# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=212

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 213

---

## [Kibana failed to load CA: PEM routines:get\_name:no start line](https://discuss.elastic.co/t/kibana-failed-to-load-ca-pem-routinesno-start-line/305228)

<div class="topic-metadata">

**Author:** [@rileghft](https://discuss.elastic.co/u/rileghft)\
**Replies:** 2\
**Last updated:** [May 20, 2022, 7:11pm UTC](https://discuss.elastic.co/t/kibana-failed-to-load-ca-pem-routinesno-start-line/305228 "2022-05-20T19:11:54Z")

</div>

I setup an Elasticsearch cluster, and the cluster health is green. Elasticsearch cluster can be reached on kibana server, but kibana failed to start, showing PEM error. Environment: OS: Almalinux 8.6 Kibana version: …

---

## [Kibana issue connecting to elasticsearch via https](https://discuss.elastic.co/t/kibana-issue-connecting-to-elasticsearch-via-https/305237)

<div class="topic-metadata">

**Author:** [@GSood1](https://discuss.elastic.co/u/GSood1)\
**Replies:** 1\
**Last updated:** [May 20, 2022, 6:23pm UTC](https://discuss.elastic.co/t/kibana-issue-connecting-to-elasticsearch-via-https/305237 "2022-05-20T18:23:13Z")

</div>

So I've been informed by our IT that we need to enable SSL on our setup. Currently, we are using logstash, Elasticsearch, and kibana running via 3 separate docker containers. I got a DoD SSL cert from our IT folks and …

---

## [Error Kibana container is unhealthy](https://discuss.elastic.co/t/error-kibana-container-is-unhealthy/303409)

<div class="topic-metadata">

**Author:** [@Fabian\_Crespo\_Fernan](https://discuss.elastic.co/u/Fabian_Crespo_Fernan)\
**Replies:** 12\
**Last updated:** [May 20, 2022, 5:27pm UTC](https://discuss.elastic.co/t/error-kibana-container-is-unhealthy/303409 "2022-05-20T17:27:13Z")

</div>

Hello, We are trying to install and configure an Elasticsearch cluster in Ubuntu 20.04.4 LTS(x86-64) with the docker-compose.yml from https://www.elastic.co/guide/en/elasticsearch/reference/current/docker.html. The comm…

---

## [Kibana Painless script documentation](https://discuss.elastic.co/t/kibana-painless-script-documentation/305292)

<div class="topic-metadata">

**Author:** [@behappy\_alwayz0401](https://discuss.elastic.co/u/behappy_alwayz0401)\
**Replies:** 1\
**Last updated:** [May 20, 2022, 2:14pm UTC](https://discuss.elastic.co/t/kibana-painless-script-documentation/305292 "2022-05-20T14:14:36Z")

</div>

Hi, Where can we find a complete list of all possible script codes along with the functions they perform that can be used in Painless Kibana Scripting? thank you..

---

## [If condition for text field](https://discuss.elastic.co/t/if-condition-for-text-field/305291)

<div class="topic-metadata">

**Author:** [@behappy\_alwayz0401](https://discuss.elastic.co/u/behappy_alwayz0401)\
**Replies:** 1\
**Last updated:** [May 20, 2022, 12:59pm UTC](https://discuss.elastic.co/t/if-condition-for-text-field/305291 "2022-05-20T12:59:26Z")

</div>

Hi, I am trying to search a text field for a particular value and perform an operation on the result. E.g. say, the text field is Region with values DA, DP, DE, RA, RP, RE. The condition I require is "if Region is DA, …

---

## [After enabling the xpack security, couldn't access into kibana](https://discuss.elastic.co/t/after-enabling-the-xpack-security-couldnt-access-into-kibana/305036)

<div class="topic-metadata">

**Author:** [@fanfan01127](https://discuss.elastic.co/u/fanfan01127)\
**Replies:** 5\
**Last updated:** [May 20, 2022, 10:54am UTC](https://discuss.elastic.co/t/after-enabling-the-xpack-security-couldnt-access-into-kibana/305036 "2022-05-20T10:54:12Z")

</div>

First of all, I am currently using Elasticsearch 7.17 on Linux Redhat 8. Since I want to install the elastic agent on my windows client, so I get into Fleet to set it up. But there is a message told me that missing sec…

