# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=198

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 199

---

## [How to implement export functionality inside custom plugin](https://discuss.elastic.co/t/how-to-implement-export-functionality-inside-custom-plugin/308893)

<div class="topic-metadata">

**Author:** [@Azhar\_Uddin1](https://discuss.elastic.co/u/Azhar_Uddin1)\
**Replies:** 3\
**Last updated:** [July 7, 2022, 2:26pm UTC](https://discuss.elastic.co/t/how-to-implement-export-functionality-inside-custom-plugin/308893 "2022-07-07T14:26:03Z")

</div>

how can I export data which I rendered in a dataGrid inside of a custom plugin using data plugin How did I render the data inside a plugin? follow -\> Git app.tsx I want to export this data using the kibana plugin …

---

## [What exactly does "size" mean for a data stream in Kibana](https://discuss.elastic.co/t/what-exactly-does-size-mean-for-a-data-stream-in-kibana/308982)

<div class="topic-metadata">

**Author:** [@woodywoodsta](https://discuss.elastic.co/u/woodywoodsta)\
**Replies:** 4\
**Last updated:** [July 7, 2022, 1:28pm UTC](https://discuss.elastic.co/t/what-exactly-does-size-mean-for-a-data-stream-in-kibana/308982 "2022-07-07T13:28:13Z")

</div>

Hey all. I've got a fleet managed agent which is, via the kubernetes integration (and others), creating data streams. I'm trying to understand what the size column is telling me and I don't seem to be able to find any do…

---

## [Kibana index .kibana\_task\_manager goes unassigned after few days and cause Red cluster health](https://discuss.elastic.co/t/kibana-index-kibana-task-manager-goes-unassigned-after-few-days-and-cause-red-cluster-health/309028)

<div class="topic-metadata">

**Author:** [@AaronSarkissian](https://discuss.elastic.co/u/AaronSarkissian)\
**Replies:** 2\
**Last updated:** [July 7, 2022, 8:37am UTC](https://discuss.elastic.co/t/kibana-index-kibana-task-manager-goes-unassigned-after-few-days-and-cause-red-cluster-health/309028 "2022-07-07T08:37:44Z")

</div>

I'm setting up a cluster on Azure using ECK. The specifications are following: ECK version: 2.2, 2.3 (tried both) Elastic version: 8.0, 8.1.0, 8.2.0, 8.3.1 (tried all versions) K8s version: 1.23.5 Node size: Standard…

---

## [Cannot use scripted field in Elasticsearch query?](https://discuss.elastic.co/t/cannot-use-scripted-field-in-elasticsearch-query/309040)

<div class="topic-metadata">

**Author:** [@Sandeep\_Raju](https://discuss.elastic.co/u/Sandeep_Raju)\
**Replies:** 1\
**Last updated:** [July 7, 2022, 2:41am UTC](https://discuss.elastic.co/t/cannot-use-scripted-field-in-elasticsearch-query/309040 "2022-07-07T02:41:11Z")

</div>

Hi all, I'm using a scripted field, but I'm unable to query with scripted field. Anyway we can use scripted field in elasticsearch? For ex if I query below in dev tools it always gives count as 0: GET my\_index\_\*/\_sea…

---

## [Manipulate fields in Kibana](https://discuss.elastic.co/t/manipulate-fields-in-kibana/308512)

<div class="topic-metadata">

**Author:** [@zaeemmasood](https://discuss.elastic.co/u/zaeemmasood)\
**Replies:** 2\
**Last updated:** [July 6, 2022, 8:48pm UTC](https://discuss.elastic.co/t/manipulate-fields-in-kibana/308512 "2022-07-06T20:48:23Z")

</div>

Hello. We are using ELK 7.6.2 stack. Kibana console shows the fields as follows: I want to introduce/ add a new field displayed as say "sum" and it should display the sum of "before" and "after" (highlighted as yell…

---

## [Difference between today's sales and yesterday's sales](https://discuss.elastic.co/t/difference-between-todays-sales-and-yesterdays-sales/308223)

<div class="topic-metadata">

**Author:** [@behappy\_alwayz0401](https://discuss.elastic.co/u/behappy_alwayz0401)\
**Replies:** 9\
**Last updated:** [July 6, 2022, 4:54pm UTC](https://discuss.elastic.co/t/difference-between-todays-sales-and-yesterdays-sales/308223 "2022-07-06T16:54:41Z")

</div>

We want to calculate the difference between today's sales and yesterday's sales. How can this be done with a Kibana Painless script within the Kibana user interface? Thanks..

