# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=92

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 93

---

## [SAML Configuration Questions for Elastic Cloud](https://discuss.elastic.co/t/saml-configuration-questions-for-elastic-cloud/343525)

<div class="topic-metadata">

**Author:** [@yago82](https://discuss.elastic.co/u/yago82)\
**Replies:** 1\
**Last updated:** [September 26, 2023, 10:17am UTC](https://discuss.elastic.co/t/saml-configuration-questions-for-elastic-cloud/343525 "2023-09-26T10:17:37Z")

</div>

Hello Elastic community, I'm currently working on configuring SAML authentication for Elastic Cloud (not ECE). I have the following SAML configuration that I need to implement: xpack.security.authc.realms.saml.saml1: …

---

## [Kibana Lens Annotations](https://discuss.elastic.co/t/kibana-lens-annotations/343639)

<div class="topic-metadata">

**Author:** [@kbujold\_wr](https://discuss.elastic.co/u/kbujold_wr)\
**Replies:** 1\
**Last updated:** [September 26, 2023, 8:27am UTC](https://discuss.elastic.co/t/kibana-lens-annotations/343639 "2023-09-26T08:27:12Z")

</div>

Hi we are creating a Dashboard in Kibana 8.9.0. We are using Lens. Is there a way to have the annotation value be left justified with the tooltip? Or the ability to make it wider?

---

## [How to go to specific transaction details by just clicking on it on bar chart?](https://discuss.elastic.co/t/how-to-go-to-specific-transaction-details-by-just-clicking-on-it-on-bar-chart/343704)

<div class="topic-metadata">

**Author:** [@Hamad](https://discuss.elastic.co/u/Hamad)\
**Replies:** 2\
**Last updated:** [September 26, 2023, 7:07am UTC](https://discuss.elastic.co/t/how-to-go-to-specific-transaction-details-by-just-clicking-on-it-on-bar-chart/343704 "2023-09-26T07:07:47Z")

</div>

Hi everyone! How can i go into details of specific transaction from the bar chart in dashboard? If i click on any transaction in my bar chart, it adds a filter instead of going to that transaction details page. for now i…

---

## [Dashboard is not created](https://discuss.elastic.co/t/dashboard-is-not-created/343828)

<div class="topic-metadata">

**Author:** [@Daemon1](https://discuss.elastic.co/u/Daemon1)\
**Replies:** 0\
**Last updated:** [September 26, 2023, 4:58am UTC](https://discuss.elastic.co/t/dashboard-is-not-created/343828 "2023-09-26T04:58:28Z")

</div>

Hi, I am creating dashboard by importing ndjson file. Using below API to import, POST \<kibana host\>:\<port\>/s/\<space\_id\>/api/saved\_objects/\_import Issue is dashboard is created with new dashboard id not with the one p…

---

## [ELK - Enable Kibana Login (Basic Auth) without SSL/TLS on Multi Instance Docker Swarm Cluster](https://discuss.elastic.co/t/elk-enable-kibana-login-basic-auth-without-ssl-tls-on-multi-instance-docker-swarm-cluster/343827)

<div class="topic-metadata">

**Author:** [@vdcharter](https://discuss.elastic.co/u/vdcharter)\
**Replies:** 0\
**Last updated:** [September 26, 2023, 4:24am UTC](https://discuss.elastic.co/t/elk-enable-kibana-login-basic-auth-without-ssl-tls-on-multi-instance-docker-swarm-cluster/343827 "2023-09-26T04:24:47Z")

</div>

Hi, I have a multi node - multi instance (VM and BareMetal servers) docker swarm cluster for my ELK Stack with 3 ES Masters, 3 Kibana Nodes, data nodes etc. ES and Kibana Version - 7.17.8 I want to enable basic authent…

---

## [vlSelectionResolve is not being called on specific scenario](https://discuss.elastic.co/t/vlselectionresolve-is-not-being-called-on-specific-scenario/343800)

<div class="topic-metadata">

**Author:** [@EdRayQO](https://discuss.elastic.co/u/EdRayQO)\
**Replies:** 0\
**Last updated:** [September 25, 2023, 6:53pm UTC](https://discuss.elastic.co/t/vlselectionresolve-is-not-being-called-on-specific-scenario/343800 "2023-09-25T18:53:08Z")

