# Kibana

**URL:** https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=95

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 96

---

## [Comparison of data at a kibana dashboard](https://discuss.elastic.co/t/comparison-of-data-at-a-kibana-dashboard/342805)

<div class="topic-metadata">

**Author:** [@Voula\_Mikr](https://discuss.elastic.co/u/Voula_Mikr)\
**Replies:** 1\
**Last updated:** [September 12, 2023, 12:09pm UTC](https://discuss.elastic.co/t/comparison-of-data-at-a-kibana-dashboard/342805 "2023-09-12T12:09:37Z")

</div>

Hi , I have the below kind of data counter1: { "name":"name1", "vnf\_type":"ZTS", "counter":"cpu", "value":"10", "event\_time\_stamp":"2021-02-15T02:44:19Z" } I would like to compare the value "value" of t…

---

## [Kibana Stack Monitoring: Elasticsearch node status offline](https://discuss.elastic.co/t/kibana-stack-monitoring-elasticsearch-node-status-offline/342779)

<div class="topic-metadata">

**Author:** [@phu\_phat](https://discuss.elastic.co/u/phu_phat)\
**Replies:** 3\
**Last updated:** [September 12, 2023, 12:08pm UTC](https://discuss.elastic.co/t/kibana-stack-monitoring-elasticsearch-node-status-offline/342779 "2023-09-12T12:08:47Z")

</div>

After upgrade ELK Stack (ES, Kibana, Metricbeat, Logstash) from 7.17 to 8.9.2 all node in cluster status offline without elasticsearch in same kibana node In index management Before upgrade to 8.9.2 Data insert to .mo…

---

## [Kibana maintenance window question](https://discuss.elastic.co/t/kibana-maintenance-window-question/342786)

<div class="topic-metadata">

**Author:** [@mkf1](https://discuss.elastic.co/u/mkf1)\
**Replies:** 3\
**Last updated:** [September 12, 2023, 10:37am UTC](https://discuss.elastic.co/t/kibana-maintenance-window-question/342786 "2023-09-12T10:37:34Z")

</div>

Hi, I couldn't see much in the documentation so I though I would ask my question here. It might be a dumb question, but in the Maintenance Window settings, I'm a bit confused on the timezone setting. For example if I s…

---

## [Use new dataview in an existing dashboard](https://discuss.elastic.co/t/use-new-dataview-in-an-existing-dashboard/342656)

<div class="topic-metadata">

**Author:** [@javierelastic](https://discuss.elastic.co/u/javierelastic)\
**Replies:** 2\
**Last updated:** [September 12, 2023, 9:38am UTC](https://discuss.elastic.co/t/use-new-dataview-in-an-existing-dashboard/342656 "2023-09-12T09:38:25Z")

</div>

Hi. I have a dashboard created with a set of data that I passed through logstash to elasticsearch. But now I have created a new index and a new dataview with similar data. And I want to use the complete dashboard with t…

---

## [Kibana data view containing runtime composite fields](https://discuss.elastic.co/t/kibana-data-view-containing-runtime-composite-fields/341586)

<div class="topic-metadata">

**Author:** [@i.raisr](https://discuss.elastic.co/u/i.raisr)\
**Replies:** 2\
**Last updated:** [September 12, 2023, 6:23am UTC](https://discuss.elastic.co/t/kibana-data-view-containing-runtime-composite-fields/341586 "2023-09-12T06:23:13Z")

</div>

Kibana data views. Cool stuff and thank you for them! For some stupid reason I cannot figure out how to use "composite" fields in the runtime mapping. Consider the following simple example: { "data\_view": { "id"…

---

## [Alerting on Run Failures](https://discuss.elastic.co/t/alerting-on-run-failures/342623)

<div class="topic-metadata">

**Author:** [@Kris\_Felscher](https://discuss.elastic.co/u/Kris_Felscher)\
**Replies:** 1\
**Last updated:** [September 11, 2023, 11:46pm UTC](https://discuss.elastic.co/t/alerting-on-run-failures/342623 "2023-09-11T23:46:06Z")

</div>

We have a scheduled app that performs a nightly processing job across several different target "markets". I'm trying to figure out how to fire off an alert when a market fails to run. So, let's say I typically see the …

---

## [Custom URL not directing to correct ML job in Anomaly Explorer from email alert](https://discuss.elastic.co/t/custom-url-not-directing-to-correct-ml-job-in-anomaly-explorer-from-email-alert/342763)

