# Metrics

**URL:** https://discuss.elastic.co/c/observability/metrics/68.md

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

---

## [About the Infrastructure category](https://discuss.elastic.co/t/about-the-infrastructure-category/156754)

<div class="topic-metadata">

**Author:** [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Replies:** 0

</div>

Open source infrastructure monitoring Already using the Elastic Stack for logs? Add infrastructure metrics in just a few steps. Elasticsearch takes what you love about its log search superpowers and applies them to metri…

---

## [Only One Scheduled Osquery Query Pack Runs in Agent Policy](https://discuss.elastic.co/t/only-one-scheduled-osquery-query-pack-runs-in-agent-policy/388792)

<div class="topic-metadata">

**Author:** [@Viktor\_Movita](https://discuss.elastic.co/u/Viktor_Movita)\
**Replies:** 0\
**Last updated:** [July 26, 2026, 12:33pm UTC](https://discuss.elastic.co/t/only-one-scheduled-osquery-query-pack-runs-in-agent-policy/388792 "2026-07-26T12:33:00Z")

</div>

Hello, I am using Elastic Agent 8.19.14 and collecting systemd unit information through the Osquery Manager integration. Recently, I have encountered an issue where, if I configure two query packs within the same Agent…

---

## [ECE Monitoring - cgroup memory fields mapped as keyword instead of numeric](https://discuss.elastic.co/t/ece-monitoring-cgroup-memory-fields-mapped-as-keyword-instead-of-numeric/386861)

<div class="topic-metadata">

**Author:** [@willemdh](https://discuss.elastic.co/u/willemdh)\
**Replies:** 4\
**Last updated:** [June 30, 2026, 10:04am UTC](https://discuss.elastic.co/t/ece-monitoring-cgroup-memory-fields-mapped-as-keyword-instead-of-numeric/386861 "2026-06-30T10:04:56Z")

</div>

Hello, I'm investigating CPU throttling and resource entitlement for Elasticsearch nodes running on Elastic Cloud Enterprise (ECE). While building dashboards from the \`.monitoring-es-\*\` indices, I noticed the following…

---

## [TOP N processes (System process metrics)](https://discuss.elastic.co/t/top-n-processes-system-process-metrics/385034)

<div class="topic-metadata">

**Author:** [@fsch](https://discuss.elastic.co/u/fsch)\
**Replies:** 1\
**Last updated:** [March 9, 2026, 1:02am UTC](https://discuss.elastic.co/t/top-n-processes-system-process-metrics/385034 "2026-03-09T01:02:38Z")

</div>

Hi, I have a question concerning the system metrics field system.process.cpu.total.norm.pct described as "The percentage of CPU time spent by the process since the last event. This value is normalized by the number of C…

---

## [Metricbeat 8.x – Why were os.cpu.load\_average.5m and 15m removed?](https://discuss.elastic.co/t/metricbeat-8-x-why-were-os-cpu-load-average-5m-and-15m-removed/384120)

<div class="topic-metadata">

**Author:** [@Suresh\_Ghatuwa](https://discuss.elastic.co/u/Suresh_Ghatuwa)\
**Replies:** 1\
**Last updated:** [December 17, 2025, 12:56pm UTC](https://discuss.elastic.co/t/metricbeat-8-x-why-were-os-cpu-load-average-5m-and-15m-removed/384120 "2025-12-17T12:56:52Z")

</div>

We observed a behavioral change between Metricbeat 7.17 and 8.x (tested with 8.13) regarding Elasticsearch node OS CPU load averages. In Metricbeat 7.17, metricset exported: node\_stats.os.cpu.load\_average.1m node\_…

---

## [Application Reads on which Cluster](https://discuss.elastic.co/t/application-reads-on-which-cluster/383368)

<div class="topic-metadata">

**Author:** [@mannoj87](https://discuss.elastic.co/u/mannoj87)\
**Replies:** 2\
**Last updated:** [November 13, 2025, 1:55pm UTC](https://discuss.elastic.co/t/application-reads-on-which-cluster/383368 "2025-11-13T13:55:30Z")

</div>

Team, Looking for a right metric to determine which cluster is taking read traffic. We have 2 clusters for redundancy at anytime only one cluster will take read traffic anc both takes write traffic. I have been playing…

---

## [Setting up Elasticsearch servicemonitor for prometheus](https://discuss.elastic.co/t/setting-up-elasticsearch-servicemonitor-for-prometheus/374831)