---

## [Passing env variables to kibana through docker-compose](https://discuss.elastic.co/t/passing-env-variables-to-kibana-through-docker-compose/305266)

<div class="topic-metadata">

**Author:** [@sanskar-panchal-gith](https://discuss.elastic.co/u/sanskar-panchal-gith)\
**Replies:** 0\
**Last updated:** [May 20, 2022, 9:23am UTC](https://discuss.elastic.co/t/passing-env-variables-to-kibana-through-docker-compose/305266 "2022-05-20T09:23:55Z")

</div>

Hi , I want to pass some external urls as env variables to dockerized kibana setup. I found a topic which has this answer but it is too old now -Reading config/env variable inside kibana plugin I want to do the same i…

---

## [Kibana active directory](https://discuss.elastic.co/t/kibana-active-directory/304917)

<div class="topic-metadata">

**Author:** [@Dmitrymig](https://discuss.elastic.co/u/Dmitrymig)\
**Replies:** 6\
**Last updated:** [May 20, 2022, 9:14am UTC](https://discuss.elastic.co/t/kibana-active-directory/304917 "2022-05-20T09:14:02Z")

</div>

Guys help me, I can't log in kibana, error 401, my settings are in Elasticsearch xpack.security.enabled: true xpack: security: authc: realms: active\_directory: my\_ad: domain\_nam…

---

## [Multiple Kibana instances on elasticsearch cluster](https://discuss.elastic.co/t/multiple-kibana-instances-on-elasticsearch-cluster/305205)

<div class="topic-metadata">

**Author:** [@George\_Dimitropoulos](https://discuss.elastic.co/u/George_Dimitropoulos)\
**Replies:** 3\
**Last updated:** [May 20, 2022, 8:40am UTC](https://discuss.elastic.co/t/multiple-kibana-instances-on-elasticsearch-cluster/305205 "2022-05-20T08:40:33Z")

</div>

I have two kibana instances on version 8.1.2 . I installed the first one with rpm and for the second one I followed kibana dev guide and built an localized kibana in order to translate the UI to greek. I used to have…

---

## [Canvas - Use control in a reusable element](https://discuss.elastic.co/t/canvas-use-control-in-a-reusable-element/304800)

<div class="topic-metadata">

**Author:** [@Rick\_V](https://discuss.elastic.co/u/Rick_V)\
**Replies:** 2\
**Last updated:** [May 20, 2022, 7:26am UTC](https://discuss.elastic.co/t/canvas-use-control-in-a-reusable-element/304800 "2022-05-20T07:26:06Z")

</div>

My Canvas consists of a single block of metrics which is placed multiple times on the canvas. I want to be able to add a blocks so I made an element (which is shown in the picture) out of it to be able to add them easily…

---

## [Negative time shift for moving average?](https://discuss.elastic.co/t/negative-time-shift-for-moving-average/305073)

<div class="topic-metadata">

**Author:** [@rusLukasRath](https://discuss.elastic.co/u/rusLukasRath)\
**Replies:** 3\
**Last updated:** [May 20, 2022, 7:07am UTC](https://discuss.elastic.co/t/negative-time-shift-for-moving-average/305073 "2022-05-20T07:07:04Z")

</div>

Hello together, I'm having a little problem with one of the panels I have created. On this panel I am showing a line with an daily availability percentage (green line). Additionally I have created an moving average (bl…

---

## [Plug in kibana](https://discuss.elastic.co/t/plug-in-kibana/304808)

<div class="topic-metadata">

**Author:** [@meyer1](https://discuss.elastic.co/u/meyer1)\
**Replies:** 3\
**Last updated:** [May 20, 2022, 7:05am UTC](https://discuss.elastic.co/t/plug-in-kibana/304808 "2022-05-20T07:05:28Z")

</div>

Hello everyone ! I need help, I would like someone to explain to me step by step how to install a plugin for sankey visualization Thank you to the future person who will help me!

