# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=45

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 46

---

## [Can we create dashboard specific to individual user?](https://discuss.elastic.co/t/can-we-create-dashboard-specific-to-individual-user/363432)

<div class="topic-metadata">

**Author:** [@tejashree](https://discuss.elastic.co/u/tejashree)\
**Replies:** 2\
**Last updated:** [July 29, 2024, 11:08pm UTC](https://discuss.elastic.co/t/can-we-create-dashboard-specific-to-individual-user/363432 "2024-07-29T23:08:39Z")

</div>

Is it possible to give access permissions specific to only users, i want to try allow users to create their own dashboards and allow access only to them. Can anyone help me with this?

---

## [Check Remote Cluster Health from Kibana for a Cluster where CCS is enabled](https://discuss.elastic.co/t/check-remote-cluster-health-from-kibana-for-a-cluster-where-ccs-is-enabled/364014)

<div class="topic-metadata">

**Author:** [@Albatross](https://discuss.elastic.co/u/Albatross)\
**Replies:** 0\
**Last updated:** [July 29, 2024, 11:05pm UTC](https://discuss.elastic.co/t/check-remote-cluster-health-from-kibana-for-a-cluster-where-ccs-is-enabled/364014 "2024-07-29T23:05:33Z")

</div>

We have Cross Cluster Search enabled and kibana connected to one of the clusters. I am unable to run a health API to check health of a diff remote cluster. Ex : GET /remote\_cluster2:\_cluster/state?pretty=true I get the…

---

## [Kibana(Group By Date, Get column with not '-' values](https://discuss.elastic.co/t/kibana-group-by-date-get-column-with-not-values/363716)

<div class="topic-metadata">

**Author:** [@apoorvleo](https://discuss.elastic.co/u/apoorvleo)\
**Replies:** 1\
**Last updated:** [July 29, 2024, 9:34pm UTC](https://discuss.elastic.co/t/kibana-group-by-date-get-column-with-not-values/363716 "2024-07-29T21:34:42Z")

</div>

Hi Team, I have a row let's say ProcessId, TimeStamp, isvcTransactionId, instanceId -\> a, b, c, null -\> a, b, null, d -\> a, b, null, - -\> a, b, null, e I want to create a single row in visualization or aggregation…

---

## [Kibana server is not ready yet (Docker)](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet-docker/363908)

<div class="topic-metadata">

**Author:** [@g0nz0](https://discuss.elastic.co/u/g0nz0)\
**Replies:** 1\
**Last updated:** [July 29, 2024, 9:04pm UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet-docker/363908 "2024-07-29T21:04:13Z")

</div>

Hello, I've been following this guide below and got it working at work yesterday with little problems. Today I built a new Ubuntu VM in a lab to build another instance of it, but Kibana just shows as starting and I c…

---

## [Data formatter template in TSVB](https://discuss.elastic.co/t/data-formatter-template-in-tsvb/361862)

<div class="topic-metadata">

**Author:** [@Mark\_Sarto](https://discuss.elastic.co/u/Mark_Sarto)\
**Replies:** 1\
**Last updated:** [July 29, 2024, 8:45pm UTC](https://discuss.elastic.co/t/data-formatter-template-in-tsvb/361862 "2024-07-29T20:45:41Z")

</div>

Hi I want to manipulate the template But i don't how to get it work the way I want it to work . either duration or number I want to use something like this : {{value | divide:60 | round}} hours {{value | remainder:60}}…

---

## [ELK Security](https://discuss.elastic.co/t/elk-security/363722)

<div class="topic-metadata">

**Author:** [@Ankita\_Pachauri](https://discuss.elastic.co/u/Ankita_Pachauri)\
**Replies:** 4\
**Last updated:** [July 29, 2024, 3:07pm UTC](https://discuss.elastic.co/t/elk-security/363722 "2024-07-29T15:07:42Z")

</div>

Hi Team, We just upgraded the stack version on 8.14.0 and the vulnerability scan has picked up CVE-2024-27980, CVE-2024-22020, CVE-2024-36137, CVE-2024-22018 and CVE-2024-37372. Can you please let me know how it impacts…

---

## [Migrating settings and dashboards from an offline instance (Kibana/Metricbeat/Winlogbeat)](https://discuss.elastic.co/t/migrating-settings-and-dashboards-from-an-offline-instance-kibana-metricbeat-winlogbeat/363948)