</div>

Hello everyone, I'm struggling with a bug I found when implementing a custom visualization using Vega. I'm reposting this from Stackoverflow (Where the Vega folks suggest posting) because nobody is awnsering, so I'm tryi…

---

## [Anomaly rules, select multiple services](https://discuss.elastic.co/t/anomaly-rules-select-multiple-services/343799)

<div class="topic-metadata">

**Author:** [@sguerrero](https://discuss.elastic.co/u/sguerrero)\
**Replies:** 0\
**Last updated:** [September 25, 2023, 6:41pm UTC](https://discuss.elastic.co/t/anomaly-rules-select-multiple-services/343799 "2023-09-25T18:41:30Z")

</div>

Hello, I'm currently utilizing the Anomaly rule under "Rules and Connectors" within the "Stack Management". I've encountered a situation where I need to select specific services to send emails to distinct addresses. Ho…

---

## [CSV export from kibana dashboard through external API call](https://discuss.elastic.co/t/csv-export-from-kibana-dashboard-through-external-api-call/340299)

<div class="topic-metadata">

**Author:** [@manish0803](https://discuss.elastic.co/u/manish0803)\
**Replies:** 1\
**Last updated:** [September 25, 2023, 4:43pm UTC](https://discuss.elastic.co/t/csv-export-from-kibana-dashboard-through-external-api-call/340299 "2023-09-25T16:43:22Z")

</div>

Hi, I have researched and implemented the csv export functionality by calling the export link provided by Kibana. referenced : Automatically generate reports | Kibana Guide \[8.6\] | Elastic However, when I use the link…

---

## [Fine grained access control to reports](https://discuss.elastic.co/t/fine-grained-access-control-to-reports/343743)

<div class="topic-metadata">

**Author:** [@mpjjonker](https://discuss.elastic.co/u/mpjjonker)\
**Replies:** 1\
**Last updated:** [September 25, 2023, 12:40pm UTC](https://discuss.elastic.co/t/fine-grained-access-control-to-reports/343743 "2023-09-25T12:40:22Z")

</div>

Hi there, In Kibana there is the page where the reports appear. I have been looking for documentation around the access control to these reports. this is the page I am referring to: app/management/insightsAndAlerting…

---

## [Add link to a dashboard in the email alert of Kibana Watcher](https://discuss.elastic.co/t/add-link-to-a-dashboard-in-the-email-alert-of-kibana-watcher/343565)

<div class="topic-metadata">

**Author:** [@RJC](https://discuss.elastic.co/u/RJC)\
**Replies:** 3\
**Last updated:** [September 25, 2023, 12:12pm UTC](https://discuss.elastic.co/t/add-link-to-a-dashboard-in-the-email-alert-of-kibana-watcher/343565 "2023-09-25T12:12:45Z")

</div>

I have a watcher that send email every time a condition is met. I wonder if it is possible - and if so, then how - to add to the body text a link to a Kibana dashboard? When the recipients get that email they would the…

---

## [Configuring SSL and X-Pack Security for ElasticSearch and Kibana using Bitnami Helm Chart with Ingress](https://discuss.elastic.co/t/configuring-ssl-and-x-pack-security-for-elasticsearch-and-kibana-using-bitnami-helm-chart-with-ingress/342521)

<div class="topic-metadata">

**Author:** [@Naasir\_Mohamed](https://discuss.elastic.co/u/Naasir_Mohamed)\
**Replies:** 1\
**Last updated:** [September 25, 2023, 12:11pm UTC](https://discuss.elastic.co/t/configuring-ssl-and-x-pack-security-for-elasticsearch-and-kibana-using-bitnami-helm-chart-with-ingress/342521 "2023-09-25T12:11:40Z")

</div>

Hello Elastic community, I'm currently working on deploying Elasticsearch (ES) and Kibana using the Bitnami Helm chart, and I've successfully enabled the cluster with Ingress. Now, I'm looking to enhance the security of…

---

## [Not able to see watchers UI in kibana 8.7.1 version](https://discuss.elastic.co/t/not-able-to-see-watchers-ui-in-kibana-8-7-1-version/343593)

<div class="topic-metadata">

**Author:** [@prashant1](https://discuss.elastic.co/u/prashant1)\
**Replies:** 4\
**Last updated:** [September 25, 2023, 12:02pm UTC](https://discuss.elastic.co/t/not-able-to-see-watchers-ui-in-kibana-8-7-1-version/343593 "2023-09-25T12:02:56Z")

