# Latest

**URL:** https://discuss.elastic.co/latest.md?page=483

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 484

---

## [How to integrate SCIM Server (Basic Auth) with SailPoint IIQ?](https://discuss.elastic.co/t/how-to-integrate-scim-server-basic-auth-with-sailpoint-iiq/347185)

<div class="topic-metadata">

**Author:** [@srikanth\_bollu](https://discuss.elastic.co/u/srikanth_bollu)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 4:15am UTC](https://discuss.elastic.co/t/how-to-integrate-scim-server-basic-auth-with-sailpoint-iiq/347185 "2023-11-15T04:15:43Z")

</div>

I am running Okta's Example SCIM (v2.0) Server and I wish to know how to integrate it with SailPoint IIQ. It asks for the Basic Authentication username and password. However, the example app has not authentication config…

---

## [Query logs](https://discuss.elastic.co/t/query-logs/347119)

<div class="topic-metadata">

**Author:** [@VijayIQA](https://discuss.elastic.co/u/VijayIQA)\
**Replies:** 2\
**Last updated:** [November 15, 2023, 3:24am UTC](https://discuss.elastic.co/t/query-logs/347119 "2023-11-15T03:24:21Z")

</div>

Hi Team, I have Elastic Cluster with 2 nodes. it acts as database. with test index how to know or how to monitor query response time.

---

## [How to check bucket size condition and change email action in watcher?](https://discuss.elastic.co/t/how-to-check-bucket-size-condition-and-change-email-action-in-watcher/347183)

<div class="topic-metadata">

**Author:** [@helloworld3112](https://discuss.elastic.co/u/helloworld3112)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 3:27am UTC](https://discuss.elastic.co/t/how-to-check-bucket-size-condition-and-change-email-action-in-watcher/347183 "2023-11-15T03:27:06Z")

</div>

Hello everyone, I have a watcher: { "input": { "search": { "request": { "search\_type": "query\_then\_fetch", "indices": \[ "index-\*" \], "body": { "query": {"…

---

## [Watcher not working (8.10.4)](https://discuss.elastic.co/t/watcher-not-working-8-10-4/347092)

<div class="topic-metadata">

**Author:** [@laripour](https://discuss.elastic.co/u/laripour)\
**Replies:** 1\
**Last updated:** [November 15, 2023, 1:03am UTC](https://discuss.elastic.co/t/watcher-not-working-8-10-4/347092 "2023-11-15T01:03:13Z")

</div>

Hi everyone i have generated new plugin with "node scripts/generate\_plugin" command but kibana (in dev mode with "yarn start" command) does not recognize new changes in server side files. tahnks.

---

## [Error Creating S3 Repository](https://discuss.elastic.co/t/error-creating-s3-repository/347178)

<div class="topic-metadata">

**Author:** [@Ben\_GSP](https://discuss.elastic.co/u/Ben_GSP)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:57pm UTC](https://discuss.elastic.co/t/error-creating-s3-repository/347178 "2023-11-14T23:57:15Z")

</div>

I'm getting the following error when attempting to create a new s3 repository: { "error": { "root\_cause": \[ { "type": "repository\_exception", "reason": "\[s3\_01\] Could not determine repository…

---

## [Query with AND operator across inner hits of a document?](https://discuss.elastic.co/t/query-with-and-operator-across-inner-hits-of-a-document/347175)

<div class="topic-metadata">

**Author:** [@cphramington](https://discuss.elastic.co/u/cphramington)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:40pm UTC](https://discuss.elastic.co/t/query-with-and-operator-across-inner-hits-of-a-document/347175 "2023-11-14T23:40:46Z")

</div>

I'm currently using a query like this to prioritize hits that contain multiple terms from the query string over those that contain fewer. "nested": { "path": "my\_nested\_fie…

---

## [How to set kibana timepicker of the date and hour in the data](https://discuss.elastic.co/t/how-to-set-kibana-timepicker-of-the-date-and-hour-in-the-data/347143)