<div class="topic-metadata">

**Author:** [@Shaakxuur](https://discuss.elastic.co/u/Shaakxuur)\
**Replies:** 3\
**Last updated:** [July 29, 2024, 1:33pm UTC](https://discuss.elastic.co/t/migrating-settings-and-dashboards-from-an-offline-instance-kibana-metricbeat-winlogbeat/363948 "2024-07-29T13:33:01Z")

</div>

Hi My Test single Node Cluster is offline due a data corruption. (Shard Allocation Failed) However, I would like to export the created dashboards and settings from Kibana (and if possible Metricbeat and WInlogbeat) so…

---

## [Filter for fields that are present in Data Views](https://discuss.elastic.co/t/filter-for-fields-that-are-present-in-data-views/363685)

<div class="topic-metadata">

**Author:** [@DataBjorn](https://discuss.elastic.co/u/DataBjorn)\
**Replies:** 4\
**Last updated:** [July 29, 2024, 10:55am UTC](https://discuss.elastic.co/t/filter-for-fields-that-are-present-in-data-views/363685 "2024-07-29T10:55:38Z")

</div>

When our users are going through the various data sources present in our Elastic stack, they often struggle to know which fields are present in order to build dashboards and alerts. For example: For Metricbeat data, the…

---

## [Fault in IFrame embeded visualization](https://discuss.elastic.co/t/fault-in-iframe-embeded-visualization/363952)

<div class="topic-metadata">

**Author:** [@StefanC](https://discuss.elastic.co/u/StefanC)\
**Replies:** 3\
**Last updated:** [July 29, 2024, 10:07am UTC](https://discuss.elastic.co/t/fault-in-iframe-embeded-visualization/363952 "2024-07-29T10:07:48Z")

</div>

We have a dashboard visualisation from Kibane 8.8.3 running running in an IFrame. Since a few weeks (using Google chrome or edge version) When inspecting the data of a chart in csv form there is a red overlay over the t…

---

## [Kibana Discover and DSL query - unknown field \[aggs\] and unknown field \[size\]](https://discuss.elastic.co/t/kibana-discover-and-dsl-query-unknown-field-aggs-and-unknown-field-size/362913)

<div class="topic-metadata">

**Author:** [@RobertBM](https://discuss.elastic.co/u/RobertBM)\
**Replies:** 6\
**Last updated:** [July 25, 2024, 10:46am UTC](https://discuss.elastic.co/t/kibana-discover-and-dsl-query-unknown-field-aggs-and-unknown-field-size/362913 "2024-07-25T10:46:52Z")

</div>

Hello team, I am currently facing an issue while trying to load DSL query result in the Kibana Discover tool. The query was created with the help from this forum , which provided the correct result do a NOT IN case. How…

---

## [Zeek http logs not showing IP fileds](https://discuss.elastic.co/t/zeek-http-logs-not-showing-ip-fileds/363735)

<div class="topic-metadata">

**Author:** [@syed\_naqvi](https://discuss.elastic.co/u/syed_naqvi)\
**Replies:** 6\
**Last updated:** [July 24, 2024, 9:10pm UTC](https://discuss.elastic.co/t/zeek-http-logs-not-showing-ip-fileds/363735 "2024-07-24T21:10:48Z")

</div>

Hi, I am using Elasticsearch cloud trial. All data I can see is ingested . However when check zeek http logs dont see any source Ip other fields. Where is checked zeek conn logs and it showing IP info there . Any help…

---

## [Kibana Windows, How to use PUT command](https://discuss.elastic.co/t/kibana-windows-how-to-use-put-command/363652)

<div class="topic-metadata">

**Author:** [@Shaakxuur](https://discuss.elastic.co/u/Shaakxuur)\
**Replies:** 1\
**Last updated:** [July 24, 2024, 8:13pm UTC](https://discuss.elastic.co/t/kibana-windows-how-to-use-put-command/363652 "2024-07-24T20:13:36Z")

</div>

My Kibana installation is no longer working. Message: “Kibana server is not ready yet”. The following error messages: \[2024-07-23T17:17:13.463+02:00\]\[ERROR\]\[savedobjects-service\] \[.kibana\_task\_manager\] Action failed w…

