# Latest

**URL:** https://discuss.elastic.co/latest.md?page=399

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 400

---

## [Master not discovered or elected yet, when stopping Elasticsearch service](https://discuss.elastic.co/t/master-not-discovered-or-elected-yet-when-stopping-elasticsearch-service/353377)

<div class="topic-metadata">

**Author:** [@andrejze](https://discuss.elastic.co/u/andrejze)\
**Replies:** 18\
**Last updated:** [February 16, 2024, 12:45pm UTC](https://discuss.elastic.co/t/master-not-discovered-or-elected-yet-when-stopping-elasticsearch-service/353377 "2024-02-16T12:45:50Z")

</div>

OS: Debian 10 (buster), 4.19.0-25-amd64 #1 SMP Debian 4.19.289-2 (2023-08-08) Elasticsearch: 8.12.0 Cluster: 3 nodes, all master eligible When stopping Elasticsearch service on any node, operation gets stuck with err…

---

## [Docker nginx elasticsearch](https://discuss.elastic.co/t/docker-nginx-elasticsearch/352374)

<div class="topic-metadata">

**Author:** [@v.popov](https://discuss.elastic.co/u/v.popov)\
**Replies:** 6\
**Last updated:** [February 16, 2024, 11:39am UTC](https://discuss.elastic.co/t/docker-nginx-elasticsearch/352374 "2024-02-16T11:39:22Z")

</div>

Hi guys. I need help. I have configured everything that is needed, in my opinion, but I can’t understand why the server doesn’t want to connect to the log analytics agent. I wanted to do a test, but I was stuck with the …

---

## [How to Enable SSL only for Kibana not Elasticsearch](https://discuss.elastic.co/t/how-to-enable-ssl-only-for-kibana-not-elasticsearch/353349)

<div class="topic-metadata">

**Author:** [@ersalil](https://discuss.elastic.co/u/ersalil)\
**Replies:** 4\
**Last updated:** [February 16, 2024, 10:20am UTC](https://discuss.elastic.co/t/how-to-enable-ssl-only-for-kibana-not-elasticsearch/353349 "2024-02-16T10:20:35Z")

</div>

Hello, I have a go application which is using elastic client, I want to enable the ssl for communication between kibana and elasticsearch but not go client with elasticsearch. Note: Editing go code is not in option. Ca…

---

## [How can i search data from two indexes in Elastic search](https://discuss.elastic.co/t/how-can-i-search-data-from-two-indexes-in-elastic-search/353438)

<div class="topic-metadata">

**Author:** [@Sudipta\_Bhowmick](https://discuss.elastic.co/u/Sudipta_Bhowmick)\
**Replies:** 6\
**Last updated:** [February 16, 2024, 10:18am UTC](https://discuss.elastic.co/t/how-can-i-search-data-from-two-indexes-in-elastic-search/353438 "2024-02-16T10:18:05Z")

</div>

I have been stucked in a scenario and not getting any proper solution. Here is the problem i am facing with Elasticsearch. Any help would be appriciated. I have two indexes one is video and another is subtitles. A vid…

---

## [503 Error encountered during the upgrade of Logstash from version 8.10.4 to 8.12.1](https://discuss.elastic.co/t/503-error-encountered-during-the-upgrade-of-logstash-from-version-8-10-4-to-8-12-1/353442)

<div class="topic-metadata">

**Author:** [@Ramya\_Sababathi](https://discuss.elastic.co/u/Ramya_Sababathi)\
**Replies:** 2\
**Last updated:** [February 16, 2024, 10:15am UTC](https://discuss.elastic.co/t/503-error-encountered-during-the-upgrade-of-logstash-from-version-8-10-4-to-8-12-1/353442 "2024-02-16T10:15:57Z")

</div>

Hi, I recently performed the first upgrade of Logstash from version 8.10.4 to 8.12.1 and encountered an error during the process. It's important to note that this error only occurs during the initial upgrade and not dur…

---

## [KIBANA 8.12.0 to 8.12.1 error](https://discuss.elastic.co/t/kibana-8-12-0-to-8-12-1-error/352862)

<div class="topic-metadata">

**Author:** [@Tikelo](https://discuss.elastic.co/u/Tikelo)\
**Replies:** 2\
**Last updated:** [February 16, 2024, 8:30am UTC](https://discuss.elastic.co/t/kibana-8-12-0-to-8-12-1-error/352862 "2024-02-16T08:30:31Z")