</div>

Hi, We have updated the kibana from version 7.10.2 to 8.7.1. We are not able to see watcher UI tab. With the dev tools command we are able to see the watchers. Is there any way to get watchers UI? Could someone please…

---

## [Default space](https://discuss.elastic.co/t/default-space/343747)

<div class="topic-metadata">

**Author:** [@ponpon](https://discuss.elastic.co/u/ponpon)\
**Replies:** 2\
**Last updated:** [September 25, 2023, 11:05am UTC](https://discuss.elastic.co/t/default-space/343747 "2023-09-25T11:05:48Z")

</div>

Hi, my default space is unaccessible. when I am presented with the " Select your space" page and I choose Default, I am redirected to one of the other spaces. I have restarted Kibana and I have checked that .kabana is w…

---

## ["logs threshold rule" missing "comparator": "MATCHES"](https://discuss.elastic.co/t/logs-threshold-rule-missing-comparator-matches/343734)

<div class="topic-metadata">

**Author:** [@BRINDAH\_B](https://discuss.elastic.co/u/BRINDAH_B)\
**Replies:** 0\
**Last updated:** [September 25, 2023, 9:46am UTC](https://discuss.elastic.co/t/logs-threshold-rule-missing-comparator-matches/343734 "2023-09-25T09:46:03Z")

</div>

I want to create a "logs threshold rule" with "comparator": "MATCHES" or "MATCHES PHRASE". I want to be able to use the "message" field in my log-threshold rule, which is of type "text". Is this possible? Right now im …

---

## [Kibana Dashboard - Display difference between two counts](https://discuss.elastic.co/t/kibana-dashboard-display-difference-between-two-counts/343687)

<div class="topic-metadata">

**Author:** [@seb.sch](https://discuss.elastic.co/u/seb.sch)\
**Replies:** 1\
**Last updated:** [September 25, 2023, 8:56am UTC](https://discuss.elastic.co/t/kibana-dashboard-display-difference-between-two-counts/343687 "2023-09-25T08:56:29Z")

</div>

Hi there, I've been searching on anything new to this issue for the whole weekend now, but I've found only posts which are 3+ years old. If I needed to do implement my requirement manually, I'd do the following: GET m…

---

## [Implement word cloud in Kibana](https://discuss.elastic.co/t/implement-word-cloud-in-kibana/307480)

<div class="topic-metadata">

**Author:** [@Abhishek\_Shinde](https://discuss.elastic.co/u/Abhishek_Shinde)\
**Replies:** 2\
**Last updated:** [September 25, 2023, 8:41am UTC](https://discuss.elastic.co/t/implement-word-cloud-in-kibana/307480 "2023-09-25T08:41:28Z")

</div>

I wanted to implement Word Cloud visualization using Kibana in my application. The example is attached. I'm looking for reference material on the Elastic site on how to get this done. It would be good if someone can shar…

---

## [Creating Multi-Fields using Kibana UI](https://discuss.elastic.co/t/creating-multi-fields-using-kibana-ui/343707)

<div class="topic-metadata">

**Author:** [@randomnamegenerator](https://discuss.elastic.co/u/randomnamegenerator)\
**Replies:** 0\
**Last updated:** [September 25, 2023, 6:24am UTC](https://discuss.elastic.co/t/creating-multi-fields-using-kibana-ui/343707 "2023-09-25T06:24:51Z")

</div>

Hello All, Apologies in advance if this is the wrong sub-forum to ask the question. I am new to the forum and ELK in general. I am looking to create multi-field mapping for a legacy index template using the Kibana crea…

---

## [Api to get saved objects info like Dashboard for kibana 8.9.0?](https://discuss.elastic.co/t/api-to-get-saved-objects-info-like-dashboard-for-kibana-8-9-0/341855)

<div class="topic-metadata">

**Author:** [@Daemon1](https://discuss.elastic.co/u/Daemon1)\
**Replies:** 7\
**Last updated:** [September 24, 2023, 11:48pm UTC](https://discuss.elastic.co/t/api-to-get-saved-objects-info-like-dashboard-for-kibana-8-9-0/341855 "2023-09-24T23:48:24Z")

</div>

GET \<kibana host\>:\<port\>/api/saved\_objects/\<type\>/\<id\> The above API is deprecated for version 8.9.0 GET \<kibana host\>:\<port\>/api/data\_views This API only returns the info about data\_views not dashboard. What is the …

