# Latest

**URL:** https://discuss.elastic.co/latest.md?page=397

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 398

---

## [Структура индекса для поиска в интернетмагазине](https://discuss.elastic.co/t/topic/353567)

<div class="topic-metadata">

**Author:** [@denis.lapa](https://discuss.elastic.co/u/denis.lapa)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 10:40am UTC](https://discuss.elastic.co/t/topic/353567 "2024-02-19T10:40:40Z")

</div>

Добрый день. У нас интернет-магазин 560 000 товаров. Контент на 6-ти языках. Сейчас контент на всех языках индексируется в один индекс: поле pname = Мобильный телефон xiaomi, Mobile phone xiaomi и тд. поле сat\_name …

---

## [Elastic Agent shouldn't log httpjson pagination completion as an error](https://discuss.elastic.co/t/elastic-agent-shouldnt-log-httpjson-pagination-completion-as-an-error/353565)

<div class="topic-metadata">

**Author:** [@agmic](https://discuss.elastic.co/u/agmic)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 10:37am UTC](https://discuss.elastic.co/t/elastic-agent-shouldnt-log-httpjson-pagination-completion-as-an-error/353565 "2024-02-19T10:37:08Z")

</div>

I think this is a bug, but seeking confirmation here before I raise it on github. I am also not sure if this should be raised against Elastic Agent or the integration. The Cisco Secure Endpoint integration collects eve…

---

## [How to Handle Large Indices when non-time series data](https://discuss.elastic.co/t/how-to-handle-large-indices-when-non-time-series-data/353535)

<div class="topic-metadata">

**Author:** [@tusharnemade](https://discuss.elastic.co/u/tusharnemade)\
**Replies:** 4\
**Last updated:** [February 19, 2024, 10:30am UTC](https://discuss.elastic.co/t/how-to-handle-large-indices-when-non-time-series-data/353535 "2024-02-19T10:30:27Z")

</div>

Hello Everyone: We are using Elasticsearch v7.8.0 and some clusters of version 8.10.4. We are having Indices storing 40 millions of records in each , having shards -5 primary shards at the time of each index creation. …

---

## [\["org.apache.lucene.index.CorruptIndexException: checksum failed (hardware problem?)](https://discuss.elastic.co/t/org-apache-lucene-index-corruptindexexception-checksum-failed-hardware-problem/353558)

<div class="topic-metadata">

**Author:** [@Kesavan](https://discuss.elastic.co/u/Kesavan)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 10:13am UTC](https://discuss.elastic.co/t/org-apache-lucene-index-corruptindexexception-checksum-failed-hardware-problem/353558 "2024-02-19T10:13:59Z")

</div>

We are facing the CorruptIndexException and also UnavailableShardsException in elastic log. In our system for all index the number of shards is 5. While QA testing we are facing the index elated exception below are the …

---

## [Missing log file](https://discuss.elastic.co/t/missing-log-file/353554)

<div class="topic-metadata">

**Author:** [@Pooort](https://discuss.elastic.co/u/Pooort)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 9:46am UTC](https://discuss.elastic.co/t/missing-log-file/353554 "2024-02-19T09:46:38Z")

</div>

Hello. I start logstash with in official container logstash:8.12.1: logstash -f logstash.conf --path.logs /var/log/logstash/ I see logs in the console but path is empty. How can I get logs in the file? Thanks in adva…

---

## [Small tsvb in dashboard - same as in synthetics](https://discuss.elastic.co/t/small-tsvb-in-dashboard-same-as-in-synthetics/352936)

<div class="topic-metadata">

**Author:** [@Rnx](https://discuss.elastic.co/u/Rnx)\
**Replies:** 2\
**Last updated:** [February 19, 2024, 8:30am UTC](https://discuss.elastic.co/t/small-tsvb-in-dashboard-same-as-in-synthetics/352936 "2024-02-19T08:30:23Z")

</div>

Hi, how to create small graphs in dashboards, visually similar with those in "synthetics"? OR How to create nice and clean indicator of the last value in an index? The purpose is to visualize in green if the service i…

---

## [Reindex multiple downsampled indexes into one cause invalid start/end\_time](https://discuss.elastic.co/t/reindex-multiple-downsampled-indexes-into-one-cause-invalid-start-end-time/353546)