<div class="topic-metadata">

**Author:** [@Dilpreet](https://discuss.elastic.co/u/Dilpreet)\
**Replies:** 2\
**Last updated:** [November 14, 2023, 11:26pm UTC](https://discuss.elastic.co/t/how-to-set-kibana-timepicker-of-the-date-and-hour-in-the-data/347143 "2023-11-14T23:26:42Z")

</div>

Hello All, I want to set the timepicker in kibana dashboard to the latest date and time. For context : I have data for multiple accounts. Each account runs on a different time in a day. So I want to show the data in da…

---

## [Using Elastic Defend with VPN](https://discuss.elastic.co/t/using-elastic-defend-with-vpn/347174)

<div class="topic-metadata">

**Author:** [@totobarbar](https://discuss.elastic.co/u/totobarbar)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:24pm UTC](https://discuss.elastic.co/t/using-elastic-defend-with-vpn/347174 "2023-11-14T23:24:52Z")

</div>

Hello, I use Elastic-Agent with Wireguard like this: I use a vpn because I don't want to expose my elasticsearch cluster on the internet I configured the Wireguard client to run on a custom network namespace where …

---

## [GrokProcessor unescaped character](https://discuss.elastic.co/t/grokprocessor-unescaped-character/347171)

<div class="topic-metadata">

**Author:** [@gunlomboy](https://discuss.elastic.co/u/gunlomboy)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:12pm UTC](https://discuss.elastic.co/t/grokprocessor-unescaped-character/347171 "2023-11-14T23:12:48Z")

</div>

Hi, Recently my elasticsearch logs are full of these. \[WARN \]\[o.e.i.c.GrokProcessor \] \[node01\] character class has '-' without escape Running 8.8.0, I wouldn't know where to start looking for an unescaped '-'. Any…

---

## [Purchase frequency](https://discuss.elastic.co/t/purchase-frequency/347038)

<div class="topic-metadata">

**Author:** [@J\_Dor](https://discuss.elastic.co/u/J_Dor)\
**Replies:** 1\
**Last updated:** [November 14, 2023, 11:02pm UTC](https://discuss.elastic.co/t/purchase-frequency/347038 "2023-11-14T23:02:45Z")

</div>

Hi, I'm new to Kibana and need help creating a visualization. I have a dashboard with client data and need to know how many clients have made more than one purchase within a set timeframe, using email as the field. Is t…

---

## [Kibana 8.10 not starting and kibana log is not generating](https://discuss.elastic.co/t/kibana-8-10-not-starting-and-kibana-log-is-not-generating/347093)

<div class="topic-metadata">

**Author:** [@BandredK](https://discuss.elastic.co/u/BandredK)\
**Replies:** 1\
**Last updated:** [November 14, 2023, 11:01pm UTC](https://discuss.elastic.co/t/kibana-8-10-not-starting-and-kibana-log-is-not-generating/347093 "2023-11-14T23:01:35Z")

</div>

Hi, I have elasticsearch cluster formed with 3 nodes, cluster is up and running in green state epoch timestamp cluster status node.total node.data shards pri relo init unassign pending\_tasks max\_task\_wait\_time ac…

---

## [Kibana data table visualization repeating the fields](https://discuss.elastic.co/t/kibana-data-table-visualization-repeating-the-fields/347110)

<div class="topic-metadata">

**Author:** [@laale1](https://discuss.elastic.co/u/laale1)\
**Replies:** 1\
**Last updated:** [November 14, 2023, 10:58pm UTC](https://discuss.elastic.co/t/kibana-data-table-visualization-repeating-the-fields/347110 "2023-11-14T22:58:18Z")

</div>

Hello community I'm trying to create data table visualization, but I have an issue of fields are repeating it self when ever new value comes in here is a screen shot of my data table I want to make it like this da…

---

## [Compare 2 run of elastic synthetic monitor runs](https://discuss.elastic.co/t/compare-2-run-of-elastic-synthetic-monitor-runs/345134)

