# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=58

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 59

---

## [Elastic available online? ](https://discuss.elastic.co/t/elastic-available-online/357575)

<div class="topic-metadata">

**Author:** [@Kowek](https://discuss.elastic.co/u/Kowek)\
**Replies:** 4\
**Last updated:** [April 22, 2024, 11:51am UTC](https://discuss.elastic.co/t/elastic-available-online/357575 "2024-04-22T11:51:54Z")

</div>

Hello, I apologize in advance for my English, I hope it will be understandable. I'm working on my final year project using ELK Stack to centralize my logs and visualize them better with Kibana. Currently I have a publi…

---

## [Line chart - aggregation based - Can't choose "normal mode"](https://discuss.elastic.co/t/line-chart-aggregation-based-cant-choose-normal-mode/357711)

<div class="topic-metadata">

**Author:** [@JenniferL](https://discuss.elastic.co/u/JenniferL)\
**Replies:** 1\
**Last updated:** [April 22, 2024, 10:43am UTC](https://discuss.elastic.co/t/line-chart-aggregation-based-cant-choose-normal-mode/357711 "2024-04-22T10:43:28Z")

</div>

Hello, I'm actually using Stack Management 7.13.1. I'm trying to do an aggregation based line chart. I'm wondering if there is a way to select the mode "normal" in the metrics while I'm using the "Percentage Mode" on t…

---

## [Kibana change/translate web UI](https://discuss.elastic.co/t/kibana-change-translate-web-ui/357605)

<div class="topic-metadata">

**Author:** [@belutak](https://discuss.elastic.co/u/belutak)\
**Replies:** 3\
**Last updated:** [April 22, 2024, 8:20am UTC](https://discuss.elastic.co/t/kibana-change-translate-web-ui/357605 "2024-04-22T08:20:22Z")

</div>

I've been attempting to translate my instance of Kibana 7.17 and have encountered a problem that I couldn't resolve for a week, so I'm hoping someone can assist me. There are two main tasks I'm trying to accomplish: To…

---

## [Kibana Sankey Diagram](https://discuss.elastic.co/t/kibana-sankey-diagram/357840)

<div class="topic-metadata">

**Author:** [@ty80517](https://discuss.elastic.co/u/ty80517)\
**Replies:** 0\
**Last updated:** [April 20, 2024, 3:15pm UTC](https://discuss.elastic.co/t/kibana-sankey-diagram/357840 "2024-04-20T15:15:29Z")

</div>

Hi Everyone, I want to show the branch's size of node's size percent. what should I do? For example： There are 320 data in OSX and 55 data go to IN. 55/320 = 17.18% I want display 17% or 17.1% or 17.18% rather than 3.…

---

## [Unable to download csv from kibana dashboard, "we couldn't generate your csv at this time"](https://discuss.elastic.co/t/unable-to-download-csv-from-kibana-dashboard-we-couldnt-generate-your-csv-at-this-time/356991)

<div class="topic-metadata">

**Author:** [@robocop](https://discuss.elastic.co/u/robocop)\
**Replies:** 7\
**Last updated:** [April 19, 2024, 2:44pm UTC](https://discuss.elastic.co/t/unable-to-download-csv-from-kibana-dashboard-we-couldnt-generate-your-csv-at-this-time/356991 "2024-04-19T14:44:21Z")

</div>

Kibana 7.6.2 csv download failed we couldn't generate your csv at this time. I checked kibana.yml but there is no xpack.reporting.csv.maxSizeBytes mentioned in the settings. Also, I checked with a very small sample too …

---

## [How to plot a time field on the y-axis of a date histogram?](https://discuss.elastic.co/t/how-to-plot-a-time-field-on-the-y-axis-of-a-date-histogram/357286)

<div class="topic-metadata">

**Author:** [@JamesBoustead](https://discuss.elastic.co/u/JamesBoustead)\
**Replies:** 2\
**Last updated:** [April 19, 2024, 11:22am UTC](https://discuss.elastic.co/t/how-to-plot-a-time-field-on-the-y-axis-of-a-date-histogram/357286 "2024-04-19T11:22:50Z")