<div class="topic-metadata">

**Author:** [@emi\_rose](https://discuss.elastic.co/u/emi_rose)\
**Replies:** 1\
**Last updated:** [September 11, 2023, 11:32pm UTC](https://discuss.elastic.co/t/custom-url-not-directing-to-correct-ml-job-in-anomaly-explorer-from-email-alert/342763 "2023-09-11T23:32:58Z")

</div>

Hello, I generated a few rules to alert on a severity threshold for different Anomaly Detection jobs. Whenever I click the url to open the job in anomaly explorer, it takes me to the same unrelated ML job. I'm using ({{…

---

## [How to build docker images for logstash, kibana, elastic](https://discuss.elastic.co/t/how-to-build-docker-images-for-logstash-kibana-elastic/342754)

<div class="topic-metadata">

**Author:** [@balakr](https://discuss.elastic.co/u/balakr)\
**Replies:** 3\
**Last updated:** [September 11, 2023, 9:00pm UTC](https://discuss.elastic.co/t/how-to-build-docker-images-for-logstash-kibana-elastic/342754 "2023-09-11T21:00:51Z")

</div>

i am trying to learn elastic, kibana, logstash. i have cloned source copies. what are the steps to build docker images, can someone point me to link/video which helps me in installing dependencies and build docker image

---

## [Kind:Elasticsearch Kind:Kibana not creating any nodes in K8s why?](https://discuss.elastic.co/t/kind-elasticsearch-kind-kibana-not-creating-any-nodes-in-k8s-why/342758)

<div class="topic-metadata">

**Author:** [@Esakki](https://discuss.elastic.co/u/Esakki)\
**Replies:** 1\
**Last updated:** [September 11, 2023, 5:32pm UTC](https://discuss.elastic.co/t/kind-elasticsearch-kind-kibana-not-creating-any-nodes-in-k8s-why/342758 "2023-09-11T17:32:12Z")

</div>

Hi All, I had elasticsearch and kibana deployed in my on-prem K8s cluster, due to some config issue I deleted both deployments (I deployed, deployments, svc, and secrets) in my cluster and trying to re-deploy but it's n…

---

## [Kibana :Invalid string. Length must be a multiple of 4](https://discuss.elastic.co/t/kibana-invalid-string-length-must-be-a-multiple-of-4/342685)

<div class="topic-metadata">

**Author:** [@Amani188](https://discuss.elastic.co/u/Amani188)\
**Replies:** 2\
**Last updated:** [September 11, 2023, 1:21pm UTC](https://discuss.elastic.co/t/kibana-invalid-string-length-must-be-a-multiple-of-4/342685 "2023-09-11T13:21:54Z")

</div>

Hi everyone, I'm trying to load data through kibana but i had this error message below : The response message shows internal server error

---

## [Configure Kibana With out Enrollment Token](https://discuss.elastic.co/t/configure-kibana-with-out-enrollment-token/342587)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 6\
**Last updated:** [September 11, 2023, 11:52am UTC](https://discuss.elastic.co/t/configure-kibana-with-out-enrollment-token/342587 "2023-09-11T11:52:46Z")

</div>

Hi Team, Could you please help me to configure Kibana with elastic cluster without an enrollment token? Due to some constraint, I had removed the security settings from elasticsearch.yml file due to which I am not able…

---

## [How to enable email connector in kibana rules?](https://discuss.elastic.co/t/how-to-enable-email-connector-in-kibana-rules/342736)

<div class="topic-metadata">

**Author:** [@jaimika\_kosambia](https://discuss.elastic.co/u/jaimika_kosambia)\
**Replies:** 1\
**Last updated:** [September 11, 2023, 11:49am UTC](https://discuss.elastic.co/t/how-to-enable-email-connector-in-kibana-rules/342736 "2023-09-11T11:49:15Z")

</div>

How to enable email connector in kibana rules?