<div class="topic-metadata">

**Author:** [@ragc007](https://discuss.elastic.co/u/ragc007)\
**Replies:** 2\
**Last updated:** [November 5, 2025, 5:58am UTC](https://discuss.elastic.co/t/setting-up-elasticsearch-servicemonitor-for-prometheus/374831 "2025-11-05T05:58:26Z")

</div>

trying to setup servicemonitor for elasticsearch exporter to expose elasticsearch cluster metrics to prometheus, but exporter fails to connect to elasticsearch cluster in exporter we are passing the service url along wi…

---

## [Want to understand how we can integrate metricbeat with amazon ecs ec2 launch type?](https://discuss.elastic.co/t/want-to-understand-how-we-can-integrate-metricbeat-with-amazon-ecs-ec2-launch-type/383217)

<div class="topic-metadata">

**Author:** [@rutz19](https://discuss.elastic.co/u/rutz19)\
**Replies:** 0\
**Last updated:** [November 4, 2025, 5:16pm UTC](https://discuss.elastic.co/t/want-to-understand-how-we-can-integrate-metricbeat-with-amazon-ecs-ec2-launch-type/383217 "2025-11-04T17:16:40Z")

</div>

If any one has integrated metricbeat with aws ecs ec2. It would be really helpful if you can share the details on how to achieve it.

---

## [Limit es monitored data in metricbeat](https://discuss.elastic.co/t/limit-es-monitored-data-in-metricbeat/381160)

<div class="topic-metadata">

**Author:** [@SamehSaeed](https://discuss.elastic.co/u/SamehSaeed)\
**Replies:** 2\
**Last updated:** [August 21, 2025, 6:47am UTC](https://discuss.elastic.co/t/limit-es-monitored-data-in-metricbeat/381160 "2025-08-21T06:47:36Z")

</div>

Hello, I’m currently monitoring ELK stack through metricbeat (Elasticsearch, Kibana & Logstash) but the monitoring index for Elasticsearch “.ds-.monitoring-es…….” is around 15GB per day so I switched the period to 60 …

---

## [Metricbeat Openshift - Monitoring only one namespace](https://discuss.elastic.co/t/metricbeat-openshift-monitoring-only-one-namespace/380843)

<div class="topic-metadata">

**Author:** [@LukaszPawlak](https://discuss.elastic.co/u/LukaszPawlak)\
**Replies:** 0\
**Last updated:** [August 6, 2025, 7:58pm UTC](https://discuss.elastic.co/t/metricbeat-openshift-monitoring-only-one-namespace/380843 "2025-08-06T19:58:08Z")

</div>

Hi, I would like to ask you about Metricbeat on Openshift. My case: I would like to implement metricbeat like deployment only on my one namespace. I have possibility to create service account with right permission, …

---

## [Totally exclude "CD-ROM Disc" metrics](https://discuss.elastic.co/t/totally-exclude-cd-rom-disc-metrics/379265)

<div class="topic-metadata">

**Author:** [@taprove](https://discuss.elastic.co/u/taprove)\
**Replies:** 4\
**Last updated:** [June 24, 2025, 4:40pm UTC](https://discuss.elastic.co/t/totally-exclude-cd-rom-disc-metrics/379265 "2025-06-24T16:40:07Z")

</div>

I'm unable to determine how to fully exclude alerting on CD-ROM metrics. I've gone into the system integrations and added ignore of unknown and unavailable, along with Unknown and Unavailable, and I still get alerts on …

---

## [Process metrics in Infrastructure dashboard](https://discuss.elastic.co/t/process-metrics-in-infrastructure-dashboard/378673)

<div class="topic-metadata">

**Author:** [@srini29](https://discuss.elastic.co/u/srini29)\
**Replies:** 5\
**Last updated:** [June 18, 2025, 7:55pm UTC](https://discuss.elastic.co/t/process-metrics-in-infrastructure-dashboard/378673 "2025-06-18T19:55:07Z")

</div>

I have ingested process metrics from a Windows Server with 50 GB of RAM and 12 CPU cores. However, I notice that the values shown in the ELK Infrastructure Dashboard are different from those shown in Windows Task Manager…

---

## [Elasticsearch, Kibana, Metricbeat based on docker compose](https://discuss.elastic.co/t/elasticsearch-kibana-metricbeat-based-on-docker-compose/378898)