</div>

I currently have the completion time for a date field showing as end\_time Apr 30, 2024 @ 05:37:25.908 Is there a way to convert this field to show time only (05:37:25.908) and plot this data on the y-axis of a date his…

---

## [Aggregation for Kibana Visuals](https://discuss.elastic.co/t/aggregation-for-kibana-visuals/357659)

<div class="topic-metadata">

**Author:** [@pixelberry](https://discuss.elastic.co/u/pixelberry)\
**Replies:** 3\
**Last updated:** [April 18, 2024, 7:46pm UTC](https://discuss.elastic.co/t/aggregation-for-kibana-visuals/357659 "2024-04-18T19:46:33Z")

</div>

Currently running into this issue when trying to create a boxplot. Thinking this is an aggregation problem but I don't know how to fix this.

---

## [Custom labels not used in CSV export](https://discuss.elastic.co/t/custom-labels-not-used-in-csv-export/357542)

<div class="topic-metadata">

**Author:** [@qd-danh](https://discuss.elastic.co/u/qd-danh)\
**Replies:** 3\
**Last updated:** [April 18, 2024, 7:57am UTC](https://discuss.elastic.co/t/custom-labels-not-used-in-csv-export/357542 "2024-04-18T07:57:03Z")

</div>

Title pretty much says it all. In Kibana, have some custom labels in a Data View. In the results from a search the column headers use the custom labels. Export to CSV those results and the column names are the origina…

---

## [ElasticSearch And Kibana With SSL Connect Refused(Kibana always connect to 127.0.0.1:9200)](https://discuss.elastic.co/t/elasticsearch-and-kibana-with-ssl-connect-refused-kibana-always-connect-to-127-0-0-1-9200/357627)

<div class="topic-metadata">

**Author:** [@LAIguapi](https://discuss.elastic.co/u/LAIguapi)\
**Replies:** 0\
**Last updated:** [April 17, 2024, 2:01pm UTC](https://discuss.elastic.co/t/elasticsearch-and-kibana-with-ssl-connect-refused-kibana-always-connect-to-127-0-0-1-9200/357627 "2024-04-17T14:01:10Z")

</div>

I built my ES and Kibana through docker-compose File like this And my question is: my Kibana service cant connect to my Es, whether I change my docker-compose file or kibana.yml , kibana always connect to 127.0.0.1:9200 …

---

## [Runtime Field - How to create a field (scripted field)](https://discuss.elastic.co/t/runtime-field-how-to-create-a-field-scripted-field/357430)

<div class="topic-metadata">

**Author:** [@ek9boy](https://discuss.elastic.co/u/ek9boy)\
**Replies:** 1\
**Last updated:** [April 17, 2024, 7:24am UTC](https://discuss.elastic.co/t/runtime-field-how-to-create-a-field-scripted-field/357430 "2024-04-17T07:24:56Z")

</div>

Hi, I have a date value: @timestamp: 2024-04-01T12:08:00:548Z I want to use the scripted field / runtime field option to creat a new field based on the logic below: IF @timestamp \>= 10 minutes Then ten\_minute\_breac…

---

## [Toggle between two charts](https://discuss.elastic.co/t/toggle-between-two-charts/357440)

<div class="topic-metadata">

**Author:** [@Himanshu\_Keshari](https://discuss.elastic.co/u/Himanshu_Keshari)\
**Replies:** 1\
**Last updated:** [April 17, 2024, 7:22am UTC](https://discuss.elastic.co/t/toggle-between-two-charts/357440 "2024-04-17T07:22:57Z")

</div>

Can we toggle the two chart by using single click. Example- I have two charts Vertical bar chart and Vertical bar percentage chart for the same index. so i just want a button (toggle) for switching these two charts on …

---

## [Number of entries in Options lists (Dashboard Controls)](https://discuss.elastic.co/t/number-of-entries-in-options-lists-dashboard-controls/357492)

<div class="topic-metadata">

**Author:** [@aram215](https://discuss.elastic.co/u/aram215)\
**Replies:** 1\
**Last updated:** [April 17, 2024, 7:19am UTC](https://discuss.elastic.co/t/number-of-entries-in-options-lists-dashboard-controls/357492 "2024-04-17T07:19:12Z")