---

## [Kibana server is not ready yet](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/363686)

<div class="topic-metadata">

**Author:** [@nvanalphen](https://discuss.elastic.co/u/nvanalphen)\
**Replies:** 6\
**Last updated:** [July 24, 2024, 10:40am UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/363686 "2024-07-24T10:40:18Z")

</div>

Hi, I am running into an issue with a new setup and hope someone can point me in the right direction. OS is Ubuntu 22.04 LTE. ES and Kibana are version 8.14.3 For now I am starting with everything on a single VM. Afte…

---

## [Kibana Rule Metadata Report](https://discuss.elastic.co/t/kibana-rule-metadata-report/363591)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 1\
**Last updated:** [July 24, 2024, 9:23am UTC](https://discuss.elastic.co/t/kibana-rule-metadata-report/363591 "2024-07-24T09:23:14Z")

</div>

Hello, I have been asked to collect a CSV report of all alerts created in Kibana (Observability, ESQuery) and their recipients. Is this possible? I am thinking this might be possible via a hidden kibana indices?

---

## [Gantt chart with Vega using live data index](https://discuss.elastic.co/t/gantt-chart-with-vega-using-live-data-index/363451)

<div class="topic-metadata">

**Author:** [@Seena\_Taravati](https://discuss.elastic.co/u/Seena_Taravati)\
**Replies:** 3\
**Last updated:** [July 24, 2024, 7:24am UTC](https://discuss.elastic.co/t/gantt-chart-with-vega-using-live-data-index/363451 "2024-07-24T07:24:29Z")

</div>

Hi all, I am trying to build a gantt chart using vega for a sequence of test ran. We have ingested all the data into a index but I am having a hard time trying to plot the gantt chart. We have the start and end times fo…

---

## [Elastic CSV Download Problem](https://discuss.elastic.co/t/elastic-csv-download-problem/363660)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 1\
**Last updated:** [July 23, 2024, 10:54pm UTC](https://discuss.elastic.co/t/elastic-csv-download-problem/363660 "2024-07-23T22:54:16Z")

</div>

I downloaded a csv report from Discover. It only returned 89 out of 161 rows. I didn't think it would be this little amount to download? Kibana/elasticsearch version: 8.14.1

---

## [Kibana Reporting Tools](https://discuss.elastic.co/t/kibana-reporting-tools/363663)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 0\
**Last updated:** [July 23, 2024, 10:09pm UTC](https://discuss.elastic.co/t/kibana-reporting-tools/363663 "2024-07-23T22:09:54Z")

</div>

Hello, does anyone use free/open source reporting tools outside of Elastic? I have seen Skedler but was see if theres something others are using?

---

## [Dynamically filter for data in the visible map area - doesn't work](https://discuss.elastic.co/t/dynamically-filter-for-data-in-the-visible-map-area-doesnt-work/363570)

<div class="topic-metadata">

**Author:** [@dc\_3](https://discuss.elastic.co/u/dc_3)\
**Replies:** 4\
**Last updated:** [July 23, 2024, 12:30pm UTC](https://discuss.elastic.co/t/dynamically-filter-for-data-in-the-visible-map-area-doesnt-work/363570 "2024-07-23T12:30:14Z")

</div>

Hi there. I've had this trouble on multiple maps now, that the 'Dynamically filter for data in the visible map area' toggle does not work reliably. I've had it work on some maps, and this screenshot where it doesn't work…

---

## [Facing an issue while creating a dashboard where I want to plot a graph for successful items & failed. But what I need is that the successful items count should go to zero if there is a failed item](https://discuss.elastic.co/t/facing-an-issue-while-creating-a-dashboard-where-i-want-to-plot-a-graph-for-successful-items-failed-but-what-i-need-is-that-the-successful-items-count-should-go-to-zero-if-there-is-a-failed-item/363630)

<div class="topic-metadata">

**Author:** [@gaurow.deshmukh](https://discuss.elastic.co/u/gaurow.deshmukh)\
**Replies:** 0\
**Last updated:** [July 23, 2024, 11:49am UTC](https://discuss.elastic.co/t/facing-an-issue-while-creating-a-dashboard-where-i-want-to-plot-a-graph-for-successful-items-failed-but-what-i-need-is-that-the-successful-items-count-should-go-to-zero-if-there-is-a-failed-item/363630 "2024-07-23T11:49:37Z")

