# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=65

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 66

---

## [Visualize network trafic in bits/s](https://discuss.elastic.co/t/visualize-network-trafic-in-bits-s/354718)

<div class="topic-metadata">

**Author:** [@Soan\_L](https://discuss.elastic.co/u/Soan_L)\
**Replies:** 2\
**Last updated:** [March 7, 2024, 10:30am UTC](https://discuss.elastic.co/t/visualize-network-trafic-in-bits-s/354718 "2024-03-07T10:30:52Z")

</div>

Hello, I installed metricbeat 8.9.2 on my server. I would like retreive the bandwith used from two servers in the same visualization and get the result in bits and not in bytes. So I created a TSVB like this : For in…

---

## [Field level security and visualisations](https://discuss.elastic.co/t/field-level-security-and-visualisations/354826)

<div class="topic-metadata">

**Author:** [@mwitsas](https://discuss.elastic.co/u/mwitsas)\
**Replies:** 11\
**Last updated:** [March 7, 2024, 9:43am UTC](https://discuss.elastic.co/t/field-level-security-and-visualisations/354826 "2024-03-07T09:43:21Z")

</div>

We have implemented field level security to hide a sensitive field from a subset of users and this works as desired in discover etc. We had expected if a restricted user accesses a dashboard containing the field, the fi…

---

## [Lens or Aggs query to group by having count \> X](https://discuss.elastic.co/t/lens-or-aggs-query-to-group-by-having-count-x/354264)

<div class="topic-metadata">

**Author:** [@qd-danh](https://discuss.elastic.co/u/qd-danh)\
**Replies:** 5\
**Last updated:** [March 6, 2024, 8:05pm UTC](https://discuss.elastic.co/t/lens-or-aggs-query-to-group-by-having-count-x/354264 "2024-03-06T20:05:23Z")

</div>

I'm drawing a blank on how to accomplish this in Kibana or Elastic. Prefer to have this in a Lens visual so I can add to a dashboard, but minimally I can do it with an aggregate API query in Kibana dev tools. I'm dumbi…

---

## [Ubuntu 20.04 ELK 8.10.2 Consuming all the RAM](https://discuss.elastic.co/t/ubuntu-20-04-elk-8-10-2-consuming-all-the-ram/354769)

<div class="topic-metadata">

**Author:** [@RobertC1](https://discuss.elastic.co/u/RobertC1)\
**Replies:** 6\
**Last updated:** [March 6, 2024, 6:20pm UTC](https://discuss.elastic.co/t/ubuntu-20-04-elk-8-10-2-consuming-all-the-ram/354769 "2024-03-06T18:20:30Z")

</div>

There are 241 threads of /usr/share/elasticsearch/jdk/bin/java and this is consumig the RAM progressively. The ingestion process is executed every hour. root@SRV-ELK:/etc/elasticsearch# ps -feaL | grep '/usr/share/…

---

## [Kibana visualization table control](https://discuss.elastic.co/t/kibana-visualization-table-control/354709)

<div class="topic-metadata">

**Author:** [@jyoti\_panse](https://discuss.elastic.co/u/jyoti_panse)\
**Replies:** 1\
**Last updated:** [March 6, 2024, 1:54pm UTC](https://discuss.elastic.co/t/kibana-visualization-table-control/354709 "2024-03-06T13:54:22Z")

</div>

I have created one table control in kibana visualization. The table has three column. I want to create fourth column which will be having row wise % of 3rd column value. Ex. 44.4 is 40.3% of 100.8 Ex. 11.8 is 10.7% …

---

## [Is there a way where we can choose a particular color from the given color pallet for data comparision in a pie chart?](https://discuss.elastic.co/t/is-there-a-way-where-we-can-choose-a-particular-color-from-the-given-color-pallet-for-data-comparision-in-a-pie-chart/354402)

<div class="topic-metadata">

**Author:** [@varshii](https://discuss.elastic.co/u/varshii)\
**Replies:** 1\
**Last updated:** [March 6, 2024, 1:49pm UTC](https://discuss.elastic.co/t/is-there-a-way-where-we-can-choose-a-particular-color-from-the-given-color-pallet-for-data-comparision-in-a-pie-chart/354402 "2024-03-06T13:49:47Z")

</div>

We only have a specific forms of color pallet in kibana for data comparision (like positive, negative, neutral, grey etc). Can we atleast choose the exact color that we need from the given color pallet?