</div>

Hi, I upgrade my stack 7.17.16 to 7.17.18 and my stack 8.12.0 to 8.12.1 Elasticsearch, logstash, filebeat \> ok Kibana start but when i try access i have same error OS : debian 11 (install with deb package) My config…

---

## [Can we add two differen types of visulization in one visulization only?](https://discuss.elastic.co/t/can-we-add-two-differen-types-of-visulization-in-one-visulization-only/353366)

<div class="topic-metadata">

**Author:** [@2328943\_dc](https://discuss.elastic.co/u/2328943_dc)\
**Replies:** 3\
**Last updated:** [February 16, 2024, 5:51am UTC](https://discuss.elastic.co/t/can-we-add-two-differen-types-of-visulization-in-one-visulization-only/353366 "2024-02-16T05:51:57Z")

</div>

Hi, is it possible in KIBANA To add two different types of visualization in one visualization only ? For example : can we combine data table and line graph in one visualization ?

---

## [Need help with building Docker image to deploy K8, error relates to Auto-configuration](https://discuss.elastic.co/t/need-help-with-building-docker-image-to-deploy-k8-error-relates-to-auto-configuration/353426)

<div class="topic-metadata">

**Author:** [@SippingOnesAndZeros](https://discuss.elastic.co/u/SippingOnesAndZeros)\
**Replies:** 0\
**Last updated:** [February 16, 2024, 2:34am UTC](https://discuss.elastic.co/t/need-help-with-building-docker-image-to-deploy-k8-error-relates-to-auto-configuration/353426 "2024-02-16T02:34:21Z")

</div>

Hi, I am trying to built elastic data node on a Linux, Redhat UBI 8. I can't get the elasticsearch to launch property to accept API calls. When the elasticsearch start, the log has this error. Auto-configuration will…

---

## [AMQP Metadata from RabbitMQ input plugin](https://discuss.elastic.co/t/amqp-metadata-from-rabbitmq-input-plugin/352711)

<div class="topic-metadata">

**Author:** [@Big-Edd](https://discuss.elastic.co/u/Big-Edd)\
**Replies:** 5\
**Last updated:** [February 16, 2024, 1:46am UTC](https://discuss.elastic.co/t/amqp-metadata-from-rabbitmq-input-plugin/352711 "2024-02-16T01:46:37Z")

</div>

Hello Everyone, We are inputting AMQP messages from RabbitMQ. These come to RabbitMQ via SMTP utilizing the rabbitmq-email plugin, so the AMQP headers contain some SMTP information we need. By default it seems that onl…

---

## [How do I add my registered domain in Uptime Monitoring using heartbeat?](https://discuss.elastic.co/t/how-do-i-add-my-registered-domain-in-uptime-monitoring-using-heartbeat/353421)

<div class="topic-metadata">

**Author:** [@Cruz](https://discuss.elastic.co/u/Cruz)\
**Replies:** 0\
**Last updated:** [February 16, 2024, 12:45am UTC](https://discuss.elastic.co/t/how-do-i-add-my-registered-domain-in-uptime-monitoring-using-heartbeat/353421 "2024-02-16T00:45:35Z")

</div>

Hello everyone, is it possible to add my registered domain names in a heartbeat? what I want to happen is that I can monitor my domain to see when it expires

---

## [Filebeat error on Windows: index management requested but the Elasticsearch output is not configured/enabled](https://discuss.elastic.co/t/filebeat-error-on-windows-index-management-requested-but-the-elasticsearch-output-is-not-configured-enabled/353310)

<div class="topic-metadata">

**Author:** [@tcalvillo](https://discuss.elastic.co/u/tcalvillo)\
**Replies:** 17\
**Last updated:** [February 15, 2024, 9:42pm UTC](https://discuss.elastic.co/t/filebeat-error-on-windows-index-management-requested-but-the-elasticsearch-output-is-not-configured-enabled/353310 "2024-02-15T21:42:26Z")

</div>

Hello Filebeat team, I did my due-diligence and did read all the posts with same error as mine but still stuck. I'm following this doc-\> Filebeat quick start: installation and configuration | Filebeat Reference \[8.12\] …

---

## [Bind9 elastic agent integration](https://discuss.elastic.co/t/bind9-elastic-agent-integration/353412)

<div class="topic-metadata">

**Author:** [@Brennen\_Rose](https://discuss.elastic.co/u/Brennen_Rose)\
**Replies:** 0\
**Last updated:** [February 15, 2024, 9:16pm UTC](https://discuss.elastic.co/t/bind9-elastic-agent-integration/353412 "2024-02-15T21:16:31Z")