</div>

Need to investigate the possibility where: for example if from 8 to 10am we have successful items graph shows exponential growth . If there there is a failed item , successful item will restart the count from zero. Che…

---

## [File based authentication for Kibana](https://discuss.elastic.co/t/file-based-authentication-for-kibana/363594)

<div class="topic-metadata">

**Author:** [@elastic\_noob1](https://discuss.elastic.co/u/elastic_noob1)\
**Replies:** 1\
**Last updated:** [July 22, 2024, 10:56pm UTC](https://discuss.elastic.co/t/file-based-authentication-for-kibana/363594 "2024-07-22T22:56:18Z")

</div>

I am trying to configure file based authentication for Kibana users but is it supported? The documentation suggests managing the users through API but is file realm supported? Based on my testing, it is not working but w…

---

## [Getting Error while using TABS option for increasing processing time of Kibana](https://discuss.elastic.co/t/getting-error-while-using-tabs-option-for-increasing-processing-time-of-kibana/362702)

<div class="topic-metadata">

**Author:** [@Arshukla](https://discuss.elastic.co/u/Arshukla)\
**Replies:** 3\
**Last updated:** [July 22, 2024, 12:12pm UTC](https://discuss.elastic.co/t/getting-error-while-using-tabs-option-for-increasing-processing-time-of-kibana/362702 "2024-07-22T12:12:44Z")

</div>

Hello Team, I have enabled the advanced setting related to kibana TABS, and when i am moving to my dashboard getting below error. Please suggest way forward. Screenshot given for reference

---

## [Is it possible to remove the timerange from Canvas when preparing graphs in LENS](https://discuss.elastic.co/t/is-it-possible-to-remove-the-timerange-from-canvas-when-preparing-graphs-in-lens/362697)

<div class="topic-metadata">

**Author:** [@Arshukla](https://discuss.elastic.co/u/Arshukla)\
**Replies:** 1\
**Last updated:** [July 22, 2024, 12:12pm UTC](https://discuss.elastic.co/t/is-it-possible-to-remove-the-timerange-from-canvas-when-preparing-graphs-in-lens/362697 "2024-07-22T12:12:08Z")

</div>

Hello Team, Can we remove this timerange (Last 1 hour) given in LENS when using for Canvas. Refer below screenshot

---

## [Adding description to url field](https://discuss.elastic.co/t/adding-description-to-url-field/363497)

<div class="topic-metadata">

**Author:** [@eran2](https://discuss.elastic.co/u/eran2)\
**Replies:** 4\
**Last updated:** [July 22, 2024, 10:43am UTC](https://discuss.elastic.co/t/adding-description-to-url-field/363497 "2024-07-22T10:43:11Z")

</div>

Hey, I would like to add a description to url field to show it tooltip, for example: Google: www.google.com I Have a WebsiteDescription field (Google) and Website field (which is URL in dataview) appreciate for help

---

## [Kibana URL Page : Refused to execute inline script because it violates the following Content Security Policy directive](https://discuss.elastic.co/t/kibana-url-page-refused-to-execute-inline-script-because-it-violates-the-following-content-security-policy-directive/363442)

<div class="topic-metadata">

**Author:** [@Ekta](https://discuss.elastic.co/u/Ekta)\
**Replies:** 1\
**Last updated:** [July 22, 2024, 9:09am UTC](https://discuss.elastic.co/t/kibana-url-page-refused-to-execute-inline-script-because-it-violates-the-following-content-security-policy-directive/363442 "2024-07-22T09:09:10Z")

</div>

Hi, OS - 22.04 Kibana - 7.17.22 Error: Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'unsafe-eval' 'self'". Either the 'unsafe-inline' keyword, a ha…

---

## [Kibana dashboard using 2 indices](https://discuss.elastic.co/t/kibana-dashboard-using-2-indices/363292)

<div class="topic-metadata">

**Author:** [@Riccardo\_Robb](https://discuss.elastic.co/u/Riccardo_Robb)\
**Replies:** 5\
**Last updated:** [July 22, 2024, 9:08am UTC](https://discuss.elastic.co/t/kibana-dashboard-using-2-indices/363292 "2024-07-22T09:08:54Z")

</div>

Hi guys, I want to know if it is possible to create a dashboard using 2 indices. I have 2 indices, one "collections" with \_id and related\_files\_sha256 (keyword array); one "files" with \_id, sha256 (text) and date (date)…

