# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=5

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 6

---

## [Kibana login broken after trying to enable reporting. "You do not have permission to access the requested page" message - Need help to fix it](https://discuss.elastic.co/t/kibana-login-broken-after-trying-to-enable-reporting-you-do-not-have-permission-to-access-the-requested-page-message-need-help-to-fix-it/384554)

<div class="topic-metadata">

**Author:** [@eparreiras](https://discuss.elastic.co/u/eparreiras)\
**Replies:** 24\
**Last updated:** [January 18, 2026, 8:34pm UTC](https://discuss.elastic.co/t/kibana-login-broken-after-trying-to-enable-reporting-you-do-not-have-permission-to-access-the-requested-page-message-need-help-to-fix-it/384554 "2026-01-18T20:34:05Z")

</div>

Hi there, After trying to enable reporting in Kibana following the document below: I am not able to login into Kibana anymore. I am using a Kibana 8.10.4 container version. The Elasticsearch is a IBM Cloud managed…

---

## [SAVE Option in dashboard appears when no changes made; Sometimes needs clicking twice](https://discuss.elastic.co/t/save-option-in-dashboard-appears-when-no-changes-made-sometimes-needs-clicking-twice/384596)

<div class="topic-metadata">

**Author:** [@geoffrey](https://discuss.elastic.co/u/geoffrey)\
**Replies:** 0\
**Last updated:** [January 18, 2026, 6:54am UTC](https://discuss.elastic.co/t/save-option-in-dashboard-appears-when-no-changes-made-sometimes-needs-clicking-twice/384596 "2026-01-18T06:54:29Z")

</div>

I have got some dashboards setup for displaying DMARC information in Kibana (email reporting information). I am running V9.2 of ES and Kibana. What I notice is that the save option frequently appears when no changes hav…

---

## [Kibana 8.19.9 – Multiple HIGH severity dependency vulnerabilities (npm & OS packages)](https://discuss.elastic.co/t/kibana-8-19-9-multiple-high-severity-dependency-vulnerabilities-npm-os-packages/384536)

<div class="topic-metadata">

**Author:** [@Shanmuga\_Sundaram\_Mu](https://discuss.elastic.co/u/Shanmuga_Sundaram_Mu)\
**Replies:** 1\
**Last updated:** [January 14, 2026, 10:13am UTC](https://discuss.elastic.co/t/kibana-8-19-9-multiple-high-severity-dependency-vulnerabilities-npm-os-packages/384536 "2026-01-14T10:13:21Z")

</div>

Product Details Product: Kibana Version: 8.19.9 Deployment: Self-managed / Community Build type: Official Elastic Docker / tar distribution Issue category: Third-party dependency vulnerabilities …

---

## [Kibana 8.19.9 plugin build errors](https://discuss.elastic.co/t/kibana-8-19-9-plugin-build-errors/384516)

<div class="topic-metadata">

**Author:** [@kbujold\_wr](https://discuss.elastic.co/u/kbujold_wr)\
**Replies:** 0\
**Last updated:** [January 13, 2026, 5:18pm UTC](https://discuss.elastic.co/t/kibana-8-19-9-plugin-build-errors/384516 "2026-01-13T17:18:04Z")

</div>

Hi, how can I resolve this build issue with Kibana 8.19.9? yarn build yarn run v1.22.22 $ yarn plugin-helpers build --debug --verbose $ node ../../scripts/plugin\_helpers build --debug --verbose \[baseline-browser-mapping…

---

## [Schedule Report - kibana.configuration trouble](https://discuss.elastic.co/t/schedule-report-kibana-configuration-trouble/383080)

<div class="topic-metadata">

**Author:** [@Cristina\_Marletta\_Li](https://discuss.elastic.co/u/Cristina_Marletta_Li)\
**Replies:** 3\
**Last updated:** [January 13, 2026, 4:34pm UTC](https://discuss.elastic.co/t/schedule-report-kibana-configuration-trouble/383080 "2026-01-13T16:34:53Z")

</div>

Hi all, I have Elastic Stack version 8.19. Is it possible to schedule report sending without using watchers or URLs? We tried configuring this in kibana.yml: Kibana Email settings xpack.actions.preconfigured: my-emai…

---

## [Request for Guidance on Resolving the ‘View in Context’ Issue in the Logs Stream Menu](https://discuss.elastic.co/t/request-for-guidance-on-resolving-the-view-in-context-issue-in-the-logs-stream-menu/384453)