</div>

Hi there - we have setup a custom log ingestion pipeline from our DNS server running Bind. We had have an existing fleet agent running on that server, so we opted to add a custom pipeline with a grok for Bind9 logs. I am…

---

## [Exclude field from request if it is empty](https://discuss.elastic.co/t/exclude-field-from-request-if-it-is-empty/353410)

<div class="topic-metadata">

**Author:** [@rijexe9501](https://discuss.elastic.co/u/rijexe9501)\
**Replies:** 0\
**Last updated:** [February 15, 2024, 8:57pm UTC](https://discuss.elastic.co/t/exclude-field-from-request-if-it-is-empty/353410 "2024-02-15T20:57:21Z")

</div>

Hi all. Please tell me, I have a request like this (request 1) and if field2 in it is empty, then I want to exclude it from the selection so that a request like this will be executed (request 2). How can I do this? Requ…

---

## [How to search with correct stemming?](https://discuss.elastic.co/t/how-to-search-with-correct-stemming/353388)

<div class="topic-metadata">

**Author:** [@Marco\_Solari](https://discuss.elastic.co/u/Marco_Solari)\
**Replies:** 2\
**Last updated:** [February 15, 2024, 8:27pm UTC](https://discuss.elastic.co/t/how-to-search-with-correct-stemming/353388 "2024-02-15T20:27:10Z")

</div>

Sorry, I'm really new to elasticsearch... I'm trying basic functionalities... I created my first index (to be used for italian language): PUT index\_it { "settings": { "analysis": { "filter": { "ita…

---

## [In responsive mode when i select some filter. The filter automatically closes withoutIn responsive mode, when I select a filter. The filter closes automatically without me clicking Save Filter. clicking on save filter](https://discuss.elastic.co/t/in-responsive-mode-when-i-select-some-filter-the-filter-automatically-closes-withoutin-responsive-mode-when-i-select-a-filter-the-filter-closes-automatically-without-me-clicking-save-filter-clicking-on-save-filter/353148)

<div class="topic-metadata">

**Author:** [@Deshant\_Pandit](https://discuss.elastic.co/u/Deshant_Pandit)\
**Replies:** 8\
**Last updated:** [February 15, 2024, 2:17pm UTC](https://discuss.elastic.co/t/in-responsive-mode-when-i-select-some-filter-the-filter-automatically-closes-withoutin-responsive-mode-when-i-select-a-filter-the-filter-closes-automatically-without-me-clicking-save-filter-clicking-on-save-filter/353148 "2024-02-15T14:17:14Z")

</div>

I want to select filters and until I click on save filter, the product screen should not be visible. I am using useNextRouting also.

---

## [Logstash S3 output plugin fails to upload txt files in S3](https://discuss.elastic.co/t/logstash-s3-output-plugin-fails-to-upload-txt-files-in-s3/353352)

<div class="topic-metadata">

**Author:** [@Aniket\_Chakrabarty](https://discuss.elastic.co/u/Aniket_Chakrabarty)\
**Replies:** 6\
**Last updated:** [February 15, 2024, 5:38pm UTC](https://discuss.elastic.co/t/logstash-s3-output-plugin-fails-to-upload-txt-files-in-s3/353352 "2024-02-15T17:38:25Z")

</div>

Hi, We have tried to upload a txt file through logstash s3 output plugin but having issues it says: Could not find log4j2 configuration at path /usr/share/logstash/config/log4j2.properties. Using default config which l…

---

## [100% io utilization after migrating to XFS from EXT4](https://discuss.elastic.co/t/100-io-utilization-after-migrating-to-xfs-from-ext4/353404)

<div class="topic-metadata">

**Author:** [@Brandon\_Kauffman](https://discuss.elastic.co/u/Brandon_Kauffman)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 5:36pm UTC](https://discuss.elastic.co/t/100-io-utilization-after-migrating-to-xfs-from-ext4/353404 "2024-02-15T17:36:36Z")

</div>

We recently switched from EXT4 to XFS in an upgrade from rhel7 to 9. Both were using LVM and RAID-0. We noticed that IO utilization stays near 100% Before it was near 30% That being said, disk performance seems to …

---

## [How to split one line document into several documents using logstash?](https://discuss.elastic.co/t/how-to-split-one-line-document-into-several-documents-using-logstash/353394)

<div class="topic-metadata">

**Author:** [@jimmyb](https://discuss.elastic.co/u/jimmyb)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 5:04pm UTC](https://discuss.elastic.co/t/how-to-split-one-line-document-into-several-documents-using-logstash/353394 "2024-02-15T17:04:35Z")