<div class="topic-metadata">

**Author:** [@VietDuc](https://discuss.elastic.co/u/VietDuc)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 7:01am UTC](https://discuss.elastic.co/t/reindex-multiple-downsampled-indexes-into-one-cause-invalid-start-end-time/353546 "2024-02-19T07:01:41Z")

</div>

Hi Everyone, I have a TSDS index and already downsample many backing indexes. Now, i want to reindex some of my downsampled indexes into 1 index (to reduce number of backing index). While it is possible by using POST \_r…

---

## [Nginx reverse proxy for elastic cloud kibana page](https://discuss.elastic.co/t/nginx-reverse-proxy-for-elastic-cloud-kibana-page/353543)

<div class="topic-metadata">

**Author:** [@hanase](https://discuss.elastic.co/u/hanase)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 6:46am UTC](https://discuss.elastic.co/t/nginx-reverse-proxy-for-elastic-cloud-kibana-page/353543 "2024-02-19T06:46:50Z")

</div>

Hi, I'd like to use nginx to proxy\_pass a custom domain to elastic cloud kibana page. I tried some configurations from the discussion as well as this article. https://xeraa.net/blog/2020\_custom-domains-and-anonymous-a…

---

## [Semantic search on help documents](https://discuss.elastic.co/t/semantic-search-on-help-documents/353468)

<div class="topic-metadata">

**Author:** [@9d224d4833094bd482cf](https://discuss.elastic.co/u/9d224d4833094bd482cf)\
**Replies:** 2\
**Last updated:** [February 19, 2024, 6:46am UTC](https://discuss.elastic.co/t/semantic-search-on-help-documents/353468 "2024-02-19T06:46:30Z")

</div>

Hello, We have a help documents on our website for our web application. This help documents on our websites are well documented (with text and images). It has a list of Topics and each topic has its own url with sub to…

---

## [Optimizing Document Retrieval from Elasticsearch: Which Method Works Best?](https://discuss.elastic.co/t/optimizing-document-retrieval-from-elasticsearch-which-method-works-best/353501)

<div class="topic-metadata">

**Author:** [@ONKAR\_SURYAWANSHI](https://discuss.elastic.co/u/ONKAR_SURYAWANSHI)\
**Replies:** 1\
**Last updated:** [February 19, 2024, 6:38am UTC](https://discuss.elastic.co/t/optimizing-document-retrieval-from-elasticsearch-which-method-works-best/353501 "2024-02-19T06:38:45Z")

</div>

Use case: I want to fetch multiple documents by document ID, in a single query. To reduce network calls. I was exploring the optimal way to write this query. There are multiple ways I find that could do this but I am n…

---

## [Can the Snapshot Restore restores all my data just once](https://discuss.elastic.co/t/can-the-snapshot-restore-restores-all-my-data-just-once/353538)

<div class="topic-metadata">

**Author:** [@JasonREC](https://discuss.elastic.co/u/JasonREC)\
**Replies:** 2\
**Last updated:** [February 19, 2024, 6:31am UTC](https://discuss.elastic.co/t/can-the-snapshot-restore-restores-all-my-data-just-once/353538 "2024-02-19T06:31:43Z")

</div>

Hi I have a question about the snapshot restore mechanism, Senerio, I create an index, and it has data keep indexing in it and I have set the Elasticsearch to take snapshot once per night specficly for this index, let …

---

## [Why is segment not merged when deleted over 33%?](https://discuss.elastic.co/t/why-is-segment-not-merged-when-deleted-over-33/353537)

<div class="topic-metadata">

**Author:** [@missingcat92](https://discuss.elastic.co/u/missingcat92)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 4:17am UTC](https://discuss.elastic.co/t/why-is-segment-not-merged-when-deleted-over-33/353537 "2024-02-19T04:17:38Z")

</div>

We have an ES v7.10 instance, and every config about merge is default. Now we have a segment, which include 37% deleted doc (docs.count=6513192,docs.deleted=3902050), the segment is now 4.8gb, and it's not merged for ab…

---

## [Understanding the Impacts of Manual Operations on Elasticsearch Indices Controlled by ILM](https://discuss.elastic.co/t/understanding-the-impacts-of-manual-operations-on-elasticsearch-indices-controlled-by-ilm/353531)