---

## [Curator: When the disk space used by all indices exceeds a certain limit](https://discuss.elastic.co/t/curator-when-the-disk-space-used-by-all-indices-exceeds-a-certain-limit/308988)

<div class="topic-metadata">

**Author:** [@nkarthik](https://discuss.elastic.co/u/nkarthik)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 4:01pm UTC](https://discuss.elastic.co/t/curator-when-the-disk-space-used-by-all-indices-exceeds-a-certain-limit/308988 "2022-07-06T16:01:00Z")

</div>

Hi, Can you please help me with the filter to be used if I need Curator to delete indices based on sized of cumulative limit on all the indices for disk usage

---

## [Kibana stopped showing logs; error failed to poll for work](https://discuss.elastic.co/t/kibana-stopped-showing-logs-error-failed-to-poll-for-work/308894)

<div class="topic-metadata">

**Author:** [@Baguette](https://discuss.elastic.co/u/Baguette)\
**Replies:** 10\
**Last updated:** [July 6, 2022, 1:43pm UTC](https://discuss.elastic.co/t/kibana-stopped-showing-logs-error-failed-to-poll-for-work/308894 "2022-07-06T13:43:48Z")

</div>

Hello there, I recently have some trouble with my ELK stack which suddently stoppend working since 2022 july 4th. With some research in the logs, i've found somehting strange : {"ecs":{"version":"8.0.0"},"@timestamp":…

---

## [Index problem .keyword](https://discuss.elastic.co/t/index-problem-keyword/308112)

<div class="topic-metadata">

**Author:** [@AnotherGuy](https://discuss.elastic.co/u/AnotherGuy)\
**Replies:** 8\
**Last updated:** [July 6, 2022, 12:32pm UTC](https://discuss.elastic.co/t/index-problem-keyword/308112 "2022-07-06T12:32:00Z")

</div>

Hi, I go a big problem today and i don't know how to resolve it. I work on ELK 7.17.1 on the same computer and with filebeat on another computer which sends me log in live with a docker. I import my template Dashboard…

---

## [Elasticsearch, Kibana, Snapshot and Restore, Registering a Repository, Mount point](https://discuss.elastic.co/t/elasticsearch-kibana-snapshot-and-restore-registering-a-repository-mount-point/308794)

<div class="topic-metadata">

**Author:** [@balasani\_sri](https://discuss.elastic.co/u/balasani_sri)\
**Replies:** 2\
**Last updated:** [July 6, 2022, 9:47am UTC](https://discuss.elastic.co/t/elasticsearch-kibana-snapshot-and-restore-registering-a-repository-mount-point/308794 "2022-07-06T09:47:22Z")

</div>

Hello does anyone knows how to add a folder to the default mount point to the shared file system while registering a repository for a snapshot in kibana? Basically, I can keep the path.repo: /opt/elk but it is throwing a…

---

## [Lens not running in 8.2.0](https://discuss.elastic.co/t/lens-not-running-in-8-2-0/308647)

<div class="topic-metadata">

**Author:** [@martb](https://discuss.elastic.co/u/martb)\
**Replies:** 4\
**Last updated:** [July 6, 2022, 7:47am UTC](https://discuss.elastic.co/t/lens-not-running-in-8-2-0/308647 "2022-07-06T07:47:11Z")

</div>

Hi Recently installed 8.2.0 and everything is working except Lens. You click on the create visualisation and it simply goes to a blank screen. You have the normal kibana gui wrap around, like menus etc. Nothing in the …