</div>

Hello All, First time poster here. I have a document coming into logstash which is just one field that references different logs however it has come into elastic as just one line. For example the string within the "me…

---

## [How to handle special characters (hex encoded) in logstash mutate or grok](https://discuss.elastic.co/t/how-to-handle-special-characters-hex-encoded-in-logstash-mutate-or-grok/352437)

<div class="topic-metadata">

**Author:** [@Johnson\_will](https://discuss.elastic.co/u/Johnson_will)\
**Replies:** 6\
**Last updated:** [February 15, 2024, 4:59pm UTC](https://discuss.elastic.co/t/how-to-handle-special-characters-hex-encoded-in-logstash-mutate-or-grok/352437 "2024-02-15T16:59:11Z")

</div>

� This is the special character, I am on logstash7.17.10, It seems like it is able to parse on the greater version of logstash I am using mutate to remove the special character from message filter{ # mutate { gsub…

---

## [Elasticsearch Alerts Timing Edge Case](https://discuss.elastic.co/t/elasticsearch-alerts-timing-edge-case/353400)

<div class="topic-metadata">

**Author:** [@spatel68](https://discuss.elastic.co/u/spatel68)\
**Replies:** 0\
**Last updated:** [February 15, 2024, 4:45pm UTC](https://discuss.elastic.co/t/elasticsearch-alerts-timing-edge-case/353400 "2024-02-15T16:45:10Z")

</div>

We’re currently using Elasticsearch Alerts to get notified for the number of documents that were ingested each minute. The alert runs on an interval of 1m. We were concerned about timing edge cases since this could lead …

---

## [Filestream Autodiscover Kubernetes duplication error logs being generated](https://discuss.elastic.co/t/filestream-autodiscover-kubernetes-duplication-error-logs-being-generated/353313)

<div class="topic-metadata">

**Author:** [@kbujold\_wr](https://discuss.elastic.co/u/kbujold_wr)\
**Replies:** 5\
**Last updated:** [February 15, 2024, 4:30pm UTC](https://discuss.elastic.co/t/filestream-autodiscover-kubernetes-duplication-error-logs-being-generated/353313 "2024-02-15T16:30:50Z")

</div>

Hi We are using ELK 8.11.1 we are seeing these types of errors logs being generated from filebeat. filestream input with ID \<\> already exists, this will lead to data duplication, please use a different ID. Metrics coll…

---

## [Problems with a table in Dashboard](https://discuss.elastic.co/t/problems-with-a-table-in-dashboard/353376)

<div class="topic-metadata">

**Author:** [@SamuelSMendes](https://discuss.elastic.co/u/SamuelSMendes)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 4:15pm UTC](https://discuss.elastic.co/t/problems-with-a-table-in-dashboard/353376 "2024-02-15T16:15:32Z")

</div>

I have a dashboard which will be used as a way to extract some data via CSV. But I've reached a problem in which there are too many buckets to load and so it reaches an error making impossible to work. I would like to…

---

## [How to plot over time the sum of iot values using last value rather than the cumulative sum](https://discuss.elastic.co/t/how-to-plot-over-time-the-sum-of-iot-values-using-last-value-rather-than-the-cumulative-sum/353286)

<div class="topic-metadata">

**Author:** [@Julien\_Revol](https://discuss.elastic.co/u/Julien_Revol)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 4:01pm UTC](https://discuss.elastic.co/t/how-to-plot-over-time-the-sum-of-iot-values-using-last-value-rather-than-the-cumulative-sum/353286 "2024-02-15T16:01:36Z")

</div>

I have a simple CSV sample like that and i want to see the evolution of the sum, breaked down by de last value date evse power 2024-02-12T10:00:00 evse\_1 2 2024-02-12T11:00:00 evse\_1 4 2024-02-12T12:00:00 evse\_1 6 2024-…

---

## [Proxy based authentication documentation](https://discuss.elastic.co/t/proxy-based-authentication-documentation/352969)

<div class="topic-metadata">

**Author:** [@data\_smith](https://discuss.elastic.co/u/data_smith)\
**Replies:** 0\
**Last updated:** [February 9, 2024, 7:20pm UTC](https://discuss.elastic.co/t/proxy-based-authentication-documentation/352969 "2024-02-09T19:20:55Z")

</div>

Where can I find documentation on setting up proxy based authentication? I didn't see anything here:

---

## [Transposing Rows to Columns in Kibana Data Table Visualization](https://discuss.elastic.co/t/transposing-rows-to-columns-in-kibana-data-table-visualization/352918)

