# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=196

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 197

---

## [How to visualize a single state on kibana maps?](https://discuss.elastic.co/t/how-to-visualize-a-single-state-on-kibana-maps/309628)

<div class="topic-metadata">

**Author:** [@Ritikapawar](https://discuss.elastic.co/u/Ritikapawar)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 4:20pm UTC](https://discuss.elastic.co/t/how-to-visualize-a-single-state-on-kibana-maps/309628 "2022-07-15T16:20:19Z")

</div>

I've a GEOJSON file for a state (Maharashtra), and visualized it on Kibana maps. I'm able to see the state. but I want to see the map for that state only, not other part (states, countries) on maps. how can I do this?? …

---

## [Kibana Error in Report Generation](https://discuss.elastic.co/t/kibana-error-in-report-generation/309401)

<div class="topic-metadata">

**Author:** [@Apoorv\_Agarwal](https://discuss.elastic.co/u/Apoorv_Agarwal)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 3:40pm UTC](https://discuss.elastic.co/t/kibana-error-in-report-generation/309401 "2022-07-15T15:40:00Z")

</div>

I am getting the following error while trying to generate a csv report from Kibana. Following is the error code I can see in the logs: {"type":"log","@timestamp":"2022-07-12T10:20:45Z","tags":\["debug","legacy-service…

---

## [Kibana 7.12.0 server.cors setting seems not work](https://discuss.elastic.co/t/kibana-7-12-0-server-cors-setting-seems-not-work/309561)

<div class="topic-metadata">

**Author:** [@Terry\_Li](https://discuss.elastic.co/u/Terry_Li)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 2:57pm UTC](https://discuss.elastic.co/t/kibana-7-12-0-server-cors-setting-seems-not-work/309561 "2022-07-15T14:57:09Z")

</div>

Hi, I need to login Kibana via my application ("http://localhost:3000"). I post login data to "http://localhost:5601/internal/security/login" by ajax, but "Access-Control-Allow-Origin" header not show in the response $.…

---

## [Aggregate values of multi-value fields from one document?](https://discuss.elastic.co/t/aggregate-values-of-multi-value-fields-from-one-document/309549)

<div class="topic-metadata">

**Author:** [@Muhammed\_Ashique](https://discuss.elastic.co/u/Muhammed_Ashique)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 2:43pm UTC](https://discuss.elastic.co/t/aggregate-values-of-multi-value-fields-from-one-document/309549 "2022-07-15T14:43:51Z")

</div>

I am parsing a json object into elasticsearch. one object is consist of nested json and this have multiple value. This field is provid ing multiple values like below. (also attached screenshot. How can i aggregate…

---

## [Unable to monitor logstash from kibana](https://discuss.elastic.co/t/unable-to-monitor-logstash-from-kibana/309728)

<div class="topic-metadata">

**Author:** [@harijld](https://discuss.elastic.co/u/harijld)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 1:27pm UTC](https://discuss.elastic.co/t/unable-to-monitor-logstash-from-kibana/309728 "2022-07-15T13:27:06Z")

</div>

Hi Team, I am trying to monitor logstash from Kibana. Ihave modified the logstash.yml file but its not adding to kibana / not able to see it from kibana. My Elasticsearch is running with TLS. added below parameters in…

---

## [How to filter out "-" values in Kibana?](https://discuss.elastic.co/t/how-to-filter-out-values-in-kibana/309389)

<div class="topic-metadata">

**Author:** [@Mebravo](https://discuss.elastic.co/u/Mebravo)\
**Replies:** 2\
**Last updated:** [July 15, 2022, 9:37am UTC](https://discuss.elastic.co/t/how-to-filter-out-values-in-kibana/309389 "2022-07-15T09:37:34Z")

</div>

Hi, I am trying to visualize the top process with their CPU percentage. However, when I put this in a table some values are "-". These are also sorted above normal percentages. Is there a way to filter these values out …

---

## [Filter by the same timestamp in Kibana Query DSL](https://discuss.elastic.co/t/filter-by-the-same-timestamp-in-kibana-query-dsl/308997)

<div class="topic-metadata">

**Author:** [@CaMaNi](https://discuss.elastic.co/u/CaMaNi)\
**Replies:** 2\
**Last updated:** [July 15, 2022, 6:54am UTC](https://discuss.elastic.co/t/filter-by-the-same-timestamp-in-kibana-query-dsl/308997 "2022-07-15T06:54:04Z")