<div class="topic-metadata">

**Author:** [@Jinhee\_Jeong](https://discuss.elastic.co/u/Jinhee_Jeong)\
**Replies:** 0\
**Last updated:** [June 5, 2025, 8:44am UTC](https://discuss.elastic.co/t/elasticsearch-kibana-metricbeat-based-on-docker-compose/378898 "2025-06-05T08:44:41Z")

</div>

Hello, I deployed Elasticsearch, Kibana, and Metricbeat containers one by one on AWS EC2. I deployed it by referring to this guide. It is not exactly the same, but it is mostly similar. When you go into Kibana, t…

---

## [Missing Memory Usage Metrics in Prebuild Kubernetes Dashboards](https://discuss.elastic.co/t/missing-memory-usage-metrics-in-prebuild-kubernetes-dashboards/378411)

<div class="topic-metadata">

**Author:** [@Lexinga](https://discuss.elastic.co/u/Lexinga)\
**Replies:** 0\
**Last updated:** [May 22, 2025, 9:46am UTC](https://discuss.elastic.co/t/missing-memory-usage-metrics-in-prebuild-kubernetes-dashboards/378411 "2025-05-22T09:46:28Z")

</div>

Hi Elastic team, I wanted to share some feedback and ask about an issue I’ve observed with the Kubernetes Prebuilt Cluster Overview Dashboard coming from the Kubernetes Integration. The visualization for "Memory used vs…

---

## [Elastic Agent doesn't resolve nodename](https://discuss.elastic.co/t/elastic-agent-doesnt-resolve-nodename/376010)

<div class="topic-metadata">

**Author:** [@vigen](https://discuss.elastic.co/u/vigen)\
**Replies:** 4\
**Last updated:** [May 7, 2025, 6:48pm UTC](https://discuss.elastic.co/t/elastic-agent-doesnt-resolve-nodename/376010 "2025-05-07T18:48:01Z")

</div>

I followed to Example: Install Fleet-managed Elastic Agent on Kubernetes using Helm guide and deployed elastic agents on my k8s cluster. But agents statuses are unhealthy, and logs shows the following error Error fetchi…

---

## [Metricbeat Pods Stopping Metrics Intermittently – Connection Issues](https://discuss.elastic.co/t/metricbeat-pods-stopping-metrics-intermittently-connection-issues/376665)

<div class="topic-metadata">

**Author:** [@calvin01](https://discuss.elastic.co/u/calvin01)\
**Replies:** 0\
**Last updated:** [April 2, 2025, 6:36am UTC](https://discuss.elastic.co/t/metricbeat-pods-stopping-metrics-intermittently-connection-issues/376665 "2025-04-02T06:36:48Z")

</div>

Hi Team, We're facing an intermittent issue with our Metricbeat pods. For the past 30 days, our Metricbeat pods have been running smoothly, sending metrics to Elasticsearch, and displaying them on Kibana’s Stack Monitor…

---

## [I have set one alert rule, i see some fields are not populated correctly in the alert document, so in the index makes empty fields](https://discuss.elastic.co/t/i-have-set-one-alert-rule-i-see-some-fields-are-not-populated-correctly-in-the-alert-document-so-in-the-index-makes-empty-fields/375643)

<div class="topic-metadata">

**Author:** [@sayid](https://discuss.elastic.co/u/sayid)\
**Replies:** 0\
**Last updated:** [March 10, 2025, 10:48am UTC](https://discuss.elastic.co/t/i-have-set-one-alert-rule-i-see-some-fields-are-not-populated-correctly-in-the-alert-document-so-in-the-index-makes-empty-fields/375643 "2025-03-10T10:48:07Z")

</div>

i have set one alert rule, i see some fields are not populated correctly in the alert document, so in the index makes empty fields. here is my alert rule: PUT kbn:/api/alerting/rule/6aeaa6d9-8795-4c63-9623-975a20e61bd9 …

---

## [Need help understand Observability elastic cloud agent configuration](https://discuss.elastic.co/t/need-help-understand-observability-elastic-cloud-agent-configuration/375092)

<div class="topic-metadata">

**Author:** [@rajesh007](https://discuss.elastic.co/u/rajesh007)\
**Replies:** 0\
**Last updated:** [February 26, 2025, 1:18pm UTC](https://discuss.elastic.co/t/need-help-understand-observability-elastic-cloud-agent-configuration/375092 "2025-02-26T13:18:44Z")