<div class="topic-metadata">

**Author:** [@abhinay\_nalla](https://discuss.elastic.co/u/abhinay_nalla)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 3:48pm UTC](https://discuss.elastic.co/t/transposing-rows-to-columns-in-kibana-data-table-visualization/352918 "2024-02-15T15:48:17Z")

</div>

Hello Kibana community, I am currently working on visualizing data from my MS Defender AV logs in Kibana, and I'm facing a challenge in presenting the data in the desired format. I have data in the following structure: …

---

## [How can I increase React App Search UI to show more than 10,000 records and 100 pages?](https://discuss.elastic.co/t/how-can-i-increase-react-app-search-ui-to-show-more-than-10-000-records-and-100-pages/353335)

<div class="topic-metadata">

**Author:** [@eliezra236](https://discuss.elastic.co/u/eliezra236)\
**Replies:** 3\
**Last updated:** [February 15, 2024, 2:49pm UTC](https://discuss.elastic.co/t/how-can-i-increase-react-app-search-ui-to-show-more-than-10-000-records-and-100-pages/353335 "2024-02-15T14:49:27Z")

</div>

Hi, I've got an Elastic Search instance with over 10,000, it's about 200,000 records. I tried to use elastic/react-search-ui But at the top it says "Showing 1 - 60 out of 10000", when there are in fact 200,000 records…

---

## [ElasticSearch creating new index is unassigned even though it says that it can allocate](https://discuss.elastic.co/t/elasticsearch-creating-new-index-is-unassigned-even-though-it-says-that-it-can-allocate/353374)

<div class="topic-metadata">

**Author:** [@ChrisWohlert](https://discuss.elastic.co/u/ChrisWohlert)\
**Replies:** 0\
**Last updated:** [February 15, 2024, 1:16pm UTC](https://discuss.elastic.co/t/elasticsearch-creating-new-index-is-unassigned-even-though-it-says-that-it-can-allocate/353374 "2024-02-15T13:16:26Z")

</div>

We have a setup running ECK in AWS running version 8.10.2. Any attempt to create an index results in the shards not being assigned. I can manually assign them, but that is not a solution. GET \_cat/shards?v=true&h=index,…

---

## [Update by query in ES with option conflicts=proceed](https://discuss.elastic.co/t/update-by-query-in-es-with-option-conflicts-proceed/353169)

<div class="topic-metadata">

**Author:** [@sdv](https://discuss.elastic.co/u/sdv)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 12:58pm UTC](https://discuss.elastic.co/t/update-by-query-in-es-with-option-conflicts-proceed/353169 "2024-02-15T12:58:54Z")

</div>

Hi Team, I have below two questions for 'update\_by\_query' API with option 'conflicts=proceed'. Basically if we allow processing documents with 'conflicts=proceed' option and still have a retry based on 'VersionConfli…

---

## [Can I create a URL link for each data view on the Discover page?](https://discuss.elastic.co/t/can-i-create-a-url-link-for-each-data-view-on-the-discover-page/353222)

<div class="topic-metadata">

**Author:** [@its-ogawa](https://discuss.elastic.co/u/its-ogawa)\
**Replies:** 8\
**Last updated:** [February 15, 2024, 12:52pm UTC](https://discuss.elastic.co/t/can-i-create-a-url-link-for-each-data-view-on-the-discover-page/353222 "2024-02-15T12:52:08Z")

</div>

I have multiple data views maintained in Kibana's Discover. I am happy to switch between data views from the UI on Discover and see the contents of each data view, but I noticed that the URL does not contain any informa…

---

## [Netflow beats not completing index'ing resulting in ILM not deleting last data indice of the day](https://discuss.elastic.co/t/netflow-beats-not-completing-indexing-resulting-in-ilm-not-deleting-last-data-indice-of-the-day/352851)

<div class="topic-metadata">

**Author:** [@eddie4](https://discuss.elastic.co/u/eddie4)\
**Replies:** 1\
**Last updated:** [February 15, 2024, 12:49pm UTC](https://discuss.elastic.co/t/netflow-beats-not-completing-indexing-resulting-in-ilm-not-deleting-last-data-indice-of-the-day/352851 "2024-02-15T12:49:42Z")

</div>

Hello, We are running filebeat's with netflow extention to keep track of data. We are running into the issue that the last incomplete indice is not completed/finished and there for never deleted by ILM. This results in…

[Previous page](https://discuss.elastic.co/latest.md?page=398)

[Next page](https://discuss.elastic.co/latest.md?page=400)