</div>

Back in 2023, someone was having the same issue Dashboard: increasing the number of entries shown in "options list" filter controls related to the option to increase the number of entries (more than 10) in the filter opt…

---

## [Search Rate in Kibana Dashboard](https://discuss.elastic.co/t/search-rate-in-kibana-dashboard/357494)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 1\
**Last updated:** [April 17, 2024, 5:05am UTC](https://discuss.elastic.co/t/search-rate-in-kibana-dashboard/357494 "2024-04-17T05:05:36Z")

</div>

Hi Team, While perfroming reindex activity, we can see that the search rate of the source index 330/s but while it is writing the data to target index it is with speed of 4k/s. Both we are seeing in Kibana dashboards un…

---

## [Kibana behind firewall](https://discuss.elastic.co/t/kibana-behind-firewall/356558)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 14\
**Last updated:** [April 16, 2024, 8:32am UTC](https://discuss.elastic.co/t/kibana-behind-firewall/356558 "2024-04-16T08:32:50Z")

</div>

I have my kibana running behind firewall and can't connect to outside world. I don't need to connect either. it is working fine but getting following error. how do I stop kibana to even trying.? I already has this in k…

---

## [Cannot access kibana from browser](https://discuss.elastic.co/t/cannot-access-kibana-from-browser/356234)

<div class="topic-metadata">

**Author:** [@Paras\_Madaan](https://discuss.elastic.co/u/Paras_Madaan)\
**Replies:** 6\
**Last updated:** [April 16, 2024, 8:06am UTC](https://discuss.elastic.co/t/cannot-access-kibana-from-browser/356234 "2024-04-16T08:06:01Z")

</div>

Trying to connect kibana (7.15.2) with Elasticsearch version 7.15.2 i have setup a cluster with 3 master nodes 2 data nodes(ebs attached) elasticsearch config for 1 of the master node (elasticsearch.yml) cluster.name:…

---

## [Kibana port listening after so much time](https://discuss.elastic.co/t/kibana-port-listening-after-so-much-time/356058)

<div class="topic-metadata">

**Author:** [@athul\_prasad](https://discuss.elastic.co/u/athul_prasad)\
**Replies:** 3\
**Last updated:** [April 16, 2024, 8:03am UTC](https://discuss.elastic.co/t/kibana-port-listening-after-so-much-time/356058 "2024-04-16T08:03:33Z")

</div>

Hi , iam new to ELK whenever i restart my kibana service it takes so much time to listen to its port.after service restart i checked that if port is listening or not it tkaes more than 15 min to listen ,could anyone hel…

---

## [Change the column name of a table on a dashboard](https://discuss.elastic.co/t/change-the-column-name-of-a-table-on-a-dashboard/356245)

<div class="topic-metadata">

**Author:** [@Mulee](https://discuss.elastic.co/u/Mulee)\
**Replies:** 3\
**Last updated:** [April 16, 2024, 7:46am UTC](https://discuss.elastic.co/t/change-the-column-name-of-a-table-on-a-dashboard/356245 "2024-04-16T07:46:19Z")

</div>

Hello, I wanted to customize the column name of a table on a dashboard. Eventhough I gave the column titel "update\_at", here "per day" came up automatically, which is the time interval of this column. However what I …

---

## [Kibana Login Issues](https://discuss.elastic.co/t/kibana-login-issues/357362)

<div class="topic-metadata">

**Author:** [@Rohan\_Nayak](https://discuss.elastic.co/u/Rohan_Nayak)\
**Replies:** 4\
**Last updated:** [April 16, 2024, 6:39am UTC](https://discuss.elastic.co/t/kibana-login-issues/357362 "2024-04-16T06:39:30Z")

</div>

I'm having trouble logging into Kibana. Previously, I was able to log in without any problems. I've entered all of my credentials correctly and have even tried using a different browser, but I still can't get in.