---

## [Kibana Table (dashboard) - compute percentage when all row are filters](https://discuss.elastic.co/t/kibana-table-dashboard-compute-percentage-when-all-row-are-filters/343647)

<div class="topic-metadata">

**Author:** [@ctinp](https://discuss.elastic.co/u/ctinp)\
**Replies:** 2\
**Last updated:** [September 23, 2023, 10:49pm UTC](https://discuss.elastic.co/t/kibana-table-dashboard-compute-percentage-when-all-row-are-filters/343647 "2023-09-23T22:49:14Z")

</div>

One of the fields in my logs contains a list of vulnerabilities separated by comma (e.g. attacks=XSS,SQLI,LOG4J. In Kibana, I have created a table visualisation where each row is a filter for one of the signals (e.g. at…

---

## [Kibana Visualisations](https://discuss.elastic.co/t/kibana-visualisations/342622)

<div class="topic-metadata">

**Author:** [@DivyaDileep](https://discuss.elastic.co/u/DivyaDileep)\
**Replies:** 1\
**Last updated:** [September 23, 2023, 10:46pm UTC](https://discuss.elastic.co/t/kibana-visualisations/342622 "2023-09-23T22:46:13Z")

</div>

If I want to create a dashboad for "instance\_name & diskIndex in message to be matched, then the diskPath & diskPercent fields displayed so it shows what the partition is called & how full it is in a percentage." diskPer…

---

## [Need Help Configuring HTTPS Between Elasticsearch and Kibana](https://discuss.elastic.co/t/need-help-configuring-https-between-elasticsearch-and-kibana/343649)

<div class="topic-metadata">

**Author:** [@sami\_mezghani](https://discuss.elastic.co/u/sami_mezghani)\
**Replies:** 0\
**Last updated:** [September 22, 2023, 6:11pm UTC](https://discuss.elastic.co/t/need-help-configuring-https-between-elasticsearch-and-kibana/343649 "2023-09-22T18:11:55Z")

</div>

Hello forum members, I'm new to Elasticsearch and Kibana, and I'm currently trying to set up a secure connection (HTTPS) between Elasticsearch and Kibana. I've generated the necessary certificates using elasticsearch-ce…

---

## [Kibana 8.9.0](https://discuss.elastic.co/t/kibana-8-9-0/343602)

<div class="topic-metadata">

**Author:** [@Daemon1](https://discuss.elastic.co/u/Daemon1)\
**Replies:** 3\
**Last updated:** [September 22, 2023, 10:34am UTC](https://discuss.elastic.co/t/kibana-8-9-0/343602 "2023-09-22T10:34:24Z")

</div>

Kibana dashboard's time range picker always shows the default value and doesn't remember the last used value from your previous login.

---

## [Closed indices in 8.5.3 break stack monitoring](https://discuss.elastic.co/t/closed-indices-in-8-5-3-break-stack-monitoring/343407)

<div class="topic-metadata">

**Author:** [@GregoryJC](https://discuss.elastic.co/u/GregoryJC)\
**Replies:** 5\
**Last updated:** [September 22, 2023, 8:34am UTC](https://discuss.elastic.co/t/closed-indices-in-8-5-3-break-stack-monitoring/343407 "2023-09-22T08:34:15Z")

</div>

In our monitoring cluster I noticed that the stack monitoring elasticsearch overview page broke after I closed only some indices on a cluster.

---

## [Create maximum of 7 monitoring index for kibana](https://discuss.elastic.co/t/create-maximum-of-7-monitoring-index-for-kibana/343604)

<div class="topic-metadata">

**Author:** [@Rakhshunda\_Noorein\_J](https://discuss.elastic.co/u/Rakhshunda_Noorein_J)\
**Replies:** 0\
**Last updated:** [September 22, 2023, 8:06am UTC](https://discuss.elastic.co/t/create-maximum-of-7-monitoring-index-for-kibana/343604 "2023-09-22T08:06:55Z")

</div>

Hello, I want to configure monitoring setting as such that only 7 days monitoring indices is created in my cluster in order to monitor for only 7 days and not more.. Also Is there a way that only 1 kibana monitoring in…

---

## [Kibana rules/alerts "If alert matches a query" not working for custom fields](https://discuss.elastic.co/t/kibana-rules-alerts-if-alert-matches-a-query-not-working-for-custom-fields/343580)

