# Latest

**URL:** https://discuss.elastic.co/latest.md?page=537

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 538

---

## [I was deploying docker and ran into a problem, unable to access port 3002](https://discuss.elastic.co/t/i-was-deploying-docker-and-ran-into-a-problem-unable-to-access-port-3002/343197)

<div class="topic-metadata">

**Author:** [@qinskysky](https://discuss.elastic.co/u/qinskysky)\
**Replies:** 6\
**Last updated:** [September 19, 2023, 12:18am UTC](https://discuss.elastic.co/t/i-was-deploying-docker-and-ran-into-a-problem-unable-to-access-port-3002/343197 "2023-09-19T00:18:07Z")

</div>

Add the Enterprise Search host URL to the Kibana configuration In the config/kibana.yml file, set enterpriseSearch.host to the URL of the Enterprise Search instance. For example: enterpriseSearch.host: 'http://localhos…

---

## [Combine Elasticsearch/Enterprise Search Ingest Pipeline and Logstash Pipelines](https://discuss.elastic.co/t/combine-elasticsearch-enterprise-search-ingest-pipeline-and-logstash-pipelines/343280)

<div class="topic-metadata">

**Author:** [@sebastianboelling](https://discuss.elastic.co/u/sebastianboelling)\
**Replies:** 2\
**Last updated:** [September 18, 2023, 10:22pm UTC](https://discuss.elastic.co/t/combine-elasticsearch-enterprise-search-ingest-pipeline-and-logstash-pipelines/343280 "2023-09-18T22:22:50Z")

</div>

Hi, does anybody know whether it is possible to call a Logstash pipeline from an Elasticsearch/Enterprise Search Ingest Pipeline ? Best regards Sebastian

---

## [Elasticsearch 8.9.1 / 7.17.13 Security Update](https://discuss.elastic.co/t/elasticsearch-8-9-1-7-17-13-security-update/343297)

<div class="topic-metadata">

**Author:** [@rodrigo\_silva](https://discuss.elastic.co/u/rodrigo_silva)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 8:40pm UTC](https://discuss.elastic.co/t/elasticsearch-8-9-1-7-17-13-security-update/343297 "2023-09-18T20:40:51Z")

</div>

Elasticsearch StackOverflow vulnerability (ESA-2023-14) A flaw was discovered in Elasticsearch, affecting the \_search API that allowed a specially crafted query string to cause a Stack Overflow and ultimately a Denial of…

---

## [Elastic Search on Rocky LInux 9](https://discuss.elastic.co/t/elastic-search-on-rocky-linux-9/343293)

<div class="topic-metadata">

**Author:** [@mcarifio](https://discuss.elastic.co/u/mcarifio)\
**Replies:** 1\
**Last updated:** [September 18, 2023, 8:27pm UTC](https://discuss.elastic.co/t/elastic-search-on-rocky-linux-9/343293 "2023-09-18T20:27:06Z")

</div>

Does anyone have experience running Elastic Search on Rocky Linux 9? The Elastic Search support matrix indicates that RHEL 9 is a supported platform. What's the best way to add a Rocky Linux 9 column? Thanks.

---

## [Can create enrollment-token but no verification code verification code not found](https://discuss.elastic.co/t/can-create-enrollment-token-but-no-verification-code-verification-code-not-found/342952)

<div class="topic-metadata">

**Author:** [@uli67](https://discuss.elastic.co/u/uli67)\
**Replies:** 4\
**Last updated:** [September 18, 2023, 4:23pm UTC](https://discuss.elastic.co/t/can-create-enrollment-token-but-no-verification-code-verification-code-not-found/342952 "2023-09-18T16:23:25Z")

</div>

Hi guys, I am running easticsearch 8.9 as docker container and installed Kibana via dnf package manager. I am able to generate the enrollment code but not the verification code. verification code not found. my elasti…

---

## [Logstash vulnerabilities around ruby-maven-libs](https://discuss.elastic.co/t/logstash-vulnerabilities-around-ruby-maven-libs/343278)

<div class="topic-metadata">

**Author:** [@balakr](https://discuss.elastic.co/u/balakr)\
**Replies:** 2\
**Last updated:** [September 18, 2023, 4:23pm UTC](https://discuss.elastic.co/t/logstash-vulnerabilities-around-ruby-maven-libs/343278 "2023-09-18T16:23:12Z")

</div>

my company is pushing me for fixing vulnerablities in logstash, at this point i am in learning mode. when i looking at the below vulnerablity, does this need ruby-maven-libs upgrade or just guava upgrade Required\_Versi…