<div class="topic-metadata">

**Author:** [@sjoh9163](https://discuss.elastic.co/u/sjoh9163)\
**Replies:** 6\
**Last updated:** [January 13, 2026, 11:03am UTC](https://discuss.elastic.co/t/request-for-guidance-on-resolving-the-view-in-context-issue-in-the-logs-stream-menu/384453 "2026-01-13T11:03:25Z")

</div>

Hello everyone, As part of applying security features to our ELK stack, we recently upgraded all components from version 8.14 to 8.19. During the upgrade, we initially encountered an issue where the Logs Stream menu wa…

---

## [Bulk Read-only indexes on Upgrade Assistant from 8.19 to 9.1](https://discuss.elastic.co/t/bulk-read-only-indexes-on-upgrade-assistant-from-8-19-to-9-1/384490)

<div class="topic-metadata">

**Author:** [@agustin](https://discuss.elastic.co/u/agustin)\
**Replies:** 1\
**Last updated:** [January 12, 2026, 9:44pm UTC](https://discuss.elastic.co/t/bulk-read-only-indexes-on-upgrade-assistant-from-8-19-to-9-1/384490 "2026-01-12T21:44:48Z")

</div>

I am upgrading an 8.19 cluster to 9.1 using the Upgrade Assistant after spinning it up from our current 7.17 snapshot. I unfortunately have over 2k indices that require action, most of them deprecated but in the process …

---

## [Looking for AI solutions that will be able to access our Private Elastic](https://discuss.elastic.co/t/looking-for-ai-solutions-that-will-be-able-to-access-our-private-elastic/384447)

<div class="topic-metadata">

**Author:** [@HaroldMelamed](https://discuss.elastic.co/u/HaroldMelamed)\
**Replies:** 0\
**Last updated:** [January 9, 2026, 1:12am UTC](https://discuss.elastic.co/t/looking-for-ai-solutions-that-will-be-able-to-access-our-private-elastic/384447 "2026-01-09T01:12:30Z")

</div>

Not sure what this would be under, but we have Elastic inhouse and are looking for an AI solution that would use our data housed in Elastic. I did see a demonstration offered on 1/13, but its in Europe and the time wo…

---

## [How I can get 2 fields values in Elastic Search](https://discuss.elastic.co/t/how-i-can-get-2-fields-values-in-elastic-search/384419)

<div class="topic-metadata">

**Author:** [@SivaK](https://discuss.elastic.co/u/SivaK)\
**Replies:** 7\
**Last updated:** [January 8, 2026, 2:59pm UTC](https://discuss.elastic.co/t/how-i-can-get-2-fields-values-in-elastic-search/384419 "2026-01-08T14:59:06Z")

</div>

I am trying as follows : Create visualization of custom field, which is addition of 2 available fields. How I can get this, so in my dashboard data updates automatically.

---

## [ES|QL: How to count latest status per key without transform](https://discuss.elastic.co/t/es-ql-how-to-count-latest-status-per-key-without-transform/384430)

<div class="topic-metadata">

**Author:** [@Tortoise](https://discuss.elastic.co/u/Tortoise)\
**Replies:** 1\
**Last updated:** [January 8, 2026, 8:20am UTC](https://discuss.elastic.co/t/es-ql-how-to-count-latest-status-per-key-without-transform/384430 "2026-01-08T08:20:14Z")

</div>

Hello Team, I am trying to compute metrics based only on the latest record per key using ES|QL in 9.x version? I have a time-series index where each entity (e.g. trainnumber) emits multiple events over time and I want …

---

## [Is a Webhook Connector possible to use for Elastic Assistant](https://discuss.elastic.co/t/is-a-webhook-connector-possible-to-use-for-elastic-assistant/384428)

<div class="topic-metadata">

**Author:** [@robert.bonagura](https://discuss.elastic.co/u/robert.bonagura)\
**Replies:** 1\
**Last updated:** [January 7, 2026, 10:44pm UTC](https://discuss.elastic.co/t/is-a-webhook-connector-possible-to-use-for-elastic-assistant/384428 "2026-01-07T22:44:25Z")

</div>

My enterprise does not hand out direct access to LLM API endpoints, all LLM API access is proxied through an internal tool to govern and manage LLM API calls at scale. That being said, if I do not have direct access to …

---

## [Kibana “Managed API keys” can be hidden/misclassified by editing metadata.managed (UI + Dev Tools)](https://discuss.elastic.co/t/kibana-managed-api-keys-can-be-hidden-misclassified-by-editing-metadata-managed-ui-dev-tools/384407)