</div>

Good day dear Elastic community, I have a problem regarding my Kibana dashboard. I would like to find out what data has been accessed at the same time - as it is probably irrelevant for my consideration. Therefore, via …

---

## [Elastic-agent loading default Dashboards](https://discuss.elastic.co/t/elastic-agent-loading-default-dashboards/309556)

<div class="topic-metadata">

**Author:** [@Muhammed\_Ashique](https://discuss.elastic.co/u/Muhammed_Ashique)\
**Replies:** 5\
**Last updated:** [July 15, 2022, 5:50am UTC](https://discuss.elastic.co/t/elastic-agent-loading-default-dashboards/309556 "2022-07-15T05:50:36Z")

</div>

I am upgrading beats to elastic-agents for shipping the logs. How can i load default dashboards using elastic beats. what are the communication port i need to enable to achieve this requirements

---

## [Trying to analyze data but getting wrong data format from log what are the options its big data](https://discuss.elastic.co/t/trying-to-analyze-data-but-getting-wrong-data-format-from-log-what-are-the-options-its-big-data/309376)

<div class="topic-metadata">

**Author:** [@Gaming\_zone](https://discuss.elastic.co/u/Gaming_zone)\
**Replies:** 2\
**Last updated:** [July 15, 2022, 1:27am UTC](https://discuss.elastic.co/t/trying-to-analyze-data-but-getting-wrong-data-format-from-log-what-are-the-options-its-big-data/309376 "2022-07-15T01:27:17Z")

</div>

I have to analyze the given kind of data but the data format is not n json what is the problem and how i might change it. this is the dummy json and i have to analyze data in original {"\_index": "dummy\_elk","\_id": "dum…

---

## [Kibana alerting mechanism](https://discuss.elastic.co/t/kibana-alerting-mechanism/309414)

<div class="topic-metadata">

**Author:** [@Jathurshan\_Sumandira](https://discuss.elastic.co/u/Jathurshan_Sumandira)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 12:27am UTC](https://discuss.elastic.co/t/kibana-alerting-mechanism/309414 "2022-07-15T00:27:02Z")

</div>

Hi Team, I am using Kibana alert rules and I used Elasticsearch query type. This query is scheduled to run every 1 minute. I have 20 alert rules with Elasticsearch query types. I need to know that, is it possible to co…

---

## [Exiting: fail to create the Kibana loader: Error creating Kibana client: Error creating Kibana client: fail to get the Kibana version: HTTP GET request ls: fail to execute the HTTP GET request: Get http://localhost:5601/api/status: dial tcp localhost:5601](https://discuss.elastic.co/t/exiting-fail-to-create-the-kibana-loader-error-creating-kibana-client-error-creating-kibana-client-fail-to-get-the-kibana-version-http-get-request-ls-fail-to-execute-the-http-get-request-get-http-localhost-5601-api-status-dial-tcp-localhost-5601/309310)

<div class="topic-metadata">

**Author:** [@Jass](https://discuss.elastic.co/u/Jass)\
**Replies:** 1\
**Last updated:** [July 14, 2022, 11:48pm UTC](https://discuss.elastic.co/t/exiting-fail-to-create-the-kibana-loader-error-creating-kibana-client-error-creating-kibana-client-fail-to-get-the-kibana-version-http-get-request-ls-fail-to-execute-the-http-get-request-get-http-localhost-5601-api-status-dial-tcp-localhost-5601/309310 "2022-07-14T23:48:11Z")

</div>

Hello, Currently I am working on Elasticsearch, filebeat and Kibana. I do have a problem with Kibana. When I execute the commande "sudo filebeat setup" , I got this kind of message error : Loaded index template Loadin…

---

## [View Specific Index-pattern data in a specific kibana space](https://discuss.elastic.co/t/view-specific-index-pattern-data-in-a-specific-kibana-space/309299)

<div class="topic-metadata">

**Author:** [@Saad\_Ansari](https://discuss.elastic.co/u/Saad_Ansari)\
**Replies:** 1\
**Last updated:** [July 14, 2022, 11:41pm UTC](https://discuss.elastic.co/t/view-specific-index-pattern-data-in-a-specific-kibana-space/309299 "2022-07-14T23:41:15Z")

