# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=18

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 19

---

## [Error 'Test failed to run' with AI Assistant using OpenRouter Integration](https://discuss.elastic.co/t/error-test-failed-to-run-with-ai-assistant-using-openrouter-integration/376961)

<div class="topic-metadata">

**Author:** [@yago82](https://discuss.elastic.co/u/yago82)\
**Replies:** 0\
**Last updated:** [April 9, 2025, 2:02pm UTC](https://discuss.elastic.co/t/error-test-failed-to-run-with-ai-assistant-using-openrouter-integration/376961 "2025-04-09T14:02:31Z")

</div>

Hello, I'm currently utilizing Elastic's AI Assistant with a trial license and have integrated OpenRouter as the AI provider. However, when entering the OpenRouter URL and the corresponding API Key, I encounter the foll…

---

## [How to display specific values on a time graph](https://discuss.elastic.co/t/how-to-display-specific-values-on-a-time-graph/376941)

<div class="topic-metadata">

**Author:** [@Jice](https://discuss.elastic.co/u/Jice)\
**Replies:** 1\
**Last updated:** [April 9, 2025, 9:10am UTC](https://discuss.elastic.co/t/how-to-display-specific-values-on-a-time-graph/376941 "2025-04-09T09:10:19Z")

</div>

Hi, I have a dataview about actions done by users (coming from indexes built from logs). Each row has columns for user, his profile (role) and a timestamp for the time he performs the action. The idea is to have a gra…

---

## [How to add ReadOnlyUsers button next to Login button on the Kibana Login page](https://discuss.elastic.co/t/how-to-add-readonlyusers-button-next-to-login-button-on-the-kibana-login-page/375545)

<div class="topic-metadata">

**Author:** [@karthikmaal](https://discuss.elastic.co/u/karthikmaal)\
**Replies:** 2\
**Last updated:** [April 9, 2025, 9:08am UTC](https://discuss.elastic.co/t/how-to-add-readonlyusers-button-next-to-login-button-on-the-kibana-login-page/375545 "2025-04-09T09:08:34Z")

</div>

Hi, I am currently using Kibana v7.6 and have made some customizations to the login page. Specifically, I've added a "ReadOnlyUsers" button next to the Login button (screenshot attached). When clicked, this button autom…

---

## [Querying Watches with Specific Alert Condition States](https://discuss.elastic.co/t/querying-watches-with-specific-alert-condition-states/376948)

<div class="topic-metadata">

**Author:** [@Santiago\_Carnicero](https://discuss.elastic.co/u/Santiago_Carnicero)\
**Replies:** 0\
**Last updated:** [April 9, 2025, 8:43am UTC](https://discuss.elastic.co/t/querying-watches-with-specific-alert-condition-states/376948 "2025-04-09T08:43:57Z")

</div>

Dear Elasticsearch Community, I'm implementing a monitoring dashboard that needs to display all active watches that have met their alerting conditions within a specific time window but have not returned to a normal stat…

---

## [Kibana bar chart empty if ranking is used](https://discuss.elastic.co/t/kibana-bar-chart-empty-if-ranking-is-used/376899)

<div class="topic-metadata">

**Author:** [@Rene\_S](https://discuss.elastic.co/u/Rene_S)\
**Replies:** 3\
**Last updated:** [April 8, 2025, 6:22pm UTC](https://discuss.elastic.co/t/kibana-bar-chart-empty-if-ranking-is-used/376899 "2025-04-08T18:22:38Z")

</div>

Hi, we imported several dashboards for uberAgent and try to bring them to the latest and greatest Kibana version. While still in test mode, we create some new visualizations and I have a problem. We have a list of proc…

---

## [ESQL where the field value is a list](https://discuss.elastic.co/t/esql-where-the-field-value-is-a-list/376907)

<div class="topic-metadata">

**Author:** [@duckasylum](https://discuss.elastic.co/u/duckasylum)\
**Replies:** 1\
**Last updated:** [April 8, 2025, 1:33pm UTC](https://discuss.elastic.co/t/esql-where-the-field-value-is-a-list/376907 "2025-04-08T13:33:46Z")