<div class="topic-metadata">

**Author:** [@senyam08](https://discuss.elastic.co/u/senyam08)\
**Replies:** 2\
**Last updated:** [November 14, 2023, 10:08pm UTC](https://discuss.elastic.co/t/compare-2-run-of-elastic-synthetic-monitor-runs/345134 "2023-11-14T22:08:43Z")

</div>

Can we use elastic synthetics to compare 2 different runs and get the difference in performance with waterfall chart to get insight into root cause for load time increase? We got load time trend to identify whether page…

---

## [When will the patch be available for CVE-2023-38552/39331/39332/44487 upgrading nodejs \>= 18.18.2](https://discuss.elastic.co/t/when-will-the-patch-be-available-for-cve-2023-38552-39331-39332-44487-upgrading-nodejs-18-18-2/346356)

<div class="topic-metadata">

**Author:** [@stanislasm](https://discuss.elastic.co/u/stanislasm)\
**Replies:** 8\
**Last updated:** [November 14, 2023, 9:58pm UTC](https://discuss.elastic.co/t/when-will-the-patch-be-available-for-cve-2023-38552-39331-39332-44487-upgrading-nodejs-18-18-2/346356 "2023-11-14T21:58:24Z")

</div>

Hello, When will the fix for CVE-2023-38552/39331/39332/44487 upgrading nodejs \>= 18.18.2 be available in the Kibana 8.10.x version? Thanks

---

## [False positive report](https://discuss.elastic.co/t/false-positive-report/347155)

<div class="topic-metadata">

**Author:** [@armada](https://discuss.elastic.co/u/armada)\
**Replies:** 2\
**Last updated:** [November 14, 2023, 7:46pm UTC](https://discuss.elastic.co/t/false-positive-report/347155 "2023-11-14T19:46:13Z")

</div>

Hi, we followed your advice and forwarded a false positive report to fp\_reports@elastic.co but have not received any response. Pls advise: As a result of this nonsense, Lurkit terminated our service contract and suffere…

---

## [Detection rules: include Kibana visualization in email](https://discuss.elastic.co/t/detection-rules-include-kibana-visualization-in-email/347159)

<div class="topic-metadata">

**Author:** [@cdelgado](https://discuss.elastic.co/u/cdelgado)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 7:20pm UTC](https://discuss.elastic.co/t/detection-rules-include-kibana-visualization-in-email/347159 "2023-11-14T19:20:52Z")

</div>

Hi all, Is there any way to include Kibana visualizations (i.e., from Visualize Library) in the Email action of a Detection Rule? I am looking for different available options to include more complex forms of data on a …

---

## [Default index template](https://discuss.elastic.co/t/default-index-template/347158)

<div class="topic-metadata">

**Author:** [@Milad\_Heydariaan](https://discuss.elastic.co/u/Milad_Heydariaan)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 7:15pm UTC](https://discuss.elastic.co/t/default-index-template/347158 "2023-11-14T19:15:41Z")

</div>

With legacy templates, we used to have a "default template" (with \* pattern and order -10) which sets a few index settings including threshold for slowlogs, number of shard, and number of replicas. Then users could creat…

---

## [Missing JS RUM error stacktraces when transaction is present](https://discuss.elastic.co/t/missing-js-rum-error-stacktraces-when-transaction-is-present/347156)

<div class="topic-metadata">

**Author:** [@BlaiseC](https://discuss.elastic.co/u/BlaiseC)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 7:09pm UTC](https://discuss.elastic.co/t/missing-js-rum-error-stacktraces-when-transaction-is-present/347156 "2023-11-14T19:09:33Z")

</div>

Hi Team, I've been experiencing an issue with error stacktrace visibility for a while now. I am using the latest as for now v8.11.1 deployment version in Elastic Cloud. I do have a JS elastic rum being initialized in …

---

## [Unassigned shards -- and two shards rebalancing](https://discuss.elastic.co/t/unassigned-shards-and-two-shards-rebalancing/346555)

