue, size=2000, city=Portland) Object 2: type=car, id=1…

---

## [Kibana Dashboard Enlarge image on click](https://discuss.elastic.co/t/kibana-dashboard-enlarge-image-on-click/314404)

<div class="topic-metadata">

**Author:** [@mirokrastev](https://discuss.elastic.co/u/mirokrastev)\
**Replies:** 5\
**Last updated:** [September 16, 2022, 3:24pm UTC](https://discuss.elastic.co/t/kibana-dashboard-enlarge-image-on-click/314404 "2022-09-16T15:24:28Z")

</div>

Hello, Please take a look at the attached snippet. Basically we have a table, which has images into it. My goal here is to be able to enlarge the image, when I click on it. Can you let me know if there is such functiona…

---

## [Kibana visualization to show intime value count of different fieldski](https://discuss.elastic.co/t/kibana-visualization-to-show-intime-value-count-of-different-fieldski/312642)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 3\
**Last updated:** [September 16, 2022, 7:42am UTC](https://discuss.elastic.co/t/kibana-visualization-to-show-intime-value-count-of-different-fieldski/312642 "2022-09-16T07:42:32Z")

</div>

Hello All, How to make TSVB visualization displaying all the count values for given filelds. Here I'm trying to dispaly the index updated,nodes travered,entrie process and chunk "intime" count value wrt statistic time.…

---

## [Kibana No monitoring data found](https://discuss.elastic.co/t/kibana-no-monitoring-data-found/313677)

<div class="topic-metadata">

**Author:** [@WenhaoXu](https://discuss.elastic.co/u/WenhaoXu)\
**Replies:** 15\
**Last updated:** [September 16, 2022, 6:46am UTC](https://discuss.elastic.co/t/kibana-no-monitoring-data-found/313677 "2022-09-16T06:46:37Z")

</div>

version : 8.2.3 kibana No monitoring data found get cluster info not found . is it the reason? And GET /\_cat/indices?v&s=index has .monitoring-kibana-7-2022.09.05 .monitoring-es-7-2022.09.05

---

## [Transform Data - Vega Kibana](https://discuss.elastic.co/t/transform-data-vega-kibana/314545)

<div class="topic-metadata">

**Author:** [@Irwan\_Kurniawan](https://discuss.elastic.co/u/Irwan_Kurniawan)\
**Replies:** 0\
**Last updated:** [September 16, 2022, 3:24am UTC](https://discuss.elastic.co/t/transform-data-vega-kibana/314545 "2022-09-16T03:24:49Z")

</div>

How to transform data that I already get from index like this: Into the format like this: So the Type and Value can be separated in different column. I only know how to do this in Vega-Lite but not in Vega.

---

## [Problem with aggs queries returning null?](https://discuss.elastic.co/t/problem-with-aggs-queries-returning-null/314529)

<div class="topic-metadata">

**Author:** [@JamesD\_7](https://discuss.elastic.co/u/JamesD_7)\
**Replies:** 1\
**Last updated:** [September 15, 2022, 11:17pm UTC](https://discuss.elastic.co/t/problem-with-aggs-queries-returning-null/314529 "2022-09-15T23:17:09Z")

</div>

Hello, I'm having trouble getting a simple aggs query to return data. GET mydata1/\_search { "aggs": { "avg\_num\_days": { "avg": { "field": "myField" } } } } I was getting an error: "error"…

---

## [CSV Export not available when xpack.reporting.roles.enabled set to false](https://discuss.elastic.co/t/csv-export-not-available-when-xpack-reporting-roles-enabled-set-to-false/313445)

<div class="topic-metadata">

**Author:** [@Harm](https://discuss.elastic.co/u/Harm)\
**Replies:** 5\
**Last updated:** [September 15, 2022, 1:49pm UTC](https://discuss.elastic.co/t/csv-export-not-available-when-xpack-reporting-roles-enabled-set-to-false/313445 "2022-09-15T13:49:48Z")

</div>

Hi, since the xpack.reporting.roles settings are deprecated since v7.14.0, I have disabled the use of the reporting role in our 7.17.6 environment by setting: xpack.reporting.roles.enabled: false The new subfeatures …

---

## [While creating new dashboard and search I get fields just from one index](https://discuss.elastic.co/t/while-creating-new-dashboard-and-search-i-get-fields-just-from-one-index/314416)

<div class="topic-metadata">

**Author:** [@111363](https://discuss.elastic.co/u/111363)\
**Replies:** 3\
**Last updated:** [September 15, 2022, 11:38am UTC](https://discuss.elastic.co/t/while-creating-new-dashboard-and-search-i-get-fields-just-from-one-index/314416 "2022-09-15T11:38:34Z")

</div>

Hi, I have few indexes in Kibana ("index1", "index2", ...). I have created a new dashboard. Added some visualizations that I created with "index2". Now I use search for filter data but the only fields I get are from "i…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=178)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=180)