---

## [LDAP Issue](https://discuss.elastic.co/t/ldap-issue/308113)

<div class="topic-metadata">

**Author:** [@RajuParipelly](https://discuss.elastic.co/u/RajuParipelly)\
**Replies:** 7\
**Last updated:** [July 6, 2022, 6:23am UTC](https://discuss.elastic.co/t/ldap-issue/308113 "2022-07-06T06:23:09Z")

</div>

Hi, We have integrated Active Directory with Elastic and it is working fine and I am able to login to Kibana with my AD user (rb\*\*\*\*). But recently we have seen the issues with elasticsearch , elasticsearch is getting …

---

## [Vega sankey sort by](https://discuss.elastic.co/t/vega-sankey-sort-by/307771)

<div class="topic-metadata">

**Author:** [@Micah\_Barsness](https://discuss.elastic.co/u/Micah_Barsness)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 11:09pm UTC](https://discuss.elastic.co/t/vega-sankey-sort-by/307771 "2022-07-05T23:09:40Z")

</div>

I have netflow data indexing and am working on using the code below to make a sankey chart. On the chart I've identified that it is sorting by IP address alphabetically and not by the sum of my "network.bytes" field as I…

---

## [Kibana Visualization (Options List/Selector Control)](https://discuss.elastic.co/t/kibana-visualization-options-list-selector-control/307701)

<div class="topic-metadata">

**Author:** [@Ryan\_Clark](https://discuss.elastic.co/u/Ryan_Clark)\
**Replies:** 4\
**Last updated:** [July 5, 2022, 10:27pm UTC](https://discuss.elastic.co/t/kibana-visualization-options-list-selector-control/307701 "2022-07-05T22:27:56Z")

</div>

Are there any plans to allow the "Controls" visualizations to connect to a saved search? Currently it only connects to an index pattern which allows the "Controls" to affect the whole dashboard. It would be nice to tie a…

---

## [How to restrict access to an external plugin using privileges?](https://discuss.elastic.co/t/how-to-restrict-access-to-an-external-plugin-using-privileges/308951)

<div class="topic-metadata">

**Author:** [@josemartinez](https://discuss.elastic.co/u/josemartinez)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 8:25pm UTC](https://discuss.elastic.co/t/how-to-restrict-access-to-an-external-plugin-using-privileges/308951 "2022-07-05T20:25:26Z")

</div>

Hello. I have created a plugin as indicated here. How can I restrict access to the plugin with privileges? This means that only the superuser can view the plugin and that in the menu it is only visible by the superuse…

---

## [Inventory data being aggregated with periodic data](https://discuss.elastic.co/t/inventory-data-being-aggregated-with-periodic-data/308614)

<div class="topic-metadata">

**Author:** [@mtuska](https://discuss.elastic.co/u/mtuska)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 5:57pm UTC](https://discuss.elastic.co/t/inventory-data-being-aggregated-with-periodic-data/308614 "2022-07-05T17:57:41Z")

</div>

Hi, I am working on creating an application that will do a nightly inventory of CPE equipment, meanwhile also do every minute and every 5 minute statistics. I then would like to be able to display this data via Kibana d…

---

## [No index pattern for logstash](https://discuss.elastic.co/t/no-index-pattern-for-logstash/308124)

<div class="topic-metadata">

**Author:** [@AkilanGIP](https://discuss.elastic.co/u/AkilanGIP)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 5:14pm UTC](https://discuss.elastic.co/t/no-index-pattern-for-logstash/308124 "2022-07-05T17:14:09Z")

</div>

Hello, I am strugling because i have installed logstash but it don't appear and when i type filebeat-\* it says " The index pattern you've entered doesn't match any indices. You can match your 1 index, below." but it isn'…

---

## [CPU utilization visualization showing 0 % always](https://discuss.elastic.co/t/cpu-utilization-visualization-showing-0-always/308915)

<div class="topic-metadata">

**Author:** [@ritesh811](https://discuss.elastic.co/u/ritesh811)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 5:00pm UTC](https://discuss.elastic.co/t/cpu-utilization-visualization-showing-0-always/308915 "2022-07-05T17:00:54Z")