---

## [Timelion elasticsearch documentation](https://discuss.elastic.co/t/timelion-elasticsearch-documentation/357326)

<div class="topic-metadata">

**Author:** [@Rakrish](https://discuss.elastic.co/u/Rakrish)\
**Replies:** 4\
**Last updated:** [April 15, 2024, 9:38pm UTC](https://discuss.elastic.co/t/timelion-elasticsearch-documentation/357326 "2024-04-15T21:38:04Z")

</div>

Hello - Any good documentation reference for Kibana elastsearch timelion. Thx!

---

## [Zoom on Kibana Dashboards](https://discuss.elastic.co/t/zoom-on-kibana-dashboards/357217)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 4\
**Last updated:** [April 15, 2024, 4:05pm UTC](https://discuss.elastic.co/t/zoom-on-kibana-dashboards/357217 "2024-04-15T16:05:57Z")

</div>

Hello, I tend to feel like there's not enough space to display visualizations on dashboard. I decreased my browser zoom to 75% and everything looks way better in terms of space. The 75% zoom does distort the text or mak…

---

## [Watcher - Only Alert Once Based on Specific Field](https://discuss.elastic.co/t/watcher-only-alert-once-based-on-specific-field/357004)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 3\
**Last updated:** [April 15, 2024, 2:10pm UTC](https://discuss.elastic.co/t/watcher-only-alert-once-based-on-specific-field/357004 "2024-04-15T14:10:53Z")

</div>

Hello, So I understand scheduling a csv report is only possible currently with Watcher. My use case is I want to send a csv report based on user.name when a condition has been met. The issue is the condition will be m…

---

## [How to Change Axis Tick Label Colors in Kibana Dark Theme for Better Readability?](https://discuss.elastic.co/t/how-to-change-axis-tick-label-colors-in-kibana-dark-theme-for-better-readability/356085)

<div class="topic-metadata">

**Author:** [@Behnam.R](https://discuss.elastic.co/u/Behnam.R)\
**Replies:** 2\
**Last updated:** [April 15, 2024, 8:04am UTC](https://discuss.elastic.co/t/how-to-change-axis-tick-label-colors-in-kibana-dark-theme-for-better-readability/356085 "2024-04-15T08:04:31Z")

</div>

Hi, I'm using Kibana 8.6.1 with the dark theme and facing readability issues with the axis tick labels on big screens in our operations center, as they appear in light grey. This readability concern is significant for …

---

## [Is it possible to make the Vega script dynamically retrieve data from OpenSearch every time the visualization is clicked, rather than just once?](https://discuss.elastic.co/t/is-it-possible-to-make-the-vega-script-dynamically-retrieve-data-from-opensearch-every-time-the-visualization-is-clicked-rather-than-just-once/357384)

<div class="topic-metadata">

**Author:** [@Aigerim\_Kubanychbeko](https://discuss.elastic.co/u/Aigerim_Kubanychbeko)\
**Replies:** 1\
**Last updated:** [April 15, 2024, 3:37am UTC](https://discuss.elastic.co/t/is-it-possible-to-make-the-vega-script-dynamically-retrieve-data-from-opensearch-every-time-the-visualization-is-clicked-rather-than-just-once/357384 "2024-04-15T03:37:55Z")

</div>

OpenSearch v2.11.1 Vega v5 I have already posted this question in OpenSearch community. I think I might get additional help in this group. { "$schema": "...modified/schema/vega/v5.json", "description": "An arc …

---

## [I want to monitor the creation of an AD account between 9 a.m. and 5 p.m](https://discuss.elastic.co/t/i-want-to-monitor-the-creation-of-an-ad-account-between-9-a-m-and-5-p-m/357095)

<div class="topic-metadata">

**Author:** [@Syphax](https://discuss.elastic.co/u/Syphax)\
**Replies:** 7\
**Last updated:** [April 13, 2024, 8:22am UTC](https://discuss.elastic.co/t/i-want-to-monitor-the-creation-of-an-ad-account-between-9-a-m-and-5-p-m/357095 "2024-04-13T08:22:55Z")

</div>

Hi every one, I want to create a KQL rule to detect all accounts created outside of working hours. I used @timestamp but it shows me an errors what I did but it didn't work: event.code: "4726" and (@timestamp\>= 09:00…