---

## [Local Login and Active Directory Login](https://discuss.elastic.co/t/local-login-and-active-directory-login/304844)

<div class="topic-metadata">

**Author:** [@wwalker](https://discuss.elastic.co/u/wwalker)\
**Replies:** 5\
**Last updated:** [May 20, 2022, 4:43am UTC](https://discuss.elastic.co/t/local-login-and-active-directory-login/304844 "2022-05-20T04:43:35Z")

</div>

I've recently activated gold licensing for our Elasticsearch 7.16.1 instance. I'm trying to implement Active Directory authentication. I've successfully added the needed configuration for Elasticsearch, but when I add …

---

## [Why should I add integrations in Kibana when there are indices in the relative Elastic search](https://discuss.elastic.co/t/why-should-i-add-integrations-in-kibana-when-there-are-indices-in-the-relative-elastic-search/304231)

<div class="topic-metadata">

**Author:** [@phantomsee](https://discuss.elastic.co/u/phantomsee)\
**Replies:** 2\
**Last updated:** [May 20, 2022, 2:39am UTC](https://discuss.elastic.co/t/why-should-i-add-integrations-in-kibana-when-there-are-indices-in-the-relative-elastic-search/304231 "2022-05-20T02:39:12Z")

</div>

I've already have some java log data in my Elasticsearch. But when I open Kibana, it tells me to add integrations first. I'm confused.

---

## [How to take backup from snapshot repositories and policies?](https://discuss.elastic.co/t/how-to-take-backup-from-snapshot-repositories-and-policies/305028)

<div class="topic-metadata">

**Author:** [@Siavash\_Fazli](https://discuss.elastic.co/u/Siavash_Fazli)\
**Replies:** 1\
**Last updated:** [May 19, 2022, 11:09pm UTC](https://discuss.elastic.co/t/how-to-take-backup-from-snapshot-repositories-and-policies/305028 "2022-05-19T23:09:24Z")

</div>

Hi guys, is there any way to save snapshot repositories and policies?? when I run a new ELK stack I should insert snapshot repositories and policies manually. My question is a little funny :smile: : How to create a …

---

## [Filter Indices Syntax in ILM policy](https://discuss.elastic.co/t/filter-indices-syntax-in-ilm-policy/305020)

<div class="topic-metadata">

**Author:** [@Siavash\_Fazli](https://discuss.elastic.co/u/Siavash_Fazli)\
**Replies:** 1\
**Last updated:** [May 19, 2022, 10:54pm UTC](https://discuss.elastic.co/t/filter-indices-syntax-in-ilm-policy/305020 "2022-05-19T22:54:00Z")

</div>

Hi all, I defined some policies to take snapshots in time intervals, now I need to create a policy that takes a snapshot from all indices except selected indices in previous policies, for example, this is my policy: P…

---

## [Elastic Maximum Amount of Date Fields in an Index](https://discuss.elastic.co/t/elastic-maximum-amount-of-date-fields-in-an-index/305181)

<div class="topic-metadata">

**Author:** [@rmarchman](https://discuss.elastic.co/u/rmarchman)\
**Replies:** 2\
**Last updated:** [May 19, 2022, 10:52pm UTC](https://discuss.elastic.co/t/elastic-maximum-amount-of-date-fields-in-an-index/305181 "2022-05-19T22:52:31Z")

</div>

Hi, I am looking for assistance regarding date fields in Elastic. I have a CSV file with 5 separate date columns, all formatted as ISO 8601 dates. After importing the file into Kibana, only the first 2 date columns were…

---

## [Osquery Manager does not return results from curl table](https://discuss.elastic.co/t/osquery-manager-does-not-return-results-from-curl-table/305019)

<div class="topic-metadata">

**Author:** [@hwang](https://discuss.elastic.co/u/hwang)\
**Replies:** 7\
**Last updated:** [May 19, 2022, 5:28pm UTC](https://discuss.elastic.co/t/osquery-manager-does-not-return-results-from-curl-table/305019 "2022-05-19T17:28:33Z")

</div>

Hi Elastic team, Running a query from the curl table returns an empty result. I've confirmed that other queries work and curl\_certificates work as well. SELECT \* FROM curl WHERE url = 'https://www.google.com' Is there…

---

## [Machine learning can't detect changed pattern in log rate](https://discuss.elastic.co/t/machine-learning-cant-detect-changed-pattern-in-log-rate/305163)