</div>

Hi team, I am trying to create the time series visualization in Kibana for CPU usage on the server, but CPU utilization is showing up as 0% all the time. However, data for the fields system.cpu.user.pct, system.cpu.sys…

---

## [Setting elasticsearch and kibana versions 8.3.0 on windows](https://discuss.elastic.co/t/setting-elasticsearch-and-kibana-versions-8-3-0-on-windows/308897)

<div class="topic-metadata">

**Author:** [@Chigozie\_Mbonu](https://discuss.elastic.co/u/Chigozie_Mbonu)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 4:52pm UTC](https://discuss.elastic.co/t/setting-elasticsearch-and-kibana-versions-8-3-0-on-windows/308897 "2022-07-05T16:52:59Z")

</div>

I ran Elasticsearch from the directory where I unzipped the file, using the command "bin\\elasticsearch.bat", the command ran successfully, and part of the outputs printed on the console are a 'Password' created for user …

---

## [How to create a dashboard to monitor CPU and memory usage of Kubernetes cluster?](https://discuss.elastic.co/t/how-to-create-a-dashboard-to-monitor-cpu-and-memory-usage-of-kubernetes-cluster/308402)

<div class="topic-metadata">

**Author:** [@Nimit\_Batham](https://discuss.elastic.co/u/Nimit_Batham)\
**Replies:** 8\
**Last updated:** [July 5, 2022, 4:49pm UTC](https://discuss.elastic.co/t/how-to-create-a-dashboard-to-monitor-cpu-and-memory-usage-of-kubernetes-cluster/308402 "2022-07-05T16:49:19Z")

</div>

How to create a dashboard to monitor CPU and memory usage of Kubernetes cluster?

---

## [How can i integrate custom visualization plugin into kibana Dashboard](https://discuss.elastic.co/t/how-can-i-integrate-custom-visualization-plugin-into-kibana-dashboard/308547)

<div class="topic-metadata">

**Author:** [@Kushal\_Roy](https://discuss.elastic.co/u/Kushal_Roy)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 4:23pm UTC](https://discuss.elastic.co/t/how-can-i-integrate-custom-visualization-plugin-into-kibana-dashboard/308547 "2022-07-05T16:23:50Z")

</div>

Hii, I developed a custom visualization Kibana Plugin. It's a React App which is visualizing data queried from an Elasticsearch index in its React components. Now i am trying to implement my custom Kibana plugin app as…

---

## [How to change kibana login splash screen icon image](https://discuss.elastic.co/t/how-to-change-kibana-login-splash-screen-icon-image/308927)

<div class="topic-metadata">

**Author:** [@diegoneto](https://discuss.elastic.co/u/diegoneto)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 3:52pm UTC](https://discuss.elastic.co/t/how-to-change-kibana-login-splash-screen-icon-image/308927 "2022-07-05T15:52:14Z")

</div>

Hello guys. I would like to know where I can change this icon. I know that the icon above "Administrator", is somewhere on the server, but I don't know the path. How to change?

---

## [Regular expression query](https://discuss.elastic.co/t/regular-expression-query/308865)

<div class="topic-metadata">

**Author:** [@Krishna\_Sai\_Nag\_G](https://discuss.elastic.co/u/Krishna_Sai_Nag_G)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 1:17pm UTC](https://discuss.elastic.co/t/regular-expression-query/308865 "2022-07-05T13:17:05Z")

</div>

Hi, i have data as below in my elastic 'My ORDER NO. 013-2009-01 and the order date is March 11, 2009 and delivered date is 13-03-2009 and the product id is B-43.' I am using regular expression query to get the data fr…

---

## [Json input script for converting bytes to GB and percentage?](https://discuss.elastic.co/t/json-input-script-for-converting-bytes-to-gb-and-percentage/308862)

<div class="topic-metadata">

**Author:** [@jisha](https://discuss.elastic.co/u/jisha)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 1:06pm UTC](https://discuss.elastic.co/t/json-input-script-for-converting-bytes-to-gb-and-percentage/308862 "2022-07-05T13:06:44Z")