---

## [Support of nested queries in Kibana](https://discuss.elastic.co/t/support-of-nested-queries-in-kibana/357265)

<div class="topic-metadata">

**Author:** [@hans\_hupe](https://discuss.elastic.co/u/hans_hupe)\
**Replies:** 1\
**Last updated:** [April 12, 2024, 7:00pm UTC](https://discuss.elastic.co/t/support-of-nested-queries-in-kibana/357265 "2024-04-12T19:00:50Z")

</div>

I have an index with documents like this { "id":1, "logs":\[ { "who":"max", "action":"delete" }, { "who":"peter", "action":"save" } \] }, { "id":2, …

---

## [Anomaly detection - Forecast](https://discuss.elastic.co/t/anomaly-detection-forecast/355024)

<div class="topic-metadata">

**Author:** [@NamithaJ97](https://discuss.elastic.co/u/NamithaJ97)\
**Replies:** 1\
**Last updated:** [April 12, 2024, 6:59pm UTC](https://discuss.elastic.co/t/anomaly-detection-forecast/355024 "2024-04-12T18:59:02Z")

</div>

I want to create forecast for all distinct values in "versions" field using single metric viewer- forecast in anomaly detection but unfortunately there are no anomalies for 6 versions and anomalies exists for only two an…

---

## [Not getting output on Kibana while can see logs on logstash log screen on Docker](https://discuss.elastic.co/t/not-getting-output-on-kibana-while-can-see-logs-on-logstash-log-screen-on-docker/355519)

<div class="topic-metadata">

**Author:** [@LeetLee](https://discuss.elastic.co/u/LeetLee)\
**Replies:** 3\
**Last updated:** [April 12, 2024, 5:58pm UTC](https://discuss.elastic.co/t/not-getting-output-on-kibana-while-can-see-logs-on-logstash-log-screen-on-docker/355519 "2024-04-12T17:58:38Z")

</div>

I'm trying to send Airflow logs to Elasticsearch for monitoring on Kibana using Logstash and Filebeat. However, although I can see logs on the Docker Logstash log screen, those logs cannot be seen on Elasticsearch and Ki…

---

## [Alerting on no data with a specific rule](https://discuss.elastic.co/t/alerting-on-no-data-with-a-specific-rule/357306)

<div class="topic-metadata">

**Author:** [@ElasticLiver](https://discuss.elastic.co/u/ElasticLiver)\
**Replies:** 0\
**Last updated:** [April 12, 2024, 3:38pm UTC](https://discuss.elastic.co/t/alerting-on-no-data-with-a-specific-rule/357306 "2024-04-12T15:38:39Z")

</div>

Hi, Im monitoring remote Postgres and MSSql databases with metricbeat, metricbeat is installed in a local server that get data from the remote sources and need to alert when I dont get data. In the module configuratio…

---

## [How to run Powershell Scripts with Elastic?](https://discuss.elastic.co/t/how-to-run-powershell-scripts-with-elastic/357224)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 9\
**Last updated:** [April 12, 2024, 2:14pm UTC](https://discuss.elastic.co/t/how-to-run-powershell-scripts-with-elastic/357224 "2024-04-12T14:14:10Z")

</div>

Hello, I was wondering if possible to automate a powershell script with Elastic. Perhaps a trigger can set off the script to run? I read that webhooks might be an option but is there better methods?

---

## [How to add a new field mapping in my web access log](https://discuss.elastic.co/t/how-to-add-a-new-field-mapping-in-my-web-access-log/357198)

<div class="topic-metadata">

**Author:** [@hi\_hi](https://discuss.elastic.co/u/hi_hi)\
**Replies:** 2\
**Last updated:** [April 12, 2024, 10:11am UTC](https://discuss.elastic.co/t/how-to-add-a-new-field-mapping-in-my-web-access-log/357198 "2024-04-12T10:11:28Z")

</div>

The first entry in the web access log file: 112.181.246.27 12.12.181.2 - - \[03/Apr/2024:16:46:22 +0800\] "GET /icr/?mac\_address=005044567570&network\_type=4G&time=16:46:22.190 HTTP/1.1" 200 679 31248 "CX1UUCGAA01V.ixxx.pc…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=57)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=59)