<div class="topic-metadata">

**Author:** [@gwapoo92](https://discuss.elastic.co/u/gwapoo92)\
**Replies:** 0\
**Last updated:** [February 19, 2024, 1:01am UTC](https://discuss.elastic.co/t/understanding-the-impacts-of-manual-operations-on-elasticsearch-indices-controlled-by-ilm/353531 "2024-02-19T01:01:40Z")

</div>

Hey Elasticsearch enthusiasts! I'm currently exploring the possibilities of implementing Index Lifecycle Management (ILM) in Elasticsearch. As I delve into this feature, a question has been lingering in my mind: What ha…

---

## [Pagination using Filebeat httpjson how to reference the 'next' link in results](https://discuss.elastic.co/t/pagination-using-filebeat-httpjson-how-to-reference-the-next-link-in-results/353528)

<div class="topic-metadata">

**Author:** [@Jez1](https://discuss.elastic.co/u/Jez1)\
**Replies:** 0\
**Last updated:** [February 18, 2024, 11:23pm UTC](https://discuss.elastic.co/t/pagination-using-filebeat-httpjson-how-to-reference-the-next-link-in-results/353528 "2024-02-18T23:23:23Z")

</div>

Hello, I'm pretty new to using filebeat and currently working out how to use the httpjson input to pull data from a REST API. I've worked out how to pull the response based on the time period I need and in the correct t…

---

## [Create new side menu category in Kibana](https://discuss.elastic.co/t/create-new-side-menu-category-in-kibana/353525)

<div class="topic-metadata">

**Author:** [@Sanskar\_Panchal](https://discuss.elastic.co/u/Sanskar_Panchal)\
**Replies:** 0\
**Last updated:** [February 18, 2024, 8:03pm UTC](https://discuss.elastic.co/t/create-new-side-menu-category-in-kibana/353525 "2024-02-18T20:03:04Z")

</div>

Hi, I wanted to create a new side menu category for Kibana. The actual requirement is to build something similar to "Recently viewed" section on the side menu. Is it possible with a custom plugin ? Thank you.

---

## [Kibana UI does not work when kibana.yml file is mounted into docker container, but does work when config is set via env vars](https://discuss.elastic.co/t/kibana-ui-does-not-work-when-kibana-yml-file-is-mounted-into-docker-container-but-does-work-when-config-is-set-via-env-vars/353522)

<div class="topic-metadata">

**Author:** [@pred135](https://discuss.elastic.co/u/pred135)\
**Replies:** 3\
**Last updated:** [February 18, 2024, 7:18pm UTC](https://discuss.elastic.co/t/kibana-ui-does-not-work-when-kibana-yml-file-is-mounted-into-docker-container-but-does-work-when-config-is-set-via-env-vars/353522 "2024-02-18T19:18:15Z")

</div>

I am having a very weird and frustrating issue with kibana. I am running the dockerhub elasticsearch and kibana containers on my kubernetes cluster. Here is the issue: I can run elasticsearch just fine, and also port for…

---

## [Definition of plugin "urlForwarding" not found and may have failed to load](https://discuss.elastic.co/t/definition-of-plugin-urlforwarding-not-found-and-may-have-failed-to-load/349921)

<div class="topic-metadata">

**Author:** [@yoss\_fazwaz](https://discuss.elastic.co/u/yoss_fazwaz)\
**Replies:** 7\
**Last updated:** [February 18, 2024, 5:36pm UTC](https://discuss.elastic.co/t/definition-of-plugin-urlforwarding-not-found-and-may-have-failed-to-load/349921 "2024-02-18T17:36:39Z")

</div>

Hi guys, after installing Elasticsearch on Kubernetes, I can access Elasticsearch, but when I tried to access Kibana, I encountered this error. Version: 8.11.1 Build: 68203 Error: Definition of plugin "urlForwarding" no…

---

## [Add field in table of Kibana dashboard](https://discuss.elastic.co/t/add-field-in-table-of-kibana-dashboard/353506)

<div class="topic-metadata">

**Author:** [@yashar.ansari76](https://discuss.elastic.co/u/yashar.ansari76)\
**Replies:** 8\
**Last updated:** [February 18, 2024, 5:29pm UTC](https://discuss.elastic.co/t/add-field-in-table-of-kibana-dashboard/353506 "2024-02-18T17:29:14Z")

</div>

Hi I have Kibana that visualize my data and I want to add column that exist in my log but I don't know how to add that filed in column. Thanks for your attention.