</div>

Hi Team, I have a single elastic-cloud managed cluster, all my app env's (prod/stage/dev/etc...) are streaming data to this single cluster. Now to separate these diff env data, I've created different agent policies with…

---

## [Set Limit for Date Filter in Elastic cluster](https://discuss.elastic.co/t/set-limit-for-date-filter-in-elastic-cluster/309247)

<div class="topic-metadata">

**Author:** [@lstoneir](https://discuss.elastic.co/u/lstoneir)\
**Replies:** 2\
**Last updated:** [July 14, 2022, 11:28pm UTC](https://discuss.elastic.co/t/set-limit-for-date-filter-in-elastic-cluster/309247 "2022-07-14T23:28:17Z")

</div>

Hi I have a general question! I have a elastic with a lot of docs in index! I want to set threshold on datetime filter and not allow users to execute heavy queries on cluster. for example i set datetime\_max\_filter = …

---

## [How to get and post kibana spaces by api call?](https://discuss.elastic.co/t/how-to-get-and-post-kibana-spaces-by-api-call/308684)

<div class="topic-metadata">

**Author:** [@Gabriel\_Vasconcelos](https://discuss.elastic.co/u/Gabriel_Vasconcelos)\
**Replies:** 2\
**Last updated:** [July 14, 2022, 9:40pm UTC](https://discuss.elastic.co/t/how-to-get-and-post-kibana-spaces-by-api-call/308684 "2022-07-14T21:40:21Z")

</div>

Hello everyone, I would like to know how I can return kibana spaces via api, I tried from the documentation: Kibana spaces APIs | Kibana Guide \[8.3\] | Elastic, but when I give a get , I don't get the default spaces and s…

---

## [Index management yellow](https://discuss.elastic.co/t/index-management-yellow/309576)

<div class="topic-metadata">

**Author:** [@Khadija\_BOUDINAR1](https://discuss.elastic.co/u/Khadija_BOUDINAR1)\
**Replies:** 4\
**Last updated:** [July 14, 2022, 5:17pm UTC](https://discuss.elastic.co/t/index-management-yellow/309576 "2022-07-14T17:17:15Z")

</div>

hi all, when i create a new index some take yellow health and some take green health what's the probleme in ?

---

## [After exporting to csv getting different value](https://discuss.elastic.co/t/after-exporting-to-csv-getting-different-value/309551)

<div class="topic-metadata">

**Author:** [@Muhammed\_Ashique](https://discuss.elastic.co/u/Muhammed_Ashique)\
**Replies:** 5\
**Last updated:** [July 14, 2022, 11:19am UTC](https://discuss.elastic.co/t/after-exporting-to-csv-getting-different-value/309551 "2022-07-14T11:19:23Z")

</div>

I have some filed to export as csv . on elasticsearch it is have proper value. once i export into csv file this field is become rounded value. here attached before exporting and after exporting.

---

## [No data to display for the selected metrics should be shown for IP reputation when it does not have data](https://discuss.elastic.co/t/no-data-to-display-for-the-selected-metrics-should-be-shown-for-ip-reputation-when-it-does-not-have-data/307750)

<div class="topic-metadata">

**Author:** [@BalajeP](https://discuss.elastic.co/u/BalajeP)\
**Replies:** 3\
**Last updated:** [July 14, 2022, 10:38am UTC](https://discuss.elastic.co/t/no-data-to-display-for-the-selected-metrics-should-be-shown-for-ip-reputation-when-it-does-not-have-data/307750 "2022-07-14T10:38:40Z")

</div>

No data to display for the selected metrics should be shown for IP reputation when it does not have data The graph should be shown when having data ,if there is no data should shown no data to display. for this case not…

---

## [User Creation can do All users](https://discuss.elastic.co/t/user-creation-can-do-all-users/307840)

<div class="topic-metadata">

**Author:** [@Muhammed\_Ashique](https://discuss.elastic.co/u/Muhammed_Ashique)\
**Replies:** 3\
**Last updated:** [July 14, 2022, 7:56am UTC](https://discuss.elastic.co/t/user-creation-can-do-all-users/307840 "2022-07-14T07:56:12Z")