</div>

Hi , I want to convert memory size and cpu usage into GB in dashboard , please help me with json input script for that

---

## [Kibana error](https://discuss.elastic.co/t/kibana-error/308861)

<div class="topic-metadata">

**Author:** [@tharunkumar](https://discuss.elastic.co/u/tharunkumar)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 1:05pm UTC](https://discuss.elastic.co/t/kibana-error/308861 "2022-07-05T13:05:11Z")

</div>

Hi i am facing this error while starting the kibana service.can you provide me the solution \[fatal\]\[root\] Error: Unable to complete saved object migrations for the \[.kibana\_task\_manager\] index: Unable to complete the OU…

---

## [How to change memory, disk space into GB and %](https://discuss.elastic.co/t/how-to-change-memory-disk-space-into-gb-and/308855)

<div class="topic-metadata">

**Author:** [@jisha](https://discuss.elastic.co/u/jisha)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 1:01pm UTC](https://discuss.elastic.co/t/how-to-change-memory-disk-space-into-gb-and/308855 "2022-07-05T13:01:37Z")

</div>

Hi, i have to change disk space in bytes into GB and % .i tried by changing the fields into bytes, pct, size etc but its showing up as bytes only.

---

## [How to use filter on a column if it's from a nested field on Kibana Canvas?](https://discuss.elastic.co/t/how-to-use-filter-on-a-column-if-its-from-a-nested-field-on-kibana-canvas/308763)

<div class="topic-metadata">

**Author:** [@Gvinfinity](https://discuss.elastic.co/u/Gvinfinity)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 12:46pm UTC](https://discuss.elastic.co/t/how-to-use-filter-on-a-column-if-its-from-a-nested-field-on-kibana-canvas/308763 "2022-07-05T12:46:09Z")

</div>

Whenever I use a filter, be it a dropdown or time filter on a column that is from a nested field no data, even data that match the filter, appears in data tables. Is there another way to do this that I'm not aware of?

---

## [To set a daily time range in kibana](https://discuss.elastic.co/t/to-set-a-daily-time-range-in-kibana/308738)

<div class="topic-metadata">

**Author:** [@hadi\_farzipour](https://discuss.elastic.co/u/hadi_farzipour)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 9:03am UTC](https://discuss.elastic.co/t/to-set-a-daily-time-range-in-kibana/308738 "2022-07-05T09:03:35Z")

</div>

I am using ELK stack 7.6.1 to store and retrieve daily logs. I want to created a visualize(table) to show all daily logs between 00:00am to 10:00am automatically. while in the time span there is no option to select daily…

---

## [Ingest pipeline split MESSAGE field into multiple fields](https://discuss.elastic.co/t/ingest-pipeline-split-message-field-into-multiple-fields/308834)

<div class="topic-metadata">

**Author:** [@moberreiter](https://discuss.elastic.co/u/moberreiter)\
**Replies:** 6\
**Last updated:** [July 5, 2022, 6:20am UTC](https://discuss.elastic.co/t/ingest-pipeline-split-message-field-into-multiple-fields/308834 "2022-07-05T06:20:37Z")

</div>

Hello everybody, I am new to elasticsearch and kibana and wanted to ask how to split a message into multiple fields. I tried creating an ingest pipeline with MESSAGE field and "," as separator, but it doesn't work as I…

---

## [Setting hour in KQL or Lucene](https://discuss.elastic.co/t/setting-hour-in-kql-or-lucene/308740)

<div class="topic-metadata">

**Author:** [@hadi\_farzipour](https://discuss.elastic.co/u/hadi_farzipour)\
**Replies:** 4\
**Last updated:** [July 5, 2022, 5:02am UTC](https://discuss.elastic.co/t/setting-hour-in-kql-or-lucene/308740 "2022-07-05T05:02:59Z")

</div>

Hello I have @timestamp field which is in following format Jul 3, 2022 @ 06:55:55.153 How can I filter logs between 06:00 and 10:00 without mentioning days and months in KQL or Lucene query language.

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=197)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=199)