---

## [Sparse vector embeddings](https://discuss.elastic.co/t/sparse-vector-embeddings/353498)

<div class="topic-metadata">

**Author:** [@mwon](https://discuss.elastic.co/u/mwon)\
**Replies:** 4\
**Last updated:** [February 18, 2024, 3:40pm UTC](https://discuss.elastic.co/t/sparse-vector-embeddings/353498 "2024-02-18T15:40:50Z")

</div>

Hi, Is there any plan to re-introduce sparse vector fields? It was depreciated and there is this discussion about it. I would like to use sparse vectors to search by sparse vector embeddings. For example, I would like…

---

## [Can not create certificates for elasticsearch](https://discuss.elastic.co/t/can-not-create-certificates-for-elasticsearch/353509)

<div class="topic-metadata">

**Author:** [@Yerbolat\_Talasbekov](https://discuss.elastic.co/u/Yerbolat_Talasbekov)\
**Replies:** 7\
**Last updated:** [February 18, 2024, 2:39pm UTC](https://discuss.elastic.co/t/can-not-create-certificates-for-elasticsearch/353509 "2024-02-18T14:39:48Z")

</div>

Hello, can somebody help me with certificate creation? Here is my screens

---

## [Combine data views in Timeline Template](https://discuss.elastic.co/t/combine-data-views-in-timeline-template/353515)

<div class="topic-metadata">

**Author:** [@RoeeKent](https://discuss.elastic.co/u/RoeeKent)\
**Replies:** 1\
**Last updated:** [February 18, 2024, 1:42pm UTC](https://discuss.elastic.co/t/combine-data-views-in-timeline-template/353515 "2024-02-18T13:42:09Z")

</div>

Hi Everyone! I'm implementing the usage of timeline templates in my organization, but when I need to use different indices at the same time, I can't because it is based on data views and not on index patterns. I have so…

---

## [SQL data upload using JDBC-logstash](https://discuss.elastic.co/t/sql-data-upload-using-jdbc-logstash/353435)

<div class="topic-metadata">

**Author:** [@Ritikapawar](https://discuss.elastic.co/u/Ritikapawar)\
**Replies:** 8\
**Last updated:** [February 18, 2024, 10:04am UTC](https://discuss.elastic.co/t/sql-data-upload-using-jdbc-logstash/353435 "2024-02-18T10:04:22Z")

</div>

Hi, I'm uploading data using jdbc-logstash script but when i run ths script it adds allover data again and again so index is showing count of duplicate data too. This is the script which i am using input { jdbc { …

---

## [Kibana formula "reducedTimeRange" not working](https://discuss.elastic.co/t/kibana-formula-reducedtimerange-not-working/353243)

<div class="topic-metadata">

**Author:** [@SamehSaeed](https://discuss.elastic.co/u/SamehSaeed)\
**Replies:** 3\
**Last updated:** [February 18, 2024, 7:13am UTC](https://discuss.elastic.co/t/kibana-formula-reducedtimerange-not-working/353243 "2024-02-18T07:13:36Z")

</div>

I'm facing an issue while creating a visualization, whenever i use "reducedTimeRange" the result value becomes 0.

---

## [Elastic badrequest error: contains unrecognized parameter: \[type\]](https://discuss.elastic.co/t/elastic-badrequest-error-contains-unrecognized-parameter-type/353427)

<div class="topic-metadata">

**Author:** [@Vicapelli](https://discuss.elastic.co/u/Vicapelli)\
**Replies:** 4\
**Last updated:** [February 17, 2024, 9:45pm UTC](https://discuss.elastic.co/t/elastic-badrequest-error-contains-unrecognized-parameter-type/353427 "2024-02-17T21:45:37Z")

</div>

I am using Elasticsearch in a Rails application through the Elasticsearch-rails gem. After creating the indexes, I want to import the data into these indexes. But I am getting the following error: Elastic::Transport::T…