---

## [Failed to retrieve password hash for reserved user kibana\_system](https://discuss.elastic.co/t/failed-to-retrieve-password-hash-for-reserved-user-kibana-system/363271)

<div class="topic-metadata">

**Author:** [@Mireiabm](https://discuss.elastic.co/u/Mireiabm)\
**Replies:** 10\
**Last updated:** [July 22, 2024, 1:55am UTC](https://discuss.elastic.co/t/failed-to-retrieve-password-hash-for-reserved-user-kibana-system/363271 "2024-07-22T01:55:49Z")

</div>

hi, From one day to the next, my Elasticsearch stopped working without me doing anything, and this error appears: \[2024-07-11T09:22:37,457\]\[ERROR\]\[o.e.x.s.a.e.ReservedRealm\] \[prod-1\] failed to retrieve password hash for…

---

## [TypeError: Cannot read properties of undefined (reading 'cluster\_uuid') in Stack Monitoring Overview Page](https://discuss.elastic.co/t/typeerror-cannot-read-properties-of-undefined-reading-cluster-uuid-in-stack-monitoring-overview-page/363423)

<div class="topic-metadata">

**Author:** [@elk.admin](https://discuss.elastic.co/u/elk.admin)\
**Replies:** 1\
**Last updated:** [July 19, 2024, 11:15am UTC](https://discuss.elastic.co/t/typeerror-cannot-read-properties-of-undefined-reading-cluster-uuid-in-stack-monitoring-overview-page/363423 "2024-07-19T11:15:29Z")

</div>

I have a 7 node elasticsearch cluster . 3 Master Nodes , 3 Data Nodes and 1 Ingest Node. The 3 master and data nodes sends metrics to the ingest node via metricbeat ( system module and elasticsearch-xpack module ) . When…

---

## [\[Kibana API\] Cannot list rules using Kibana API, successfull response, empty data](https://discuss.elastic.co/t/kibana-api-cannot-list-rules-using-kibana-api-successfull-response-empty-data/363414)

<div class="topic-metadata">

**Author:** [@wocek](https://discuss.elastic.co/u/wocek)\
**Replies:** 0\
**Last updated:** [July 19, 2024, 10:36am UTC](https://discuss.elastic.co/t/kibana-api-cannot-list-rules-using-kibana-api-successfull-response-empty-data/363414 "2024-07-19T10:36:44Z")

</div>

Hi all! I'm having a peculiar problem with Kibana API. I'm writing a powershell script to manage my rules/alerts. Here's the problem: I want to hit this endpoint /api/alerting/rules/\_find to retrieve list of rules tha…

---

## [Configuration Does not Work (xpack.reporting.csv.useByteOrderMarkEncoding)](https://discuss.elastic.co/t/configuration-does-not-work-xpack-reporting-csv-usebyteordermarkencoding/363407)

<div class="topic-metadata">

**Author:** [@Faker](https://discuss.elastic.co/u/Faker)\
**Replies:** 0\
**Last updated:** [July 19, 2024, 8:17am UTC](https://discuss.elastic.co/t/configuration-does-not-work-xpack-reporting-csv-usebyteordermarkencoding/363407 "2024-07-19T08:17:22Z")

</div>

ES and Kibana version : 8.11.1 my kibana.yml x-pack.reporting xpack.reporting.enabled: true xpack.reporting.encryptionKey: "something\_secret\_i\_set" xpack.reporting.csv.checkForFormulas: true xpack.reporting.csv.esca…

---

## [Using custom ingest pipeline for AWS integration](https://discuss.elastic.co/t/using-custom-ingest-pipeline-for-aws-integration/363381)

<div class="topic-metadata">

**Author:** [@shiftey](https://discuss.elastic.co/u/shiftey)\
**Replies:** 0\
**Last updated:** [July 18, 2024, 11:06pm UTC](https://discuss.elastic.co/t/using-custom-ingest-pipeline-for-aws-integration/363381 "2024-07-18T23:06:07Z")

</div>

Hi there, Im fairly new to Elastic/Kibana, please bear with me. We use Elastic v7.17. I've setup an AWS Cloudwatch integration to collect logs from a custom app which logs to Cloudwatch. The log is unstructured, so I h…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=44)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=46)