---

## [Error installing gems (\> invalid source release: 11)](https://discuss.elastic.co/t/error-installing-gems-invalid-source-release-11/343201)

<div class="topic-metadata">

**Author:** [@balakr](https://discuss.elastic.co/u/balakr)\
**Replies:** 2\
**Last updated:** [September 18, 2023, 3:31pm UTC](https://discuss.elastic.co/t/error-installing-gems-invalid-source-release-11/343201 "2023-09-18T15:31:23Z")

</div>

Task :downloadPreviousJRuby UP-TO-DATE Task :downloadJRuby UP-TO-DATE Download jruby-dist-9.3.10.0-bin.tar.gz Task :benchmark-cli:compileJava FAILED FAILURE: Build failed with an exception. What went wrong: …

---

## [Unable to show span attributes of OTEL span in kibana](https://discuss.elastic.co/t/unable-to-show-span-attributes-of-otel-span-in-kibana/343223)

<div class="topic-metadata">

**Author:** [@Hamad](https://discuss.elastic.co/u/Hamad)\
**Replies:** 6\
**Last updated:** [September 18, 2023, 3:07pm UTC](https://discuss.elastic.co/t/unable-to-show-span-attributes-of-otel-span-in-kibana/343223 "2023-09-18T15:07:11Z")

</div>

I have a nestjs project and i need to trace graphql calls. i am usnig opentelemetry to collect traces and apm server to show them on kibana. The problem i am facing is that all graphql calls are being grouped under same …

---

## [Kibana Space unable to access Observability functions](https://discuss.elastic.co/t/kibana-space-unable-to-access-observability-functions/343275)

<div class="topic-metadata">

**Author:** [@Ryan\_Downey](https://discuss.elastic.co/u/Ryan_Downey)\
**Replies:** 1\
**Last updated:** [September 18, 2023, 3:06pm UTC](https://discuss.elastic.co/t/kibana-space-unable-to-access-observability-functions/343275 "2023-09-18T15:06:13Z")

</div>

Elasticsearch and Kibana 7.17 Support Team, I'm looking to provide access to some of our users via a Space we'll call "autos". All I need this space to do is provide access to two different indices, logs--auto- and lo…

---

## [How to create a custom availability dashboard](https://discuss.elastic.co/t/how-to-create-a-custom-availability-dashboard/342956)

<div class="topic-metadata">

**Author:** [@BenKenobi](https://discuss.elastic.co/u/BenKenobi)\
**Replies:** 7\
**Last updated:** [September 18, 2023, 2:58pm UTC](https://discuss.elastic.co/t/how-to-create-a-custom-availability-dashboard/342956 "2023-09-18T14:58:08Z")

</div>

Hi, how can I create a dashboard containing a similar visualization as in the screenshot below? I was asked to build a dashboard monitoring a service on Windows Server by showing the availability in percentage as seen i…

---

## [Node Elastic APM agent. Transactions missing trace samples, timeline and metadata](https://discuss.elastic.co/t/node-elastic-apm-agent-transactions-missing-trace-samples-timeline-and-metadata/343276)

<div class="topic-metadata">

**Author:** [@Abror\_Abdullaev](https://discuss.elastic.co/u/Abror_Abdullaev)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 2:54pm UTC](https://discuss.elastic.co/t/node-elastic-apm-agent-transactions-missing-trace-samples-timeline-and-metadata/343276 "2023-09-18T14:54:28Z")

</div>

The environment: Kibana: v 8.8.2 APM Agent elastic-apm-node v4.0.0 NetstJs Framework I am starting the agent at the beginning of my application //main.ts import \* as dotenv from 'dotenv'; import \* as apm from 'elas…

---

## [Ironbank Elastic Agent 8.9.0 Issues - tinit, group writeable components](https://discuss.elastic.co/t/ironbank-elastic-agent-8-9-0-issues-tinit-group-writeable-components/343274)

<div class="topic-metadata">

**Author:** [@Eric-Domeier](https://discuss.elastic.co/u/Eric-Domeier)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 2:28pm UTC](https://discuss.elastic.co/t/ironbank-elastic-agent-8-9-0-issues-tinit-group-writeable-components/343274 "2023-09-18T14:28:02Z")

</div>

Hello, Environment information Kubernetes RKE2 Cluster v1.27.3 (DISA STIG Hardened) Ironbank ECK-operator image 2.9.0 I managed to get the agents running and report a "Healthy" status however wanted to post here to m…

---

## [Ingest Github Audit logs with Logstash](https://discuss.elastic.co/t/ingest-github-audit-logs-with-logstash/343266)

<div class="topic-metadata">

**Author:** [@trwillis](https://discuss.elastic.co/u/trwillis)\
**Replies:** 1\
**Last updated:** [September 18, 2023, 1:57pm UTC](https://discuss.elastic.co/t/ingest-github-audit-logs-with-logstash/343266 "2023-09-18T13:57:45Z")

</div>

Has anyone created a successful grok pattern to ingest Github audit logs into ELK? Or does the Github plugin support formatting those logs into ELK?