<div class="topic-metadata">

**Author:** [@arislawrence](https://discuss.elastic.co/u/arislawrence)\
**Replies:** 0\
**Last updated:** [September 21, 2023, 11:54pm UTC](https://discuss.elastic.co/t/kibana-rules-alerts-if-alert-matches-a-query-not-working-for-custom-fields/343580 "2023-09-21T23:54:25Z")

</div>

Elasticsearch, Kibana, Logstash and Beats using version 8.9.1 or 8.10.1 When creating Kibana rules for Log threshold or Metric threshold, the "If alert matches a query" defined is a custom fields, it will not process th…

---

## [KIbana Maps Join Field not being displayed in the map](https://discuss.elastic.co/t/kibana-maps-join-field-not-being-displayed-in-the-map/343560)

<div class="topic-metadata">

**Author:** [@MartinGarcia](https://discuss.elastic.co/u/MartinGarcia)\
**Replies:** 3\
**Last updated:** [September 21, 2023, 5:41pm UTC](https://discuss.elastic.co/t/kibana-maps-join-field-not-being-displayed-in-the-map/343560 "2023-09-21T17:41:32Z")

</div>

Hi, I'm using Kibana Maps and trying to display a sum of capital on each boundary layer associated with it. Before I was able to display but with the latest Kibana version it doesn´t display the sum in the map itsefl, on…

---

## [How can I represent the most recurring document in a Kibana table?](https://discuss.elastic.co/t/how-can-i-represent-the-most-recurring-document-in-a-kibana-table/343288)

<div class="topic-metadata">

**Author:** [@KristinaRaja](https://discuss.elastic.co/u/KristinaRaja)\
**Replies:** 2\
**Last updated:** [September 21, 2023, 1:44pm UTC](https://discuss.elastic.co/t/how-can-i-represent-the-most-recurring-document-in-a-kibana-table/343288 "2023-09-21T13:44:37Z")

</div>

We are using an aggregated based kibana table that displays a bunch of users who had poor calls and where the majority of those poor calls took place, etc...(the user is set as the bucket). For each user, we would like …

---

## [How to set number\_of\_replicas at creation index at elasticsearch?](https://discuss.elastic.co/t/how-to-set-number-of-replicas-at-creation-index-at-elasticsearch/343529)

<div class="topic-metadata">

**Author:** [@emoxam](https://discuss.elastic.co/u/emoxam)\
**Replies:** 0\
**Last updated:** [September 21, 2023, 10:42am UTC](https://discuss.elastic.co/t/how-to-set-number-of-replicas-at-creation-index-at-elasticsearch/343529 "2023-09-21T10:42:21Z")

</div>

How to set number\_of\_replicas at creation index at elasticsearch ? I am using template with { "index": { "number\_of\_replicas": "0", "mapping": { "total\_fields": { "limit": "10000" } }, "refresh\_interval": "5s" …

---

## [Unable to authenticate Kibana to Elasticsearch on v8.0.1](https://discuss.elastic.co/t/unable-to-authenticate-kibana-to-elasticsearch-on-v8-0-1/343524)

<div class="topic-metadata">

**Author:** [@Anushree](https://discuss.elastic.co/u/Anushree)\
**Replies:** 0\
**Last updated:** [September 21, 2023, 10:11am UTC](https://discuss.elastic.co/t/unable-to-authenticate-kibana-to-elasticsearch-on-v8-0-1/343524 "2023-09-21T10:11:26Z")

</div>

I've been attempting to establish authentication between Kibana and Elasticsearch version 8.0.1, using the "kibana\_system" user. Unfortunately, I've encountered a 401 error. My Elasticsearch instance is a single-node set…

---

## [Split string variable by Mustache in Rules (Kibana)](https://discuss.elastic.co/t/split-string-variable-by-mustache-in-rules-kibana/343519)

<div class="topic-metadata">

**Author:** [@VolodymyrPopyk](https://discuss.elastic.co/u/VolodymyrPopyk)\
**Replies:** 0\
**Last updated:** [September 21, 2023, 9:32am UTC](https://discuss.elastic.co/t/split-string-variable-by-mustache-in-rules-kibana/343519 "2023-09-21T09:32:12Z")

</div>

Is it possible split Rule action variable {{rule.name}} by Mustache. Split symbol \_ I didn´t find some way to do this!

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=91)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=93)