<div class="topic-metadata">

**Author:** [@Russell\_Fulton](https://discuss.elastic.co/u/Russell_Fulton)\
**Replies:** 6\
**Last updated:** [November 14, 2023, 7:00pm UTC](https://discuss.elastic.co/t/unassigned-shards-and-two-shards-rebalancing/346555 "2023-11-14T19:00:24Z")

</div>

My cluster has been stuck in Yellow for a couple of days. There are two shards that are being rebalanced (and have been for days ???) and this is appears to be causing the cluster to refuse to allocate replicas of prima…

---

## [Elasticsearch improvements from version 7.9 to 8.10](https://discuss.elastic.co/t/elasticsearch-improvements-from-version-7-9-to-8-10/347026)

<div class="topic-metadata">

**Author:** [@michele\_crudele](https://discuss.elastic.co/u/michele_crudele)\
**Replies:** 3\
**Last updated:** [November 14, 2023, 6:48pm UTC](https://discuss.elastic.co/t/elasticsearch-improvements-from-version-7-9-to-8-10/347026 "2023-11-14T18:48:28Z")

</div>

Is there a list somewhere of the Elasticsearch significant improvements from 7.9 version to 8.7

---

## [No Http/Kafka transactions captured by APM Java Agent](https://discuss.elastic.co/t/no-http-kafka-transactions-captured-by-apm-java-agent/347042)

<div class="topic-metadata">

**Author:** [@Sunny33](https://discuss.elastic.co/u/Sunny33)\
**Replies:** 3\
**Last updated:** [November 14, 2023, 4:07pm UTC](https://discuss.elastic.co/t/no-http-kafka-transactions-captured-by-apm-java-agent/347042 "2023-11-14T16:07:59Z")

</div>

Hi, we have a Java application, every time we run it, it sends HTTP requests and gets results within a certain time period, and pushes the results to Kafka. We want to trace the HTTP operations and Kafka transactions dur…

---

## [Failed execution of ESQL query and high cpu load](https://discuss.elastic.co/t/failed-execution-of-esql-query-and-high-cpu-load/346992)

<div class="topic-metadata">

**Author:** [@Stefan\_Sabolowitsch](https://discuss.elastic.co/u/Stefan_Sabolowitsch)\
**Replies:** 15\
**Last updated:** [November 14, 2023, 4:04pm UTC](https://discuss.elastic.co/t/failed-execution-of-esql-query-and-high-cpu-load/346992 "2023-11-14T16:04:54Z")

</div>

Hi There, I have a one node cluster here for testing. Hardware Spec: 16 Core // 148GB // 6 SAS 15K Raid0 Everything is running smoothly except for Elastic Security. As soon as i perform an action here, i get Kibana …

---

## [Cannot create datastream under new index template](https://discuss.elastic.co/t/cannot-create-datastream-under-new-index-template/347126)

<div class="topic-metadata">

**Author:** [@Casper\_Thrane](https://discuss.elastic.co/u/Casper_Thrane)\
**Replies:** 5\
**Last updated:** [November 14, 2023, 3:17pm UTC](https://discuss.elastic.co/t/cannot-create-datastream-under-new-index-template/347126 "2023-11-14T15:17:49Z")

</div>

Hi I am using logstash running Kubernetes under ECK. I am ingesting both logs (filebeat) and metrics (metricbeat). Now i want ingest data from heartbeat. I get the following error: \[2023-11-14T13:22:23,598\]\[INFO \]\[logs…

---

## [Restart the Logstash 8.8 configuration without restarting it](https://discuss.elastic.co/t/restart-the-logstash-8-8-configuration-without-restarting-it/347095)

<div class="topic-metadata">

**Author:** [@Manal\_A](https://discuss.elastic.co/u/Manal_A)\
**Replies:** 2\
**Last updated:** [November 14, 2023, 2:34pm UTC](https://discuss.elastic.co/t/restart-the-logstash-8-8-configuration-without-restarting-it/347095 "2023-11-14T14:34:07Z")

</div>

Hello, Is there a way to reload the Logstash 8.8 configuration without restarting it? Thank you