</div>

I have created a user and this user is login via SSO . But the users who login via sso all users can manage user and Role session under stack management. How can i restrict/disable User creation functionalities for a use…

---

## [Elastic did not load properly. Check the server output for more information](https://discuss.elastic.co/t/elastic-did-not-load-properly-check-the-server-output-for-more-information/309111)

<div class="topic-metadata">

**Author:** [@aacorreia](https://discuss.elastic.co/u/aacorreia)\
**Replies:** 2\
**Last updated:** [July 14, 2022, 7:53am UTC](https://discuss.elastic.co/t/elastic-did-not-load-properly-check-the-server-output-for-more-information/309111 "2022-07-14T07:53:19Z")

</div>

Hi, I'm new to the ELK stack. I was able to successfully deploy a functional ELK stack (version 8.2.3, Docker containerized) in my local virtual environment (VirtualBox - Vagrant VM). For development purposes, we have s…

---

## [How to access double nested data in Kibana/Vega](https://discuss.elastic.co/t/how-to-access-double-nested-data-in-kibana-vega/308806)

<div class="topic-metadata">

**Author:** [@InesCM](https://discuss.elastic.co/u/InesCM)\
**Replies:** 5\
**Last updated:** [July 14, 2022, 7:40am UTC](https://discuss.elastic.co/t/how-to-access-double-nested-data-in-kibana-vega/308806 "2022-07-14T07:40:07Z")

</div>

Hi! I'm trying to display an stacked bar with information in a double nested array in Vega. I know that people struggle with this and I've read other questions/responses, but I still cannot get this right. This is the …

---

## [Can't create Visualize Library using span.db.statement field](https://discuss.elastic.co/t/cant-create-visualize-library-using-span-db-statement-field/309471)

<div class="topic-metadata">

**Author:** [@Ahmad\_Arif](https://discuss.elastic.co/u/Ahmad_Arif)\
**Replies:** 3\
**Last updated:** [July 14, 2022, 2:45am UTC](https://discuss.elastic.co/t/cant-create-visualize-library-using-span-db-statement-field/309471 "2022-07-14T02:45:59Z")

</div>

Why I can't add field span.db.statement in Visualize Library? I want to show what query with long duration process, btw I'm using APM nodejs Agent. Thanks

---

## [Can kibana compare logs from different area and find the missing one?](https://discuss.elastic.co/t/can-kibana-compare-logs-from-different-area-and-find-the-missing-one/309509)

<div class="topic-metadata">

**Author:** [@josephLiu](https://discuss.elastic.co/u/josephLiu)\
**Replies:** 3\
**Last updated:** [July 14, 2022, 2:31am UTC](https://discuss.elastic.co/t/can-kibana-compare-logs-from-different-area-and-find-the-missing-one/309509 "2022-07-14T02:31:00Z")

</div>

I want to send some logs into elastic index continuous. When my program started logs will be sent into index1 . Finally some logs may lost and other logs will sent into index2 Can kibana compare 2 indexes and find the…

---

## [Unenrolling multiple agents requires Gold License?!](https://discuss.elastic.co/t/unenrolling-multiple-agents-requires-gold-license/309518)

<div class="topic-metadata">

**Author:** [@nemhods](https://discuss.elastic.co/u/nemhods)\
**Replies:** 1\
**Last updated:** [July 13, 2022, 11:04pm UTC](https://discuss.elastic.co/t/unenrolling-multiple-agents-requires-gold-license/309518 "2022-07-13T23:04:49Z")

</div>

Hey, when selecting multiple agents to bulk-unenroll them, I get a popup that this requires a gold license. I want to question this decision - bulk-actions on fleet agents are not a "value-add" feature but a necessity …

---

## [Need to extract doc\_count value from ctx.payload.aggregations.by\_store.buckets\_doc\_count](https://discuss.elastic.co/t/need-to-extract-doc-count-value-from-ctx-payload-aggregations-by-store-buckets-doc-count/309577)

<div class="topic-metadata">

**Author:** [@dkumar89](https://discuss.elastic.co/u/dkumar89)\
**Replies:** 2\
**Last updated:** [July 13, 2022, 7:59pm UTC](https://discuss.elastic.co/t/need-to-extract-doc-count-value-from-ctx-payload-aggregations-by-store-buckets-doc-count/309577 "2022-07-13T19:59:38Z")

</div>

Need to extract doc\_count value from each key and do a watcher condition ctx.payload.aggregations.by\_store.buckets\_doc\_count \> 2.