<div class="topic-metadata">

**Author:** [@Bolto](https://discuss.elastic.co/u/Bolto)\
**Replies:** 0\
**Last updated:** [January 7, 2026, 10:47am UTC](https://discuss.elastic.co/t/kibana-managed-api-keys-can-be-hidden-misclassified-by-editing-metadata-managed-ui-dev-tools/384407 "2026-01-07T10:47:20Z")

</div>

Hi Elastic team/community, While reviewing API Keys in Kibana, I noticed that the flag used to identify Managed API keys (created/used by Kibana background tasks) can be overwritten by a user by editing the API key meta…

---

## [Some Artifactory logs parsed by Logstash grok, others indexed but fields not visible in Kibana](https://discuss.elastic.co/t/some-artifactory-logs-parsed-by-logstash-grok-others-indexed-but-fields-not-visible-in-kibana/384341)

<div class="topic-metadata">

**Author:** [@Pratiksha\_Desai](https://discuss.elastic.co/u/Pratiksha_Desai)\
**Replies:** 9\
**Last updated:** [January 4, 2026, 5:43am UTC](https://discuss.elastic.co/t/some-artifactory-logs-parsed-by-logstash-grok-others-indexed-but-fields-not-visible-in-kibana/384341 "2026-01-04T05:43:40Z")

</div>

Hello Team, I am ingesting multiple Artifactory log types through Filebeat → Logstash → Elasticsearch, but I am facing an issue where only some log lines are parsed correctly, while others are indexed without parsed fie…

---

## [Help with Lens Bar (only show values)](https://discuss.elastic.co/t/help-with-lens-bar-only-show-values/384344)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 6\
**Last updated:** [January 3, 2026, 2:51am UTC](https://discuss.elastic.co/t/help-with-lens-bar-only-show-values/384344 "2026-01-03T02:51:47Z")

</div>

Hello All, I was creating a visualization of process metrics using Elastic Agent System Integration. This is collecting top processes by CPU. I am wondering how do I show only data, if you see some values appear but th…

---

## [Lens color by value issue when using formula metrics](https://discuss.elastic.co/t/lens-color-by-value-issue-when-using-formula-metrics/384284)

<div class="topic-metadata">

**Author:** [@cgchamb](https://discuss.elastic.co/u/cgchamb)\
**Replies:** 3\
**Last updated:** [December 29, 2025, 12:17am UTC](https://discuss.elastic.co/t/lens-color-by-value-issue-when-using-formula-metrics/384284 "2025-12-29T00:17:07Z")

</div>

Elasticsearch: 8.19.5, Kibana: 8.19.5. I’m using the Sample Flight data set and I’ve created a Lens Table with “Rows: Top 5 values of Carrier” and Metric “Count of DestAirportID”. I set the metric to color by value (Cel…

---

## [Agents not "upgradeable"](https://discuss.elastic.co/t/agents-not-upgradeable/383437)

<div class="topic-metadata">

**Author:** [@Balu](https://discuss.elastic.co/u/Balu)\
**Replies:** 7\
**Last updated:** [December 24, 2025, 5:52pm UTC](https://discuss.elastic.co/t/agents-not-upgradeable/383437 "2025-12-24T17:52:19Z")

</div>

Hello I have updated my cluster to 8.19.7, then upgraded Kibana to 8.19.7 (including a reboot) and manually updated the fleet servers to 8.19.7, because they were not shown as "upgradeable". Now two days later, still n…

---

## [Unable to completely restore the URL, be sure to use the share functionality](https://discuss.elastic.co/t/unable-to-completely-restore-the-url-be-sure-to-use-the-share-functionality/383960)

<div class="topic-metadata">

**Author:** [@Haris\_Ahmed](https://discuss.elastic.co/u/Haris_Ahmed)\
**Replies:** 5\
**Last updated:** [December 21, 2025, 11:39am UTC](https://discuss.elastic.co/t/unable-to-completely-restore-the-url-be-sure-to-use-the-share-functionality/383960 "2025-12-21T11:39:45Z")

</div>

Hi Team, We are currently using Elasticsearch and Kibana version 9.2.0 and have configured a drilldown with the "Go to dashboard" action. The drilldown has been created with the relevant options enabled. We are curr…