---

## [Logstash TCP encoder](https://discuss.elastic.co/t/logstash-tcp-encoder/353469)

<div class="topic-metadata">

**Author:** [@kypdk](https://discuss.elastic.co/u/kypdk)\
**Replies:** 3\
**Last updated:** [February 17, 2024, 3:54pm UTC](https://discuss.elastic.co/t/logstash-tcp-encoder/353469 "2024-02-17T15:54:41Z")

</div>

The logs go to the logstash server, but they are not indexed because they are not in the format I want. How should I configure it? output { elasticsearch { hosts =\> "elasticsearch:9200" …

---

## [Azure SAML configuration using free elastic/kibana version](https://discuss.elastic.co/t/azure-saml-configuration-using-free-elastic-kibana-version/353497)

<div class="topic-metadata">

**Author:** [@Pablo\_Lencinas](https://discuss.elastic.co/u/Pablo_Lencinas)\
**Replies:** 2\
**Last updated:** [February 17, 2024, 3:45pm UTC](https://discuss.elastic.co/t/azure-saml-configuration-using-free-elastic-kibana-version/353497 "2024-02-17T15:45:55Z")

</div>

Hi. I'm using elastic/kibana and elastiflow to collect netflow traffic and I would like to configure SAML authentication using Azure AD. I'm using Elastic v8.7.0 (free version). It is possible to configure this feature? …

---

## [Elasticsearch Query: search result not same when am searching for wooden door and wooden doors](https://discuss.elastic.co/t/elasticsearch-query-search-result-not-same-when-am-searching-for-wooden-door-and-wooden-doors/353504)

<div class="topic-metadata">

**Author:** [@Mohan\_T](https://discuss.elastic.co/u/Mohan_T)\
**Replies:** 1\
**Last updated:** [February 17, 2024, 12:15pm UTC](https://discuss.elastic.co/t/elasticsearch-query-search-result-not-same-when-am-searching-for-wooden-door-and-wooden-doors/353504 "2024-02-17T12:15:25Z")

</div>

when am search for wooden door and wooden doors results not show the same. Query which i have used to fetch the data { "query": { "bool": { "should": \[ { "mat…

---

## [First time user - Unable to get Filebeat \> logstash](https://discuss.elastic.co/t/first-time-user-unable-to-get-filebeat-logstash/352451)

<div class="topic-metadata">

**Author:** [@eezeetee](https://discuss.elastic.co/u/eezeetee)\
**Replies:** 18\
**Last updated:** [February 17, 2024, 5:24am UTC](https://discuss.elastic.co/t/first-time-user-unable-to-get-filebeat-logstash/352451 "2024-02-17T05:24:46Z")

</div>

I've been trying to get a home monitoring system up and running and i've fallen flat. My goal was to get MQTT and other messages into filebeat, thru logstash and into Kibana to build a dashboard. I've followed a few gu…

---

## [Lens - Pie Chart Summary](https://discuss.elastic.co/t/lens-pie-chart-summary/353493)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 4\
**Last updated:** [February 17, 2024, 2:18am UTC](https://discuss.elastic.co/t/lens-pie-chart-summary/353493 "2024-02-17T02:18:39Z")

</div>

Hello, I was wondering if there's a way to make a summary pie chart. The problem is with pie charts, I can't seem to be able to "Last Value" of a keyword. But in a data table, I can. This is an example of the data ta…

---

## [Elastic-filebeat-nginx-kibana-docker compose](https://discuss.elastic.co/t/elastic-filebeat-nginx-kibana-docker-compose/353457)

<div class="topic-metadata">

**Author:** [@v.popov](https://discuss.elastic.co/u/v.popov)\
**Replies:** 4\
**Last updated:** [February 16, 2024, 8:14pm UTC](https://discuss.elastic.co/t/elastic-filebeat-nginx-kibana-docker-compose/353457 "2024-02-16T20:14:53Z")

</div>

Попробуем сначала на русском. Всем привет, я работаю с Elastic через docker compose. У меня сейчас 2 вопроса: 1- Почему у меня огромное количество отдаваемых логов от nginx? После создания index filebeat-\* перехожу к л…

[Previous page](https://discuss.elastic.co/latest.md?page=396)

[Next page](https://discuss.elastic.co/latest.md?page=398)