---

## [How to imported file GEOJSON to kibana](https://discuss.elastic.co/t/how-to-imported-file-geojson-to-kibana/309456)

<div class="topic-metadata">

**Author:** [@Khadija\_BOUDINAR1](https://discuss.elastic.co/u/Khadija_BOUDINAR1)\
**Replies:** 10\
**Last updated:** [July 13, 2022, 7:11pm UTC](https://discuss.elastic.co/t/how-to-imported-file-geojson-to-kibana/309456 "2022-07-13T19:11:49Z")

</div>

hi all, i have created new layers in kibana maps and i upload my file geojson but I can't visualize the file have you any suggestion please

---

## [Creating Index Patterns and Dashboards Using API](https://discuss.elastic.co/t/creating-index-patterns-and-dashboards-using-api/309548)

<div class="topic-metadata">

**Author:** [@christng](https://discuss.elastic.co/u/christng)\
**Replies:** 3\
**Last updated:** [July 13, 2022, 4:54pm UTC](https://discuss.elastic.co/t/creating-index-patterns-and-dashboards-using-api/309548 "2022-07-13T16:54:40Z")

</div>

I'm using Kubernetes and trying to create index patterns and dashboards on Kibana 7.17 using the curl commands but they do not seem to be working. I've followed everything at these sources: Saved objects APIs | Kibana Gu…

---

## [Understanding the result for the query](https://discuss.elastic.co/t/understanding-the-result-for-the-query/307861)

<div class="topic-metadata">

**Author:** [@Seemant\_Bind](https://discuss.elastic.co/u/Seemant_Bind)\
**Replies:** 1\
**Last updated:** [July 13, 2022, 4:47pm UTC](https://discuss.elastic.co/t/understanding-the-result-for-the-query/307861 "2022-07-13T16:47:26Z")

</div>

Continuing the discussion from Restrict specific time range: Hi, As per the issue, you have recommended that time:(from:now%2Fd-12h,to:now%2Fd-12h)) will give data from today's date - 12 hour i.e 12am to 12pm. In my c…

---

## [Visualize (Count) Keywords in Kibana](https://discuss.elastic.co/t/visualize-count-keywords-in-kibana/309335)

<div class="topic-metadata">

**Author:** [@Cal](https://discuss.elastic.co/u/Cal)\
**Replies:** 1\
**Last updated:** [July 13, 2022, 3:59pm UTC](https://discuss.elastic.co/t/visualize-count-keywords-in-kibana/309335 "2022-07-13T15:59:02Z")

</div>

Hello, I am trying to count the number of times a keyword occurs and graph it alongside other keywords. An example CSV file is: Store | Item | Item | Item A Apple Orange B …

---

## [To write a custom code for visualization](https://discuss.elastic.co/t/to-write-a-custom-code-for-visualization/309112)

<div class="topic-metadata">

**Author:** [@Ritikapawar](https://discuss.elastic.co/u/Ritikapawar)\
**Replies:** 10\
**Last updated:** [July 13, 2022, 3:43pm UTC](https://discuss.elastic.co/t/to-write-a-custom-code-for-visualization/309112 "2022-07-13T15:43:52Z")

</div>

I'm writing a custom code in kibana (vega). In which I want show the the total working hours of employe by calculating diffrence from two available fields like (out time - Intime). how can I get that in vega by writing …

---

## [Kibana Regex check if a field contains the value of another](https://discuss.elastic.co/t/kibana-regex-check-if-a-field-contains-the-value-of-another/309295)

<div class="topic-metadata">

**Author:** [@Druffle](https://discuss.elastic.co/u/Druffle)\
**Replies:** 2\
**Last updated:** [July 13, 2022, 1:54pm UTC](https://discuss.elastic.co/t/kibana-regex-check-if-a-field-contains-the-value-of-another/309295 "2022-07-13T13:54:29Z")

</div>

Hello, I'm trying to search for documents in which a description field contains the value of a name field (from another document). I tried to do a Regex query as following : GET inventory-full-index/\_search { "query"…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=195)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=197)