---

## [Is it possible to make Tag cloud value as clickable link?](https://discuss.elastic.co/t/is-it-possible-to-make-tag-cloud-value-as-clickable-link/354721)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 1\
**Last updated:** [March 6, 2024, 1:44pm UTC](https://discuss.elastic.co/t/is-it-possible-to-make-tag-cloud-value-as-clickable-link/354721 "2024-03-06T13:44:26Z")

</div>

Hello, I've values from tag cloud visual and want to make them clickable as url routing? Is it possible?

---

## [How to manage the displayed date when weekly time interval is selected?](https://discuss.elastic.co/t/how-to-manage-the-displayed-date-when-weekly-time-interval-is-selected/354742)

<div class="topic-metadata">

**Author:** [@nnikushkin](https://discuss.elastic.co/u/nnikushkin)\
**Replies:** 1\
**Last updated:** [March 6, 2024, 1:41pm UTC](https://discuss.elastic.co/t/how-to-manage-the-displayed-date-when-weekly-time-interval-is-selected/354742 "2024-03-06T13:41:49Z")

</div>

Hello! I have weekly Sunday reports and would like to visulize them I've noticed that when selecting a weekly time interval in any time diagram in Kibana Lens, every bucket displays the first day of the week interval. …

---

## [How to get long link of dashboards (link containing embeddable configs) in kibana 8.8.0 And other latest versions](https://discuss.elastic.co/t/how-to-get-long-link-of-dashboards-link-containing-embeddable-configs-in-kibana-8-8-0-and-other-latest-versions/354818)

<div class="topic-metadata">

**Author:** [@brusque.sowers](https://discuss.elastic.co/u/brusque.sowers)\
**Replies:** 1\
**Last updated:** [March 6, 2024, 9:56am UTC](https://discuss.elastic.co/t/how-to-get-long-link-of-dashboards-link-containing-embeddable-configs-in-kibana-8-8-0-and-other-latest-versions/354818 "2024-03-06T09:56:22Z")

</div>

In older versions of kibana , we used to have option while sharing the dashboard link to either have a shorter link or a complete link containing the details of each and every visualisation in form of embeddableConfigs i…

---

## [Wiremock split response message in Kibana logs](https://discuss.elastic.co/t/wiremock-split-response-message-in-kibana-logs/354810)

<div class="topic-metadata">

**Author:** [@chtivo108](https://discuss.elastic.co/u/chtivo108)\
**Replies:** 0\
**Last updated:** [March 6, 2024, 7:49am UTC](https://discuss.elastic.co/t/wiremock-split-response-message-in-kibana-logs/354810 "2024-03-06T07:49:40Z")

</div>

The response from wiremock does not come to kibana in one message, but is split into several. Wiremock is deployed in a test environment. I'm using com.github.tomakehurst.wiremock.wiremock.client.WireMock How to receiv…

---

## [Suricata logs are not visible](https://discuss.elastic.co/t/suricata-logs-are-not-visible/354733)

<div class="topic-metadata">

**Author:** [@Dhia\_Said](https://discuss.elastic.co/u/Dhia_Said)\
**Replies:** 3\
**Last updated:** [March 5, 2024, 4:21pm UTC](https://discuss.elastic.co/t/suricata-logs-are-not-visible/354733 "2024-03-05T16:21:27Z")

</div>

hello i have this problem , i just configured the elk stack on my windows machine and i added a suricata integration but it doesn't work , it showed me no results , what should i do in this case

---

## [Upgrading Kibana 7.17.15 -\> 7.17.18 FATAL ERROR](https://discuss.elastic.co/t/upgrading-kibana-7-17-15-7-17-18-fatal-error/353299)

<div class="topic-metadata">

**Author:** [@jasonperrone](https://discuss.elastic.co/u/jasonperrone)\
**Replies:** 9\
**Last updated:** [March 5, 2024, 4:16pm UTC](https://discuss.elastic.co/t/upgrading-kibana-7-17-15-7-17-18-fatal-error/353299 "2024-03-05T16:16:48Z")

</div>

I upgraded my Kibana from 7.17.15 -\> 7.17.18. On startup received: FATAL Error: EACCES: permission denied, stat '/nonexistent/.config/puppeteer'. Downgraded back to 7.17.15 =\> Problem disappeared.