</div>

Hi, I have an index created from JSON files and due to the structure of the JSON with multiple same name keys I have now fields which are lists. I am wondering how to use such fields in ESQL queries. For example in the i…

---

## [Sometimes My Rule does not send emails even if conditions are met](https://discuss.elastic.co/t/sometimes-my-rule-does-not-send-emails-even-if-conditions-are-met/376908)

<div class="topic-metadata">

**Author:** [@Khaled\_Saidi](https://discuss.elastic.co/u/Khaled_Saidi)\
**Replies:** 0\
**Last updated:** [April 8, 2025, 12:41pm UTC](https://discuss.elastic.co/t/sometimes-my-rule-does-not-send-emails-even-if-conditions-are-met/376908 "2025-04-08T12:41:50Z")

</div>

Hi the team, When I run my rule manually, and the data matches, I receive two separate emails. But when I let it run automatically... I only receive one email instead of two. And sometimes, I even receive nothing at al…

---

## [Parse log data as metric to create visualization](https://discuss.elastic.co/t/parse-log-data-as-metric-to-create-visualization/376849)

<div class="topic-metadata">

**Author:** [@Eshwar\_K](https://discuss.elastic.co/u/Eshwar_K)\
**Replies:** 1\
**Last updated:** [April 8, 2025, 7:56am UTC](https://discuss.elastic.co/t/parse-log-data-as-metric-to-create-visualization/376849 "2025-04-08T07:56:15Z")

</div>

Hi Community, Good day! I am trying to create chart visualization for fields which I extracted for one of the data sets but while creating the visualization it is taking count of documents instead of values which are e…

---

## [Kibana alerts stops being generated](https://discuss.elastic.co/t/kibana-alerts-stops-being-generated/373904)

<div class="topic-metadata">

**Author:** [@Hint7\_7](https://discuss.elastic.co/u/Hint7_7)\
**Replies:** 5\
**Last updated:** [April 7, 2025, 9:36pm UTC](https://discuss.elastic.co/t/kibana-alerts-stops-being-generated/373904 "2025-04-07T21:36:10Z")

</div>

Hello, I have a problem in kibana Alerts (security -\> Alerts) stops being generated. I tried to restart Kibana, it's starts UP but the alerts aren't received. Can you please help me or give me any needed information that…

---

## [Replace the kibana logo](https://discuss.elastic.co/t/replace-the-kibana-logo/376859)

<div class="topic-metadata">

**Author:** [@anagha03](https://discuss.elastic.co/u/anagha03)\
**Replies:** 2\
**Last updated:** [April 7, 2025, 7:44pm UTC](https://discuss.elastic.co/t/replace-the-kibana-logo/376859 "2025-04-07T19:44:39Z")

</div>

Can we replace the Kibana Logo in its newer version 8.17 Can someone help me with this

---

## [ECK Kibana recieves 401 in minutes if no operations in Kibana](https://discuss.elastic.co/t/eck-kibana-recieves-401-in-minutes-if-no-operations-in-kibana/376363)

<div class="topic-metadata">

**Author:** [@LongKang\_Fan](https://discuss.elastic.co/u/LongKang_Fan)\
**Replies:** 2\
**Last updated:** [April 7, 2025, 3:47am UTC](https://discuss.elastic.co/t/eck-kibana-recieves-401-in-minutes-if-no-operations-in-kibana/376363 "2025-04-07T03:47:42Z")

</div>

Hi, I used the ECK operator to deploy an ELK cluster on my local k8s cluster with: 3 instances of Elasticsearch 3 instances of Logstash 1 Kibana instance A few Filebeat instances The ELK pipeline is working well—Fileb…

---

## [Language broken, when get .csv file with search result, SHARE menu](https://discuss.elastic.co/t/language-broken-when-get-csv-file-with-search-result-share-menu/376837)

<div class="topic-metadata">

**Author:** [@suminlim](https://discuss.elastic.co/u/suminlim)\
**Replies:** 3\
**Last updated:** [April 7, 2025, 1:33am UTC](https://discuss.elastic.co/t/language-broken-when-get-csv-file-with-search-result-share-menu/376837 "2025-04-07T01:33:55Z")