---

## [Kibana Table Chart Viz to show "-" for unique count of value on weekends](https://discuss.elastic.co/t/kibana-table-chart-viz-to-show-for-unique-count-of-value-on-weekends/342734)

<div class="topic-metadata">

**Author:** [@ArpithaS](https://discuss.elastic.co/u/ArpithaS)\
**Replies:** 0\
**Last updated:** [September 11, 2023, 10:46am UTC](https://discuss.elastic.co/t/kibana-table-chart-viz-to-show-for-unique-count-of-value-on-weekends/342734 "2023-09-11T10:46:37Z")

</div>

Hi Everyone, I am trying to create a table using lens viz in Kibana. I need the unique count of a field\_name to be displayed per day (using date histogram with interval: per day) . I have added a query to exclude the w…

---

## [Merge two indices created by two different Logstash conf file](https://discuss.elastic.co/t/merge-two-indices-created-by-two-different-logstash-conf-file/342705)

<div class="topic-metadata">

**Author:** [@Priyaansh\_Dwivedi](https://discuss.elastic.co/u/Priyaansh_Dwivedi)\
**Replies:** 2\
**Last updated:** [September 11, 2023, 9:46am UTC](https://discuss.elastic.co/t/merge-two-indices-created-by-two-different-logstash-conf-file/342705 "2023-09-11T09:46:07Z")

</div>

I have two logs from Jitsi Meet application: jicofo.log and jvb.log. These logs are transferred from Filebeat to Logstash. I have separate Logstash configuration files for both incoming logs, and they are stored in separ…

---

## ["Elasticsearch" integration not displaying data in \[Elasticsearch\] Ingest Pipelines dashboard](https://discuss.elastic.co/t/elasticsearch-integration-not-displaying-data-in-elasticsearch-ingest-pipelines-dashboard/342614)

<div class="topic-metadata">

**Author:** [@Mark\_Duncan](https://discuss.elastic.co/u/Mark_Duncan)\
**Replies:** 3\
**Last updated:** [September 11, 2023, 6:24am UTC](https://discuss.elastic.co/t/elasticsearch-integration-not-displaying-data-in-elasticsearch-ingest-pipelines-dashboard/342614 "2023-09-11T06:24:37Z")

</div>

The \[Elasticsearch\] Ingest Pipelines dashboard has very limited visualisations populated with data. Please see the screenshot. Is it that the dashboards aren't setup correctly or is there some other issue? Thanks in ad…

---

## ["Error" Icon displayed in random times when opening kibana dashboard](https://discuss.elastic.co/t/error-icon-displayed-in-random-times-when-opening-kibana-dashboard/342646)

<div class="topic-metadata">

**Author:** [@mostafaelsayed](https://discuss.elastic.co/u/mostafaelsayed)\
**Replies:** 3\
**Last updated:** [September 11, 2023, 4:36am UTC](https://discuss.elastic.co/t/error-icon-displayed-in-random-times-when-opening-kibana-dashboard/342646 "2023-09-11T04:36:36Z")

</div>

Hello, I have a couple of dashboards in kibana, where each one can have more than 10 views (mostly data tables and charts). Most of the time, I encounter this Error Icon (shown in random views, no specifc ones) as show…

---

## [Kibana Graph Plugin - Error](https://discuss.elastic.co/t/kibana-graph-plugin-error/342683)

<div class="topic-metadata">

**Author:** [@drggfish](https://discuss.elastic.co/u/drggfish)\
**Replies:** 1\
**Last updated:** [September 11, 2023, 4:06am UTC](https://discuss.elastic.co/t/kibana-graph-plugin-error/342683 "2023-09-11T04:06:53Z")

</div>

I am getting errors on the Graph Plugin when I try to use fields of type "double." There are no errors with fields of type "long." Does the Graph Plugin support doubles? Here is the Error: Error : unsupported\_operatio…

---

## [Kql search bar not applying](https://discuss.elastic.co/t/kql-search-bar-not-applying/342687)

<div class="topic-metadata">

**Author:** [@Farah\_Bhr](https://discuss.elastic.co/u/Farah_Bhr)\
**Replies:** 0\
**Last updated:** [September 10, 2023, 10:13pm UTC](https://discuss.elastic.co/t/kql-search-bar-not-applying/342687 "2023-09-10T22:13:24Z")

</div>

Hello , I am developing a cutomized kibana plugin and I added the kql search bar on the top , but my problem is that it is not applying the search bar on the visualized hits Here is my try const doAsyncSearch = async …

---

## [Security\_exception: missing authentication credentials for REST request](https://discuss.elastic.co/t/security-exception-missing-authentication-credentials-for-rest-request/342664)