---

## [Setting domain name in session cookies](https://discuss.elastic.co/t/setting-domain-name-in-session-cookies/354743)

<div class="topic-metadata">

**Author:** [@Antim\_K](https://discuss.elastic.co/u/Antim_K)\
**Replies:** 0\
**Last updated:** [March 5, 2024, 2:03pm UTC](https://discuss.elastic.co/t/setting-domain-name-in-session-cookies/354743 "2024-03-05T14:03:24Z")

</div>

I'm working on a project where I need more granular control over the session cookies used by Kibana. I need to set a specific domain name for Kibana session cookies. But haven't found any official way to set domain name …

---

## [Define default index pattern from a yml file](https://discuss.elastic.co/t/define-default-index-pattern-from-a-yml-file/354334)

<div class="topic-metadata">

**Author:** [@Amir\_Dar](https://discuss.elastic.co/u/Amir_Dar)\
**Replies:** 11\
**Last updated:** [March 5, 2024, 12:01pm UTC](https://discuss.elastic.co/t/define-default-index-pattern-from-a-yml-file/354334 "2024-03-05T12:01:32Z")

</div>

Hi All we are running ELK (version 8.7.0) over docker containers. Whenever we are doing a restart to those containers (manually or due to some failure) the index pattern we defined in the kibana is getting reset and th…

---

## [Kibana server is not ready yet](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/351607)

<div class="topic-metadata">

**Author:** [@rash4ford](https://discuss.elastic.co/u/rash4ford)\
**Replies:** 9\
**Last updated:** [March 5, 2024, 8:20am UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/351607 "2024-03-05T08:20:05Z")

</div>

I'm new to Elasticsearch and i'm having issue try to get your elastic searc working. I'm getting Kibana server is not ready yet. I have checked services on both kibana and Elasticsearch working fine. I have colect the l…

---

## [No logout option on the Kibana GUI](https://discuss.elastic.co/t/no-logout-option-on-the-kibana-gui/354132)

<div class="topic-metadata">

**Author:** [@Ravi\_Pattar](https://discuss.elastic.co/u/Ravi_Pattar)\
**Replies:** 2\
**Last updated:** [March 5, 2024, 7:39am UTC](https://discuss.elastic.co/t/no-logout-option-on-the-kibana-gui/354132 "2024-03-05T07:39:21Z")

</div>

Hello I can understand this is a very basic thing. But I don't see any logout option in the Kibana GUI. Please find the attached ss below. When we installed this in previous days neither it asked for the login credent…

---

## [Math in TSVB (and how to handle 0 in the denominator)](https://discuss.elastic.co/t/math-in-tsvb-and-how-to-handle-0-in-the-denominator/352581)

<div class="topic-metadata">

**Author:** [@adam.richey](https://discuss.elastic.co/u/adam.richey)\
**Replies:** 2\
**Last updated:** [March 5, 2024, 4:20am UTC](https://discuss.elastic.co/t/math-in-tsvb-and-how-to-handle-0-in-the-denominator/352581 "2024-03-05T04:20:10Z")

</div>

Some of my data for smaller time values may result in a divide by 0 error. At the moment, if this happens the whole visualization breaks and I can't see any columns even with correct data for that time period. Is there …

---

## [Filebeat modules](https://discuss.elastic.co/t/filebeat-modules/354665)

<div class="topic-metadata">

**Author:** [@Yerbolat\_Talasbekov](https://discuss.elastic.co/u/Yerbolat_Talasbekov)\
**Replies:** 2\
**Last updated:** [March 4, 2024, 7:08pm UTC](https://discuss.elastic.co/t/filebeat-modules/354665 "2024-03-04T19:08:48Z")

</div>

Hello, when I enable filebeat module, for example nginx module, in Kibana appears about 7217 fields. How to get fields that related just to nginx access.log or error.log ? OR when I enable system module, also appears abo…