</div>

Hello, I have a problem on saving the .csv file from a search result (at discovery). When I clicked a "share" button and try to get result as a .csv file, it generates the .csv very well but Korean Language is broken. …

---

## [kibana server is not ready yet](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/369205)

<div class="topic-metadata">

**Author:** [@Mat3](https://discuss.elastic.co/u/Mat3)\
**Replies:** 1\
**Last updated:** [April 6, 2025, 6:38pm UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/369205 "2025-04-06T18:38:43Z")

</div>

Hey, I post here you never know. I am currently setting up ELK in order to monitor logs which are stored on an rsyslog server. I installed Elasticsearch correctly, but without a complicated dashboard. Now I am looking …

---

## [Having our own Elastic search DB, if we want to use Kibana for Production MS use , do we need a license still?](https://discuss.elastic.co/t/having-our-own-elastic-search-db-if-we-want-to-use-kibana-for-production-ms-use-do-we-need-a-license-still/376839)

<div class="topic-metadata">

**Author:** [@sujitghose](https://discuss.elastic.co/u/sujitghose)\
**Replies:** 4\
**Last updated:** [April 6, 2025, 1:08pm UTC](https://discuss.elastic.co/t/having-our-own-elastic-search-db-if-we-want-to-use-kibana-for-production-ms-use-do-we-need-a-license-still/376839 "2025-04-06T13:08:20Z")

</div>

Having our own Elastic search DB, if we want to use Kibana only for log viewing for Production MS use, do we need a license still?

---

## [Make cumulative sum to zero at midnight](https://discuss.elastic.co/t/make-cumulative-sum-to-zero-at-midnight/376768)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 2\
**Last updated:** [April 4, 2025, 12:24pm UTC](https://discuss.elastic.co/t/make-cumulative-sum-to-zero-at-midnight/376768 "2025-04-04T12:24:05Z")

</div>

I have simple data get in every 15 min. date - size and I would like to create cumulative sum of size. but at midnight I would like to reset it to zero and start over again for a day. how do I do it? is it possible? i…

---

## [Percentage breakdown for each subgroup](https://discuss.elastic.co/t/percentage-breakdown-for-each-subgroup/376750)

<div class="topic-metadata">

**Author:** [@mat-bro](https://discuss.elastic.co/u/mat-bro)\
**Replies:** 2\
**Last updated:** [April 3, 2025, 4:01pm UTC](https://discuss.elastic.co/t/percentage-breakdown-for-each-subgroup/376750 "2025-04-03T16:01:32Z")

</div>

Hi, I am trying to create a table in Kibana Lens (8.13) to calculate statistics for some products. In particular, for each month and product type, I would need to calculate the number of products considered and the perc…

---

## [Kibana : Fleet & Integrations infinite loading on new Air Gap installation](https://discuss.elastic.co/t/kibana-fleet-integrations-infinite-loading-on-new-air-gap-installation/376675)

<div class="topic-metadata">

**Author:** [@cyberman](https://discuss.elastic.co/u/cyberman)\
**Replies:** 1\
**Last updated:** [April 3, 2025, 12:49pm UTC](https://discuss.elastic.co/t/kibana-fleet-integrations-infinite-loading-on-new-air-gap-installation/376675 "2025-04-03T12:49:05Z")

</div>

TL;TR In an AirGap environment, Kibana, "Management \> Fleet & Integrations" shows an infinite loading despite successful connection to the local EPR according to the logs. No errors in browser and no obvious errors in …

---

## [How alerts gets recovered?](https://discuss.elastic.co/t/how-alerts-gets-recovered/376725)

<div class="topic-metadata">

**Author:** [@Amol\_Nagotkar](https://discuss.elastic.co/u/Amol_Nagotkar)\
**Replies:** 0\
**Last updated:** [April 3, 2025, 8:17am UTC](https://discuss.elastic.co/t/how-alerts-gets-recovered/376725 "2025-04-03T08:17:42Z")

</div>

Hi all, As you can see in above image. 1st alert the rule is On basis of what it is saying recovered. i have thrown errors multiple types to check this. Plus what is the way to remove/delete recovered alerts ? p…