</div>

I am running Elastic cloud, Elastic Observability Serverless and was wondering to have some better control over what should be included in monitoring like just app logs or server and pods performance matrices. Since i c…

---

## [Doker run dometricbeat:8.17.0 failed](https://discuss.elastic.co/t/doker-run-dometricbeat-8-17-0-failed/374258)

<div class="topic-metadata">

**Author:** [@Resoft-190910](https://discuss.elastic.co/u/Resoft-190910)\
**Replies:** 0\
**Last updated:** [February 8, 2025, 11:24am UTC](https://discuss.elastic.co/t/doker-run-dometricbeat-8-17-0-failed/374258 "2025-02-08T11:24:06Z")

</div>

This is execute command: docker run --network elk elastic/metricbeat:8.17.0 setup -E setup.ilm.overwrite=true -E setup.kibana.host=kibana:5601 -E output.elasticsearch.hosts=\["xxxxxxxxx:9200"\] -E output.elasticsearch.use…

---

## [Retrieving Node URL from Alert](https://discuss.elastic.co/t/retrieving-node-url-from-alert/372143)

<div class="topic-metadata">

**Author:** [@Bartosz](https://discuss.elastic.co/u/Bartosz)\
**Replies:** 1\
**Last updated:** [January 25, 2025, 6:02pm UTC](https://discuss.elastic.co/t/retrieving-node-url-from-alert/372143 "2025-01-25T18:02:10Z")

</div>

I have created simple CPU alert inside Stack Management, with action that send a message to Slack. I wanted to have the URL to the node causing the alert inside the message. I found the url inside {{context.action}} v…

---

## [Getting Error in Creating a Workflow](https://discuss.elastic.co/t/getting-error-in-creating-a-workflow/372649)

<div class="topic-metadata">

**Author:** [@Gautam\_Pati](https://discuss.elastic.co/u/Gautam_Pati)\
**Replies:** 0\
**Last updated:** [December 31, 2024, 3:54am UTC](https://discuss.elastic.co/t/getting-error-in-creating-a-workflow/372649 "2024-12-31T03:54:47Z")

</div>

Hello, I'm working on setting up a workflow in Elastic Stack where, upon the ingestion of a log into an index, the log is sent to a Large Language Model (LLM) for processing. The LLM would then return a response, which …

---

## [Issue with Inaccurate CPU/Memory Stats Visualization in ELK for QA Environment](https://discuss.elastic.co/t/issue-with-inaccurate-cpu-memory-stats-visualization-in-elk-for-qa-environment/369781)

<div class="topic-metadata">

**Author:** [@Harshul](https://discuss.elastic.co/u/Harshul)\
**Replies:** 1\
**Last updated:** [October 30, 2024, 5:38am UTC](https://discuss.elastic.co/t/issue-with-inaccurate-cpu-memory-stats-visualization-in-elk-for-qa-environment/369781 "2024-10-30T05:38:39Z")

</div>

In our QA environment, we observed that both CPU and memory usage display a flatline on ELK, even under load conditions. The expectation is that these metrics should reflect an increase in resource utilization as load is…

---

## [Elastic agent does not send CPU iowait, irq and softirq metrics](https://discuss.elastic.co/t/elastic-agent-does-not-send-cpu-iowait-irq-and-softirq-metrics/367245)

<div class="topic-metadata">

**Author:** [@subash](https://discuss.elastic.co/u/subash)\
**Replies:** 0\
**Last updated:** [September 27, 2024, 1:02pm UTC](https://discuss.elastic.co/t/elastic-agent-does-not-send-cpu-iowait-irq-and-softirq-metrics/367245 "2024-09-27T13:02:41Z")

</div>

Hello, I am using fleet managed Elastic agent (7.17.4) in windows machines to collect the metrics. And,I don't receive none of the iowait, softirq and irq metrics. system.cpu.iowait.ticks system.cpu.softirq.ticks sys…

---

## [Elastic Agent Vsphere 8.x support](https://discuss.elastic.co/t/elastic-agent-vsphere-8-x-support/366533)

<div class="topic-metadata">

**Author:** [@willemdh](https://discuss.elastic.co/u/willemdh)\
**Replies:** 0\
**Last updated:** [September 13, 2024, 12:33pm UTC](https://discuss.elastic.co/t/elastic-agent-vsphere-8-x-support/366533 "2024-09-13T12:33:39Z")

</div>

Hello, Does the Elastic Vsphere Integration support Vsphere 8.x? The doc mentions only 6 and 7.. Grtz Willem