---

## [Fleet Elastic Agent Upgrade only partially available](https://discuss.elastic.co/t/fleet-elastic-agent-upgrade-only-partially-available/354093)

<div class="topic-metadata">

**Author:** [@Alphayeeeet](https://discuss.elastic.co/u/Alphayeeeet)\
**Replies:** 7\
**Last updated:** [March 4, 2024, 3:02pm UTC](https://discuss.elastic.co/t/fleet-elastic-agent-upgrade-only-partially-available/354093 "2024-03-04T15:02:26Z")

</div>

After upgrading from 8.12.1 to 8.12.2, only 4 of my agents are displaying upgrade available (non of them are fleet-server). Could this be due to the problem resolve of the other known issue or is this a new bug? I know…

---

## [Issues with Kibana installation](https://discuss.elastic.co/t/issues-with-kibana-installation/354460)

<div class="topic-metadata">

**Author:** [@DOkuwa](https://discuss.elastic.co/u/DOkuwa)\
**Replies:** 5\
**Last updated:** [March 4, 2024, 2:28pm UTC](https://discuss.elastic.co/t/issues-with-kibana-installation/354460 "2024-03-04T14:28:50Z")

</div>

PLEASE CAN YOU ALL HELP I AM SEEINFG THIS ERROR IN THE KIBANA.LOG service":{"node":{"roles":\["background\_tasks","ui"\]}},"ecs":{"version":"8.6.1" …

---

## [Kibana Maps Point To Point Limitation on number of lines](https://discuss.elastic.co/t/kibana-maps-point-to-point-limitation-on-number-of-lines/354572)

<div class="topic-metadata">

**Author:** [@longtake](https://discuss.elastic.co/u/longtake)\
**Replies:** 2\
**Last updated:** [March 4, 2024, 1:57pm UTC](https://discuss.elastic.co/t/kibana-maps-point-to-point-limitation-on-number-of-lines/354572 "2024-03-04T13:57:17Z")

</div>

Hi .. referring to 2020 topic https://discuss.elastic.co/t/point-to-point-lines-have-to-zoom-in-to-show-in-map/230730 .. Is the limit of 100 source points for lines still in effect .. in my case I have very few destinat…

---

## [How to give option of data mapping in MAP option of Kibana](https://discuss.elastic.co/t/how-to-give-option-of-data-mapping-in-map-option-of-kibana/354297)

<div class="topic-metadata">

**Author:** [@Arshukla](https://discuss.elastic.co/u/Arshukla)\
**Replies:** 2\
**Last updated:** [March 4, 2024, 9:17am UTC](https://discuss.elastic.co/t/how-to-give-option-of-data-mapping-in-map-option-of-kibana/354297 "2024-03-04T09:17:13Z")

</div>

Hello Team, I am trying to build MAP of geo-hash with one of the parameter. Whereas I want to give static range for that parameter.. For EG. all values less than 75 should be green. 75 to 90 should be orange and. all va…

---

## [Simple vega table](https://discuss.elastic.co/t/simple-vega-table/354560)

<div class="topic-metadata">

**Author:** [@chowpay](https://discuss.elastic.co/u/chowpay)\
**Replies:** 1\
**Last updated:** [March 4, 2024, 2:51am UTC](https://discuss.elastic.co/t/simple-vega-table/354560 "2024-03-04T02:51:35Z")

</div>

I finally figured out how to query and get a metric back for a nested piece of data: GET channel\_statistics\_long-\*/\_search { "\_source":"", "query": { "nested": { "path": "components", "query": { …

---

## [Multiselect Dropdown for monthly,quaterly and yearly filter](https://discuss.elastic.co/t/multiselect-dropdown-for-monthly-quaterly-and-yearly-filter/354588)

<div class="topic-metadata">

**Author:** [@Saili\_Bakalkar](https://discuss.elastic.co/u/Saili_Bakalkar)\
**Replies:** 1\
**Last updated:** [March 3, 2024, 1:53pm UTC](https://discuss.elastic.co/t/multiselect-dropdown-for-monthly-quaterly-and-yearly-filter/354588 "2024-03-03T13:53:34Z")

</div>

I'm facing a challenge with visualizing data in Kibana over extended periods. Currently, the global filter allows me to view data for the last 6 months or the last quarter, but for example I need to plot a bar chart spec…