---

## [Using transforms and ingest pipelines on data that changes over time](https://discuss.elastic.co/t/using-transforms-and-ingest-pipelines-on-data-that-changes-over-time/347101)

<div class="topic-metadata">

**Author:** [@pulsy](https://discuss.elastic.co/u/pulsy)\
**Replies:** 5\
**Last updated:** [November 14, 2023, 1:55pm UTC](https://discuss.elastic.co/t/using-transforms-and-ingest-pipelines-on-data-that-changes-over-time/347101 "2023-11-14T13:55:36Z")

</div>

I'm thinking about using elastic transforms together with ingest pipelines to basically create views of mongodb collections that are spread over multiple database servers, so we can efficiently sort and filter by referen…

---

## [Random slow query after some time of idle](https://discuss.elastic.co/t/random-slow-query-after-some-time-of-idle/346783)

<div class="topic-metadata">

**Author:** [@LeoL](https://discuss.elastic.co/u/LeoL)\
**Replies:** 2\
**Last updated:** [November 14, 2023, 1:22pm UTC](https://discuss.elastic.co/t/random-slow-query-after-some-time-of-idle/346783 "2023-11-14T13:22:46Z")

</div>

Hello, I explain our stituation. We have a pod on OpenShift with a .NET application that uses the NEST library to connect to an Elasticsearch node. What happens is that after some idle time, the calls (any call) takes 1…

---

## [Logstash Multiple Output Atomicity](https://discuss.elastic.co/t/logstash-multiple-output-atomicity/347100)

<div class="topic-metadata">

**Author:** [@mile3880](https://discuss.elastic.co/u/mile3880)\
**Replies:** 1\
**Last updated:** [November 14, 2023, 1:14pm UTC](https://discuss.elastic.co/t/logstash-multiple-output-atomicity/347100 "2023-11-14T13:14:48Z")

</div>

Does Logstash guarantee atomicity of multiple output options? For Example, if I set 2 different outputs to Elasticsearch A and B, and when connection to Elasticsearch A is temporarily unstable, can Logstash stop sending…

---

## [Non-existent secret key: elastic-internal-pre-stop](https://discuss.elastic.co/t/non-existent-secret-key-elastic-internal-pre-stop/347122)

<div class="topic-metadata">

**Author:** [@ElSamhaa](https://discuss.elastic.co/u/ElSamhaa)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 12:57pm UTC](https://discuss.elastic.co/t/non-existent-secret-key-elastic-internal-pre-stop/347122 "2023-11-14T12:57:36Z")

</div>

Can someone take a look at this pls? Non-existent secret key: elastic-internal-pre-stop · Issue #7315 · elastic/cloud-on-k8s · GitHub

---

## [No crea nuevo indice](https://discuss.elastic.co/t/no-crea-nuevo-indice/347040)

<div class="topic-metadata">

**Author:** [@marotaal](https://discuss.elastic.co/u/marotaal)\
**Replies:** 3\
**Last updated:** [November 14, 2023, 12:29pm UTC](https://discuss.elastic.co/t/no-crea-nuevo-indice/347040 "2023-11-14T12:29:56Z")

</div>

Hola. Tengo un único nodo elastic donde almaceno los logs para luego tratarlos. Hace unos días me quede sin espacio en el disco duro. He liberado espacio y reiniciado el nodo. Pero no se crean los nuevos índices (que…

---

## [How can find out specific string in elastic](https://discuss.elastic.co/t/how-can-find-out-specific-string-in-elastic/347113)

<div class="topic-metadata">

**Author:** [@baber1223](https://discuss.elastic.co/u/baber1223)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:59am UTC](https://discuss.elastic.co/t/how-can-find-out-specific-string-in-elastic/347113 "2023-11-14T11:59:45Z")

</div>

I am looking for a specific string in my log now how can define it ? because it is finding all words such as "validation" , "field" , "is" , "the" but I want just find specific string My pattern is " the validation is …

[Previous page](https://discuss.elastic.co/latest.md?page=482)

[Next page](https://discuss.elastic.co/latest.md?page=484)