---

## [Metricbeats kafka module is not using SSL](https://discuss.elastic.co/t/metricbeats-kafka-module-is-not-using-ssl/366028)

<div class="topic-metadata">

**Author:** [@Manjula\_Piyumal](https://discuss.elastic.co/u/Manjula_Piyumal)\
**Replies:** 3\
**Last updated:** [September 6, 2024, 8:20am UTC](https://discuss.elastic.co/t/metricbeats-kafka-module-is-not-using-ssl/366028 "2024-09-06T08:20:18Z")

</div>

Hi, I'm trying to set up the elk monitoring for my kafka cluster using metricbeat kafka module. My kafka cluster is using SASL\_SSL security protocol. I have configured my kafka.yml in metricbeat like below module: ka…

---

## [Metricbeats in Multiples Clusters in Oracle Cloud](https://discuss.elastic.co/t/metricbeats-in-multiples-clusters-in-oracle-cloud/365326)

<div class="topic-metadata">

**Author:** [@Rodrigo\_Vannucci](https://discuss.elastic.co/u/Rodrigo_Vannucci)\
**Replies:** 0\
**Last updated:** [August 22, 2024, 1:49am UTC](https://discuss.elastic.co/t/metricbeats-in-multiples-clusters-in-oracle-cloud/365326 "2024-08-22T01:49:53Z")

</div>

Hello, This is my first time here and I have a question. I have several Kubernetes clusters running on Oracle Cloud. I installed metricbeat according to the documentation. The problem is that all clusters are like Ku…

---

## [How to write OpenTelemetry data into TSDS?](https://discuss.elastic.co/t/how-to-write-opentelemetry-data-into-tsds/364011)

<div class="topic-metadata">

**Author:** [@hollis.wu](https://discuss.elastic.co/u/hollis.wu)\
**Replies:** 0\
**Last updated:** [July 29, 2024, 10:06pm UTC](https://discuss.elastic.co/t/how-to-write-opentelemetry-data-into-tsds/364011 "2024-07-29T22:06:25Z")

</div>

I am instrumenting our apps via OpenTelemetry SDK and write the metrics into Elastic via OpenTelemetry Protocol described in here: OpenTelemetry native support | Elastic Observability \[8.14\] | Elastic. Is there any way …

---

## [Metricbeat config issue](https://discuss.elastic.co/t/metricbeat-config-issue/360573)

<div class="topic-metadata">

**Author:** [@zaeemmasood](https://discuss.elastic.co/u/zaeemmasood)\
**Replies:** 3\
**Last updated:** [July 16, 2024, 1:26pm UTC](https://discuss.elastic.co/t/metricbeat-config-issue/360573 "2024-07-16T13:26:00Z")

</div>

Hi all, I am trying to configure metricbeat to display Apache related parameters in Kibana. We are using ELK stack 8.7.0. The metricbeat.yml looks like this: ###################### Metricbeat Configuration Example ##…

---

## [How to visualize or count same Counter from different pods](https://discuss.elastic.co/t/how-to-visualize-or-count-same-counter-from-different-pods/360677)

<div class="topic-metadata">

**Author:** [@Mazdak\_Mansouri](https://discuss.elastic.co/u/Mazdak_Mansouri)\
**Replies:** 3\
**Last updated:** [June 4, 2024, 10:03pm UTC](https://discuss.elastic.co/t/how-to-visualize-or-count-same-counter-from-different-pods/360677 "2024-06-04T22:03:17Z")

</div>

We are using OpenTelemetry to collect custom metrics into Elastic. We have a simple counter metrics that on each of our endpoint call, increase +1. (basically we want to count how many times an endpoint called in X peri…

---

## [Slow Metricbeats dashboard](https://discuss.elastic.co/t/slow-metricbeats-dashboard/359538)

<div class="topic-metadata">

**Author:** [@SamehSaeed](https://discuss.elastic.co/u/SamehSaeed)\
**Replies:** 9\
**Last updated:** [May 26, 2024, 8:19am UTC](https://discuss.elastic.co/t/slow-metricbeats-dashboard/359538 "2024-05-26T08:19:36Z")

</div>

Hello, I'm currently using Metricbeats system dashboards to monitor machine hardware usage (CPU, memory ....etc). At first it was working fine when we had like 3 - 4 machines sending metrics, then as we installed metric…

[Next page](https://discuss.elastic.co/c/observability/metrics/68.md?page=1)