---

## [How do i create a trend line for a bar graph using Lens?](https://discuss.elastic.co/t/how-do-i-create-a-trend-line-for-a-bar-graph-using-lens/354550)

<div class="topic-metadata">

**Author:** [@Federico\_Ruso](https://discuss.elastic.co/u/Federico_Ruso)\
**Replies:** 1\
**Last updated:** [March 2, 2024, 6:26pm UTC](https://discuss.elastic.co/t/how-do-i-create-a-trend-line-for-a-bar-graph-using-lens/354550 "2024-03-02T18:26:37Z")

</div>

Hello, i want to add a trend line for my bar graph. I'am using Lens to do that.

---

## [Kibana Failed to authenticate with host “https://\<IP\_Address\>:9200”: “”](https://discuss.elastic.co/t/kibana-failed-to-authenticate-with-host-https-ip-address-9200/353279)

<div class="topic-metadata">

**Author:** [@AlAnsari](https://discuss.elastic.co/u/AlAnsari)\
**Replies:** 3\
**Last updated:** [March 2, 2024, 5:15pm UTC](https://discuss.elastic.co/t/kibana-failed-to-authenticate-with-host-https-ip-address-9200/353279 "2024-03-02T17:15:37Z")

</div>

I've solved the errors for this issue that many others have had relative to not matching the host name and not verifying the first certificate by naturally adding the IP to the list of IPs generated in the instances.yml …

---

## [Kibana text field in discover but missing in lens table](https://discuss.elastic.co/t/kibana-text-field-in-discover-but-missing-in-lens-table/354393)

<div class="topic-metadata">

**Author:** [@chowpay](https://discuss.elastic.co/u/chowpay)\
**Replies:** 9\
**Last updated:** [March 2, 2024, 8:39am UTC](https://discuss.elastic.co/t/kibana-text-field-in-discover-but-missing-in-lens-table/354393 "2024-03-02T08:39:44Z")

</div>

I'm on Kibana 7.16 When I'm in discover I can see this text field: I want the field inside of a table, but when I go to lens to try and create the table it shows up in an empty field: In discover his is the field…

---

## [Elastic OpenID Keyclock failed cannot find realm](https://discuss.elastic.co/t/elastic-openid-keyclock-failed-cannot-find-realm/354403)

<div class="topic-metadata">

**Author:** [@Dave\_Hafid](https://discuss.elastic.co/u/Dave_Hafid)\
**Replies:** 6\
**Last updated:** [March 1, 2024, 3:09pm UTC](https://discuss.elastic.co/t/elastic-openid-keyclock-failed-cannot-find-realm/354403 "2024-03-01T15:09:00Z")

</div>

hi guys i need help, we try to configure sso using keycloak , using OpenID connect we facing issue and i dont know how to fix this and this error \[2024-02-29T12:37:27,257\]\[WARN \]\[r.suppressed \] \[elastic…

---

## [Unable to login to Kibana](https://discuss.elastic.co/t/unable-to-login-to-kibana/354147)

<div class="topic-metadata">

**Author:** [@Mike\_Kirby](https://discuss.elastic.co/u/Mike_Kirby)\
**Replies:** 14\
**Last updated:** [March 1, 2024, 1:59pm UTC](https://discuss.elastic.co/t/unable-to-login-to-kibana/354147 "2024-03-01T13:59:06Z")

</div>

Good Afternoon. I have been working with OpenShift and ElasticSIEM for 6 months now. For the first 5 I was learning the installation process and getting up to speed. I am able to install ElasticSIEM without containers…

---

## [Getting watcher ram usage](https://discuss.elastic.co/t/getting-watcher-ram-usage/354532)

<div class="topic-metadata">

**Author:** [@Guilherme\_Carvalho](https://discuss.elastic.co/u/Guilherme_Carvalho)\
**Replies:** 0\
**Last updated:** [March 1, 2024, 1:48pm UTC](https://discuss.elastic.co/t/getting-watcher-ram-usage/354532 "2024-03-01T13:48:47Z")

</div>

Hi guys, i was wondering if there was any way by using the elastic api to get an watcher ram and cpu usage

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=64)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=66)