---

## [It is possible to autoratate datastream at Kibana?](https://discuss.elastic.co/t/it-is-possible-to-autoratate-datastream-at-kibana/384171)

<div class="topic-metadata">

**Author:** [@alastor](https://discuss.elastic.co/u/alastor)\
**Replies:** 2\
**Last updated:** [December 19, 2025, 3:30pm UTC](https://discuss.elastic.co/t/it-is-possible-to-autoratate-datastream-at-kibana/384171 "2025-12-19T15:30:22Z")

</div>

Hello, i would like to share this issue: i got a kibana and filebeat reported to elasticsearch inside K8s, but that by default creates a datastream called .ds-filebeat-8.5.1-2025.12.14-000001, it is possible to make a r…

---

## [Can we create a webform kind in the kibana dashboard](https://discuss.elastic.co/t/can-we-create-a-webform-kind-in-the-kibana-dashboard/357486)

<div class="topic-metadata">

**Author:** [@Lokesh\_s](https://discuss.elastic.co/u/Lokesh_s)\
**Replies:** 6\
**Last updated:** [December 17, 2025, 8:38pm UTC](https://discuss.elastic.co/t/can-we-create-a-webform-kind-in-the-kibana-dashboard/357486 "2025-12-17T20:38:51Z")

</div>

Hi, Is there a way to create a html form kind with input tags and submit page in the kibana dashboard. Once the form is submitted, the data needs to be pushed to the index.

---

## [Pinning and sorting in Kibana - volatile?](https://discuss.elastic.co/t/pinning-and-sorting-in-kibana-volatile/384051)

<div class="topic-metadata">

**Author:** [@smm](https://discuss.elastic.co/u/smm)\
**Replies:** 4\
**Last updated:** [December 17, 2025, 11:19am UTC](https://discuss.elastic.co/t/pinning-and-sorting-in-kibana-volatile/384051 "2025-12-17T11:19:07Z")

</div>

Dear community, my colleagues use in Kibana the feature to ping fields and sort columns. They tell me, it works well for a few days, but then the sorting and pinning gets lost. The wish is to do it once (it is quite so…

---

## [Kibana 8.18 search results slow "Loading results"](https://discuss.elastic.co/t/kibana-8-18-search-results-slow-loading-results/378703)

<div class="topic-metadata">

**Author:** [@Dave\_Houser](https://discuss.elastic.co/u/Dave_Houser)\
**Replies:** 6\
**Last updated:** [December 17, 2025, 7:57am UTC](https://discuss.elastic.co/t/kibana-8-18-search-results-slow-loading-results/378703 "2025-12-17T07:57:41Z")

</div>

We upgraded our ECK env to 8.18 + all clusters. I noticed that with Kibana 8.18, when I use the search bar, it's very slow, usually just hangs on "loading results". I used to be able to search for most anything in the s…

---

## [Kibana memory consumption growing linearly until it crashes](https://discuss.elastic.co/t/kibana-memory-consumption-growing-linearly-until-it-crashes/383618)

<div class="topic-metadata">

**Author:** [@Fabio\_Hecht](https://discuss.elastic.co/u/Fabio_Hecht)\
**Replies:** 14\
**Last updated:** [December 17, 2025, 7:23am UTC](https://discuss.elastic.co/t/kibana-memory-consumption-growing-linearly-until-it-crashes/383618 "2025-12-17T07:23:24Z")

</div>

Hi there! I have an issue with a simple Elastic / Kibana deployment on OpenShift. Even with no data being ingested in Elastic and virtually no users (just me testing), Kibana’s memory consumption grows linearly until the…

---

## [Kibana - API key search results broken](https://discuss.elastic.co/t/kibana-api-key-search-results-broken/384128)

<div class="topic-metadata">

**Author:** [@Dave\_Houser](https://discuss.elastic.co/u/Dave_Houser)\
**Replies:** 8\
**Last updated:** [December 16, 2025, 6:27pm UTC](https://discuss.elastic.co/t/kibana-api-key-search-results-broken/384128 "2025-12-16T18:27:35Z")

</div>

In Kibana go to Stack management \> Security \> API keys. Type into search some letters or a word for an API key name. Nothing is returned, even if the API key names include letters or words you typed. If you type the w…

---

## [LENS and TSVB showing different result](https://discuss.elastic.co/t/lens-and-tsvb-showing-different-result/384110)

<div class="topic-metadata">

**Author:** [@Arshukla](https://discuss.elastic.co/u/Arshukla)\
**Replies:** 4\
**Last updated:** [December 16, 2025, 4:10pm UTC](https://discuss.elastic.co/t/lens-and-tsvb-showing-different-result/384110 "2025-12-16T16:10:15Z")