<div class="topic-metadata">

**Author:** [@agonzalez](https://discuss.elastic.co/u/agonzalez)\
**Replies:** 0\
**Last updated:** [September 9, 2023, 6:03pm UTC](https://discuss.elastic.co/t/security-exception-missing-authentication-credentials-for-rest-request/342664 "2023-09-09T18:03:09Z")

</div>

After upgrading elastic pods using docker images from 8.4.1 to 8.9.1 i am getting this error in kibana always. Any idea why? and how to solve? \[2023-09-09T17:58:21.908+00:00\]\[WARN \]\[plugins.security.authenticator\] Sess…

---

## [ElasticSearch + Kibana + Logstash Config in Windows](https://discuss.elastic.co/t/elasticsearch-kibana-logstash-config-in-windows/342550)

<div class="topic-metadata">

**Author:** [@dfir](https://discuss.elastic.co/u/dfir)\
**Replies:** 1\
**Last updated:** [September 8, 2023, 10:10pm UTC](https://discuss.elastic.co/t/elasticsearch-kibana-logstash-config-in-windows/342550 "2023-09-08T22:10:09Z")

</div>

I am working on configuring Elasticsearch with Kibana and Logstash. My goal is to be able to import AWS S3 Bucket Access logs, cloudtrail and other aws logs into Elastic either by manual import or via logstash. When I …

---

## [Deploying Elasticsearch latest version in Anthos on-prem K8s cluster](https://discuss.elastic.co/t/deploying-elasticsearch-latest-version-in-anthos-on-prem-k8s-cluster/342636)

<div class="topic-metadata">

**Author:** [@Esakki](https://discuss.elastic.co/u/Esakki)\
**Replies:** 0\
**Last updated:** [September 8, 2023, 5:30pm UTC](https://discuss.elastic.co/t/deploying-elasticsearch-latest-version-in-anthos-on-prem-k8s-cluster/342636 "2023-09-08T17:30:03Z")

</div>

Hello Experts, I'm new to Elasticsearch, I want to deploy elasticsearch v 8.9.1 into Anthos on-pre mK8s cluster, and I used the attached .yaml files for the same, I have the below questions. Is the attached yaml files…

---

## [Granular access to diferent queries in the index](https://discuss.elastic.co/t/granular-access-to-diferent-queries-in-the-index/342615)

<div class="topic-metadata">

**Author:** [@Mihai-CMM](https://discuss.elastic.co/u/Mihai-CMM)\
**Replies:** 2\
**Last updated:** [September 8, 2023, 2:18pm UTC](https://discuss.elastic.co/t/granular-access-to-diferent-queries-in-the-index/342615 "2023-09-08T14:18:14Z")

</div>

Hello all, Can you please help with this question (saw some variants Setup access dashboard per user) but not quite what i want or maybe google did not liked my question enough: I have a VectorDev that sends all k8s l…

---

## [Kibana 6.8.13 User Read Only Access](https://discuss.elastic.co/t/kibana-6-8-13-user-read-only-access/342613)

<div class="topic-metadata">

**Author:** [@Jinn](https://discuss.elastic.co/u/Jinn)\
**Replies:** 1\
**Last updated:** [September 8, 2023, 1:50pm UTC](https://discuss.elastic.co/t/kibana-6-8-13-user-read-only-access/342613 "2023-09-08T13:50:13Z")

</div>

We use Amazon OpenSearch Service to configure user access to Kibana 6.8.13. I am trying to assign user read only access. When user is assigned with "ESHttpGet" only action or "ESHttpGet" and "ESHttpHead" actions (which …

---

## [Kibanan 8.9.2. Not loading after upgrade from 8.9.1. because its MIME type ('text/html') is not executable, and strict MIME type checking is enabled](https://discuss.elastic.co/t/kibanan-8-9-2-not-loading-after-upgrade-from-8-9-1-because-its-mime-type-text-html-is-not-executable-and-strict-mime-type-checking-is-enabled/342607)

<div class="topic-metadata">

**Author:** [@deepfusion](https://discuss.elastic.co/u/deepfusion)\
**Replies:** 0\
**Last updated:** [September 8, 2023, 12:23pm UTC](https://discuss.elastic.co/t/kibanan-8-9-2-not-loading-after-upgrade-from-8-9-1-because-its-mime-type-text-html-is-not-executable-and-strict-mime-type-checking-is-enabled/342607 "2023-09-08T12:23:23Z")