<div class="topic-metadata">

**Author:** [@marone](https://discuss.elastic.co/u/marone)\
**Replies:** 1\
**Last updated:** [May 19, 2022, 5:04pm UTC](https://discuss.elastic.co/t/machine-learning-cant-detect-changed-pattern-in-log-rate/305163 "2022-05-19T17:04:35Z")

</div>

Hello, I created a machine learning job using the API, I'm interested in high and low log rate for kubernetes containers, and we are trying to detect those unusual low/high log rate when they occur. Here is the job ML d…

---

## [Cannot setup dashboards filebeat to kibana](https://discuss.elastic.co/t/cannot-setup-dashboards-filebeat-to-kibana/305115)

<div class="topic-metadata">

**Author:** [@francescouk](https://discuss.elastic.co/u/francescouk)\
**Replies:** 4\
**Last updated:** [May 19, 2022, 3:51pm UTC](https://discuss.elastic.co/t/cannot-setup-dashboards-filebeat-to-kibana/305115 "2022-05-19T15:51:58Z")

</div>

Hi there, I´m trying to setup kibana dashboard from filebeat but not working Follow my test output: elasticsearch: https://XX.XX.XX.XX:9200... parse url... OK connection... parse host... OK dns lookup... O…

---

## [Explore underlying data issue for TSVB (Bar Chart 1M intervals)](https://discuss.elastic.co/t/explore-underlying-data-issue-for-tsvb-bar-chart-1m-intervals/305207)

<div class="topic-metadata">

**Author:** [@MMurza](https://discuss.elastic.co/u/MMurza)\
**Replies:** 0\
**Last updated:** [May 19, 2022, 3:02pm UTC](https://discuss.elastic.co/t/explore-underlying-data-issue-for-tsvb-bar-chart-1m-intervals/305207 "2022-05-19T15:02:46Z")

</div>

Hello! Is there a way to workaround this bug? Maybe it was fixed in recent versions? In TSVB visual I have a bar chart, with timeline interval set to 1 month. Add visual to dashboard, switch to view mode in dashboard. …

---

## [How to upgrade to kibana 8.3](https://discuss.elastic.co/t/how-to-upgrade-to-kibana-8-3/305192)

<div class="topic-metadata">

**Author:** [@Thomas\_Masquelier1](https://discuss.elastic.co/u/Thomas_Masquelier1)\
**Replies:** 2\
**Last updated:** [May 19, 2022, 2:41pm UTC](https://discuss.elastic.co/t/how-to-upgrade-to-kibana-8-3/305192 "2022-05-19T14:41:14Z")

</div>

Hey, i'm just saw on github that some new functionalities have been implemented to be able to use tags on agent and to sort them in fleet. This seems to be part of kibana 8.3. I'm using elastic cloud trial at the momen…

---

## [Why would Kibana not show all docs?](https://discuss.elastic.co/t/why-would-kibana-not-show-all-docs/305187)

<div class="topic-metadata">

**Author:** [@rugenl](https://discuss.elastic.co/u/rugenl)\
**Replies:** 5\
**Last updated:** [May 19, 2022, 2:32pm UTC](https://discuss.elastic.co/t/why-would-kibana-not-show-all-docs/305187 "2022-05-19T14:32:15Z")

</div>

I just created an index with 235 docs all created within the same second. In devtools a search returns all 235 docs, however Kibana, on the first screen before any filtering only returns 177. I don't know where to look…

---

## [ElasticCloud - alert on disk usage using metricbeats](https://discuss.elastic.co/t/elasticcloud-alert-on-disk-usage-using-metricbeats/304663)

<div class="topic-metadata">

**Author:** [@Thomas\_Masquelier](https://discuss.elastic.co/u/Thomas_Masquelier)\
**Replies:** 4\
**Last updated:** [May 19, 2022, 1:12pm UTC](https://discuss.elastic.co/t/elasticcloud-alert-on-disk-usage-using-metricbeats/304663 "2022-05-19T13:12:51Z")

</div>

I'm struggling to understand how to define an alert for my hosts disk usage in elastic cloud. The agent is installed on my different hosts with the "system" integration. Pretty sure this use metricbeats. I can see this…