---

## [2D Heatmap for startTime](https://discuss.elastic.co/t/2d-heatmap-for-starttime/376700)

<div class="topic-metadata">

**Author:** [@guyasp](https://discuss.elastic.co/u/guyasp)\
**Replies:** 2\
**Last updated:** [April 3, 2025, 7:42am UTC](https://discuss.elastic.co/t/2d-heatmap-for-starttime/376700 "2025-04-03T07:42:37Z")

</div>

Hello, I have a logging of records with creation timestamps, named startTime. I would like to create a 2D heatmap showing peak hours - that is, my horizontal axis should be set to "Date histogram" of this values, with…

---

## [Best Practice for server.ssl.key Permissions in Kibana?](https://discuss.elastic.co/t/best-practice-for-server-ssl-key-permissions-in-kibana/376710)

<div class="topic-metadata">

**Author:** [@anpama](https://discuss.elastic.co/u/anpama)\
**Replies:** 1\
**Last updated:** [April 2, 2025, 9:42pm UTC](https://discuss.elastic.co/t/best-practice-for-server-ssl-key-permissions-in-kibana/376710 "2025-04-02T21:42:01Z")

</div>

Hi everyone, I'm setting up SSL for Kibana (via server.ssl.key in kibana.yml) to encrypt browser traffic. My private key file has 600 permissions, and Kibana can’t read it unless I run it as root. However, both the doc…

---

## [Elastic query](https://discuss.elastic.co/t/elastic-query/376688)

<div class="topic-metadata">

**Author:** [@Paf](https://discuss.elastic.co/u/Paf)\
**Replies:** 0\
**Last updated:** [April 2, 2025, 1:41pm UTC](https://discuss.elastic.co/t/elastic-query/376688 "2025-04-02T13:41:40Z")

</div>

Hello, Il would like to make a query that is use to analyze the data to identify, for each distinct value of the field « Field\_a », if the values of the field\_b change from « value\_b\_1 » to « value\_b\_2 » over a given pe…

---

## [Can not send alert Email by Kibana](https://discuss.elastic.co/t/can-not-send-alert-email-by-kibana/376670)

<div class="topic-metadata">

**Author:** [@JackLu](https://discuss.elastic.co/u/JackLu)\
**Replies:** 0\
**Last updated:** [April 2, 2025, 8:39am UTC](https://discuss.elastic.co/t/can-not-send-alert-email-by-kibana/376670 "2025-04-02T08:39:53Z")

</div>

Hello guys: I tried to set up email alerts using the Kibana UI interface, but I was unable to configure it successfully. Besides Gmail, I also tried using Outlook with ports 465 and 587, testing both secure and …

---

## [Alert Rules - doesn't run by using rule type "elasticsearch query"](https://discuss.elastic.co/t/alert-rules-doesnt-run-by-using-rule-type-elasticsearch-query/376647)

<div class="topic-metadata">

**Author:** [@kchen](https://discuss.elastic.co/u/kchen)\
**Replies:** 0\
**Last updated:** [April 1, 2025, 2:07pm UTC](https://discuss.elastic.co/t/alert-rules-doesnt-run-by-using-rule-type-elasticsearch-query/376647 "2025-04-01T14:07:30Z")

</div>

Hello everyone, I am creating a kibana rule (7.17) to fire an action to microsoft teams. If I used the rule type "log threshold" with Notify "On a custom action interval", e.g. every 10 minutes, then the action was inv…

---

## [Have horizontal bar charts been removed from lens in kibana?](https://discuss.elastic.co/t/have-horizontal-bar-charts-been-removed-from-lens-in-kibana/376638)

<div class="topic-metadata">

**Author:** [@Matt\_Field](https://discuss.elastic.co/u/Matt_Field)\
**Replies:** 1\
**Last updated:** [April 1, 2025, 2:23pm UTC](https://discuss.elastic.co/t/have-horizontal-bar-charts-been-removed-from-lens-in-kibana/376638 "2025-04-01T14:23:37Z")

</div>

I am on kibana 8.17 - it seems a whole load of chart types are no longer available or have they just been hidden from view?