</div>

Hi, I have just upgraded on my ubuntu 22.04 server all elastic stack to 8.9.2 from 8.9.1 and now I can no longer log-in because I get these errors: Refused to execute script from 'https://kibana.\*\*\*\*\*\*\*/login?next=%2F6…

---

## [Canvas filter visualization based on some other timestamp field](https://discuss.elastic.co/t/canvas-filter-visualization-based-on-some-other-timestamp-field/342601)

<div class="topic-metadata">

**Author:** [@mathur7vidit](https://discuss.elastic.co/u/mathur7vidit)\
**Replies:** 0\
**Last updated:** [September 8, 2023, 10:24am UTC](https://discuss.elastic.co/t/canvas-filter-visualization-based-on-some-other-timestamp-field/342601 "2023-09-08T10:24:29Z")

</div>

Team, i am trying to use canvas and i have placed a time filter which is using column modified\_date as column. Now i am creating a metric visualization and it is not showcasing anything when above column is selected …

---

## [Colors on different threshold values](https://discuss.elastic.co/t/colors-on-different-threshold-values/342502)

<div class="topic-metadata">

**Author:** [@Rushi\_Bagul](https://discuss.elastic.co/u/Rushi_Bagul)\
**Replies:** 4\
**Last updated:** [September 8, 2023, 8:50am UTC](https://discuss.elastic.co/t/colors-on-different-threshold-values/342502 "2023-09-08T08:50:09Z")

</div>

We are having one index called resources, which consist of timeseries data i.e. each and every document is having value with timestamp. I want to show this timeseries data in table view with following column: name times…

---

## [Issue with Kibana rules and alerts](https://discuss.elastic.co/t/issue-with-kibana-rules-and-alerts/342578)

<div class="topic-metadata">

**Author:** [@subash](https://discuss.elastic.co/u/subash)\
**Replies:** 0\
**Last updated:** [September 8, 2023, 6:49am UTC](https://discuss.elastic.co/t/issue-with-kibana-rules-and-alerts/342578 "2023-09-08T06:49:12Z")

</div>

Hello, I created a rule in Kibana for Disk alerts and I have configured it to notify (email) once in a day (Below snapshot for your reference). But it is triggering the alerts more than once in a day. Is there anything…

---

## [How do you move all data from one tier to another?](https://discuss.elastic.co/t/how-do-you-move-all-data-from-one-tier-to-another/342535)

<div class="topic-metadata">

**Author:** [@feo13](https://discuss.elastic.co/u/feo13)\
**Replies:** 0\
**Last updated:** [September 7, 2023, 3:15pm UTC](https://discuss.elastic.co/t/how-do-you-move-all-data-from-one-tier-to-another/342535 "2023-09-07T15:15:03Z")

</div>

Hi there, Sorry if this isn't the right place for this question but I'm not sure where else to ask. I currently have an Elastic Cloud deployment with hot, warm, and frozen tiers. Our warm tier blew up in size (and cost…

---

## [Watcher to send email alerts when Windows Defender detects malware](https://discuss.elastic.co/t/watcher-to-send-email-alerts-when-windows-defender-detects-malware/342528)

<div class="topic-metadata">

**Author:** [@RJC](https://discuss.elastic.co/u/RJC)\
**Replies:** 0\
**Last updated:** [September 7, 2023, 1:28pm UTC](https://discuss.elastic.co/t/watcher-to-send-email-alerts-when-windows-defender-detects-malware/342528 "2023-09-07T13:28:47Z")

</div>

I created a Watcher in Kibana to send email notification when malware is detected on one of the monitored hosts. Maleware detection event has a Windows Event Log ID 1116 and it is generated by Winlog channel "Microsoft-…

---

## [Export Teleport Audit Events to the Elastic Stack](https://discuss.elastic.co/t/export-teleport-audit-events-to-the-elastic-stack/340997)

<div class="topic-metadata">

**Author:** [@jana1](https://discuss.elastic.co/u/jana1)\
**Replies:** 1\
**Last updated:** [September 7, 2023, 10:02am UTC](https://discuss.elastic.co/t/export-teleport-audit-events-to-the-elastic-stack/340997 "2023-09-07T10:02:44Z")

</div>

i need help with Exporting Teleport Audit logs to the Elastic Stack - KIbana i am beginner on everything thats way i faced a problem in each step . i need help on explaining how to do all that the things that i did i…

[Previous page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=94)

[Next page](https://discuss.elastic.co/c/elastic-stack/kibana/7.md?page=96)