</div>

Hi team, Could you please help why TSVB is showing 0 values for same field and LENS is having values. Whereas in both scenarios aggregation is sum

---

## [Customizable Form - Make Dashboards DO Things](https://discuss.elastic.co/t/customizable-form-make-dashboards-do-things/384124)

<div class="topic-metadata">

**Author:** [@Fabio-sama](https://discuss.elastic.co/u/Fabio-sama)\
**Replies:** 0\
**Last updated:** [December 16, 2025, 3:54pm UTC](https://discuss.elastic.co/t/customizable-form-make-dashboards-do-things/384124 "2025-12-16T15:54:30Z")

</div>

Hi everyone, I’ve published an open-source Kibana plugin that allows you to build custom, configurable forms as Kibana Visualizations and use them inside your Dashboards so you can basically trigger actions directly fro…

---

## [Create a custom dashboard on elastic alerting data](https://discuss.elastic.co/t/create-a-custom-dashboard-on-elastic-alerting-data/384108)

<div class="topic-metadata">

**Author:** [@Maretti](https://discuss.elastic.co/u/Maretti)\
**Replies:** 2\
**Last updated:** [December 16, 2025, 11:15am UTC](https://discuss.elastic.co/t/create-a-custom-dashboard-on-elastic-alerting-data/384108 "2025-12-16T11:15:59Z")

</div>

Hi, I would like to create a dashboard with the data from elastic alerting. According to this documentation page the data is visible under .internal-alerts-\* indices I can see those in index management ex. .internal…

---

## [This cluster had issues returning data and results might be incomplete](https://discuss.elastic.co/t/this-cluster-had-issues-returning-data-and-results-might-be-incomplete/384101)

<div class="topic-metadata">

**Author:** [@Sriknth](https://discuss.elastic.co/u/Sriknth)\
**Replies:** 1\
**Last updated:** [December 16, 2025, 9:55am UTC](https://discuss.elastic.co/t/this-cluster-had-issues-returning-data-and-results-might-be-incomplete/384101 "2025-12-16T09:55:05Z")

</div>

This cluster had issues returning data and results might be incomplete. and showing “searchTimeout"what is solution for this.

---

## [New ELK 9.x cluster and Kibana HA](https://discuss.elastic.co/t/new-elk-9-x-cluster-and-kibana-ha/383780)

<div class="topic-metadata">

**Author:** [@d.silwon](https://discuss.elastic.co/u/d.silwon)\
**Replies:** 13\
**Last updated:** [December 15, 2025, 1:19pm UTC](https://discuss.elastic.co/t/new-elk-9-x-cluster-and-kibana-ha/383780 "2025-12-15T13:19:19Z")

</div>

Dears, I need your advice on installing a new ELK 9.x cluster. The cluster will be set up on VMs in the following configuration: 3 x MASTER node 8 x DATA node 2 x Kibana node 2 x Logstash node If I configure two se…

---

## [Params.\_interval in LENS](https://discuss.elastic.co/t/params-interval-in-lens/384065)

<div class="topic-metadata">

**Author:** [@Arshukla](https://discuss.elastic.co/u/Arshukla)\
**Replies:** 1\
**Last updated:** [December 15, 2025, 12:13pm UTC](https://discuss.elastic.co/t/params-interval-in-lens/384065 "2025-12-15T12:13:14Z")

</div>

Hi I am using params.\_interval in TSVB, and want to use the same interval thing in LENS. What is the way to do the same in LENS? As in denominator I want to use the interval in LENS, for preparing a tabular dashboard

---

## [Context group not visible in rule](https://discuss.elastic.co/t/context-group-not-visible-in-rule/384052)

<div class="topic-metadata">

**Author:** [@Dhruv\_Naik](https://discuss.elastic.co/u/Dhruv_Naik)\
**Replies:** 1\
**Last updated:** [December 15, 2025, 10:13am UTC](https://discuss.elastic.co/t/context-group-not-visible-in-rule/384052 "2025-12-15T10:13:52Z")

</div>

I’ve set a GROUP BY query which looks as follows under Rules: When I test the index connector via Dev Tools the context.group stays empty. My document is formatted as follows: { "alert\_type": "ERROR\_THRESHOLD\_BREA…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=4)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=6)