---

## [How can I disable user access to alerts?](https://discuss.elastic.co/t/how-can-i-disable-user-access-to-alerts/376648)

<div class="topic-metadata">

**Author:** [@Razu\_Nator](https://discuss.elastic.co/u/Razu_Nator)\
**Replies:** 1\
**Last updated:** [April 1, 2025, 2:12pm UTC](https://discuss.elastic.co/t/how-can-i-disable-user-access-to-alerts/376648 "2025-04-01T14:12:17Z")

</div>

Hi, I want to take away the privileges of users to create alerts, how can I do this? I currently gave privileges to Analytics Discover (All) Dashboard (All) Visualize Library (All) Observability: Infrastructure (…

---

## [Error: Invalid response when creating PDF report from dashboard](https://discuss.elastic.co/t/error-invalid-response-when-creating-pdf-report-from-dashboard/376572)

<div class="topic-metadata">

**Author:** [@rara01](https://discuss.elastic.co/u/rara01)\
**Replies:** 3\
**Last updated:** [April 1, 2025, 10:10am UTC](https://discuss.elastic.co/t/error-invalid-response-when-creating-pdf-report-from-dashboard/376572 "2025-04-01T10:10:55Z")

</div>

Hi, I'm using elastic cloud. This morning i got error regarding no report from watcher, that is sending post request for pdf report from dashboard. First error is that watcher script has ::es\_redacted:: password, which …

---

## [Controls Kibana Bug](https://discuss.elastic.co/t/controls-kibana-bug/366624)

<div class="topic-metadata">

**Author:** [@Ankita\_Pachauri](https://discuss.elastic.co/u/Ankita_Pachauri)\
**Replies:** 4\
**Last updated:** [March 31, 2025, 6:46pm UTC](https://discuss.elastic.co/t/controls-kibana-bug/366624 "2025-03-31T18:46:32Z")

</div>

Hi team, We are using version 8.13.4, and have a dashboard from which we have drill down created from Vega to another dashboard which has two controls. The issue is that whenever we drill down to the dashboards with con…

---

## [Kibana Plugin Cache Busting](https://discuss.elastic.co/t/kibana-plugin-cache-busting/376534)

<div class="topic-metadata">

**Author:** [@Dallas\_Toth](https://discuss.elastic.co/u/Dallas_Toth)\
**Replies:** 1\
**Last updated:** [March 31, 2025, 3:47pm UTC](https://discuss.elastic.co/t/kibana-plugin-cache-busting/376534 "2025-03-31T15:47:27Z")

</div>

We have a plugin that we continually develop on. Base Kibana version is 8.13.2. When we release new versions of the plugin we always create a new image of Kibana with the new updated image installed to deploy as a conta…

---

## [How to create composite "Bar horizontal percentage" charts](https://discuss.elastic.co/t/how-to-create-composite-bar-horizontal-percentage-charts/376580)

<div class="topic-metadata">

**Author:** [@Michal714](https://discuss.elastic.co/u/Michal714)\
**Replies:** 5\
**Last updated:** [March 31, 2025, 2:29pm UTC](https://discuss.elastic.co/t/how-to-create-composite-bar-horizontal-percentage-charts/376580 "2025-03-31T14:29:52Z")

</div>

Hi, I would like to generate a composite "Bar horizontal percentage" chart in Kibana. See PowerPoint version below: I have tried to reproduce this chart in Kibana by using three different methods. None of the method…

---

## [Response 500 when I create a snapshot repository](https://discuss.elastic.co/t/response-500-when-i-create-a-snapshot-repository/376478)

<div class="topic-metadata">

**Author:** [@mahendra5.kumawat](https://discuss.elastic.co/u/mahendra5.kumawat)\
**Replies:** 3\
**Last updated:** [March 31, 2025, 1:58pm UTC](https://discuss.elastic.co/t/response-500-when-i-create-a-snapshot-repository/376478 "2025-03-31T13:58:21Z")

</div>

request body: { "type":"s3", "settings":{ "endpoint":"xxx.com", "bucket":"my\_bucket", "client":"oss\_dev" } } I have add keystore: elasticsearch-keystore add s3.client.oss\_dev.access\_key elasticsearch-keystore …

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=17)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=19)