---

## [Declaring runtime fields when creating transforms](https://discuss.elastic.co/t/declaring-runtime-fields-when-creating-transforms/305169)

<div class="topic-metadata">

**Author:** [@Silver137](https://discuss.elastic.co/u/Silver137)\
**Replies:** 2\
**Last updated:** [May 19, 2022, 11:51am UTC](https://discuss.elastic.co/t/declaring-runtime-fields-when-creating-transforms/305169 "2022-05-19T11:51:14Z")

</div>

I would like to add runtime fields against the index that is created when creating a transformation. I saw that the kibana transform gui offers a text box to work with runtime fields but not sure about how it works. S…

---

## [Kibana pie chart with slices for different frequency values](https://discuss.elastic.co/t/kibana-pie-chart-with-slices-for-different-frequency-values/305175)

<div class="topic-metadata">

**Author:** [@Jaime\_Fernandez](https://discuss.elastic.co/u/Jaime_Fernandez)\
**Replies:** 0\
**Last updated:** [May 19, 2022, 11:00am UTC](https://discuss.elastic.co/t/kibana-pie-chart-with-slices-for-different-frequency-values/305175 "2022-05-19T11:00:17Z")

</div>

Hi, I have an ES index where each document represents a user login. The document contains a "user\_id" field (the other fields are not relevant). I need to show a pie chart in kibana with the following slices: "1" wit…

---

## [Socket error when starting kibana](https://discuss.elastic.co/t/socket-error-when-starting-kibana/304011)

<div class="topic-metadata">

**Author:** [@Roshan1](https://discuss.elastic.co/u/Roshan1)\
**Replies:** 3\
**Last updated:** [May 19, 2022, 10:15am UTC](https://discuss.elastic.co/t/socket-error-when-starting-kibana/304011 "2022-05-19T10:15:17Z")

</div>

Hello Team, kindly advise why I am getting the following error when starting Kibana? SSL generated using: \[elastic@rb-in-prod-kibana-01 Elasticsearch\]$ ./bin/Elasticsearch-certutil http ## Elasticsearch HTTP Certific…

---

## [Query in Runtime Field](https://discuss.elastic.co/t/query-in-runtime-field/305165)

<div class="topic-metadata">

**Author:** [@shivendra95](https://discuss.elastic.co/u/shivendra95)\
**Replies:** 0\
**Last updated:** [May 19, 2022, 10:14am UTC](https://discuss.elastic.co/t/query-in-runtime-field/305165 "2022-05-19T10:14:28Z")

</div>

Hi, I'm creating a runtime field and want to fetch data from Elasticsearch by performing a query. Below is my query GET prod\_logistic\_parcel\_index/\_search { "query": { "query\_string": { "query": "(71116812…

---

## [Creating a kibana rule to report the table of documents for the hits received in indices](https://discuss.elastic.co/t/creating-a-kibana-rule-to-report-the-table-of-documents-for-the-hits-received-in-indices/305154)

<div class="topic-metadata">

**Author:** [@vinitnair93](https://discuss.elastic.co/u/vinitnair93)\
**Replies:** 0\
**Last updated:** [May 19, 2022, 9:18am UTC](https://discuss.elastic.co/t/creating-a-kibana-rule-to-report-the-table-of-documents-for-the-hits-received-in-indices/305154 "2022-05-19T09:18:00Z")

</div>

I have written a kibana rule (Elasticsearch query) that would check every 1 day for an index with size 1 Elasticsearch query - { "query":{ "match\_all" : {} }, "fields": \[ "@timestamp", "column\_2" \], "\_source": …

---

## [Average response time](https://discuss.elastic.co/t/average-response-time/305149)

<div class="topic-metadata">

**Author:** [@The-morpho](https://discuss.elastic.co/u/The-morpho)\
**Replies:** 0\
**Last updated:** [May 19, 2022, 9:02am UTC](https://discuss.elastic.co/t/average-response-time/305149 "2022-05-19T09:02:02Z")

</div>

Hello, I'm new to Elastic and Kibana, I'm working on log files that contains information about some operations on differents levels, I have a field timestamp that represent time when each operation has occured on each l…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=211)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=213)