---

## [Script processor not adding a new field using ingest pipeline](https://discuss.elastic.co/t/script-processor-not-adding-a-new-field-using-ingest-pipeline/343165)

<div class="topic-metadata">

**Author:** [@rubhamra](https://discuss.elastic.co/u/rubhamra)\
**Replies:** 1\
**Last updated:** [September 18, 2023, 1:49pm UTC](https://discuss.elastic.co/t/script-processor-not-adding-a-new-field-using-ingest-pipeline/343165 "2023-09-18T13:49:17Z")

</div>

I am trying to compare values with already data already indexed with some user input values through script processor, script is running successfully but its not creating a new field which actually stores the result. …

---

## [Failed to retrieve shard stats from node \[cRf-MJ\_dTDGEeR-NRfKvAg\]](https://discuss.elastic.co/t/failed-to-retrieve-shard-stats-from-node-crf-mj-dtdgeer-nrfkvag/343269)

<div class="topic-metadata">

**Author:** [@Jobin\_James](https://discuss.elastic.co/u/Jobin_James)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 1:47pm UTC](https://discuss.elastic.co/t/failed-to-retrieve-shard-stats-from-node-crf-mj-dtdgeer-nrfkvag/343269 "2023-09-18T13:47:53Z")

</div>

Can someone help me with this? I have no idea how to fix this. ECK version 2.9 Elasicsearch version 8.9 { "@timestamp":"2023-09-18T13:43:13.838Z", "log.level":"WARN", "message":"failed to retrieve shard stats…

---

## [Elasticsearch alias issue with filtering](https://discuss.elastic.co/t/elasticsearch-alias-issue-with-filtering/343268)

<div class="topic-metadata">

**Author:** [@ricadao](https://discuss.elastic.co/u/ricadao)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 1:44pm UTC](https://discuss.elastic.co/t/elasticsearch-alias-issue-with-filtering/343268 "2023-09-18T13:44:47Z")

</div>

Hi. I have on Index fullData where I store documents from various sources, having one field as docSource. After that, created an alias over this fullData to have a view over source='phone' with the following code: POST …

---

## [400 failed to validate metricset: error validating JSON](https://discuss.elastic.co/t/400-failed-to-validate-metricset-error-validating-json/343226)

<div class="topic-metadata">

**Author:** [@soudhaf](https://discuss.elastic.co/u/soudhaf)\
**Replies:** 1\
**Last updated:** [September 18, 2023, 1:34pm UTC](https://discuss.elastic.co/t/400-failed-to-validate-metricset-error-validating-json/343226 "2023-09-18T13:34:27Z")

</div>

Elasticsearch version: 7.9.2 & tried 7.17.11 APM Server version: 7.10.2 & tried 7.17.11 APM Agent language and version: elastic-apm-agent 1.42.0 Original install method (e.g. download page, yum, deb, from source, e…

---

## [Send logs Citrix to logstash/elasticsearch](https://discuss.elastic.co/t/send-logs-citrix-to-logstash-elasticsearch/343263)

<div class="topic-metadata">

**Author:** [@mulbzh](https://discuss.elastic.co/u/mulbzh)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 1:01pm UTC](https://discuss.elastic.co/t/send-logs-citrix-to-logstash-elasticsearch/343263 "2023-09-18T13:01:52Z")

</div>

Hello and sorry for my bad english :slight\_smile: , I am new in logstash/elasticsearch. I have a server installed by older technician. So, i understand globally how it works but i have one trouble. I send logs from my…

---

## [Delete Older csv reports from Kibana](https://discuss.elastic.co/t/delete-older-csv-reports-from-kibana/343219)

<div class="topic-metadata">

**Author:** [@johnashish](https://discuss.elastic.co/u/johnashish)\
**Replies:** 1\
**Last updated:** [September 18, 2023, 12:53pm UTC](https://discuss.elastic.co/t/delete-older-csv-reports-from-kibana/343219 "2023-09-18T12:53:17Z")

</div>

I want to delete older csv files automatically from reporting section from Kibana. Kibana - 7.17.3 Attached screenshot. The problem is now we have so many older reports if i run any automated script or any query wi…

---

## [Query not working as expected](https://discuss.elastic.co/t/query-not-working-as-expected/343186)

<div class="topic-metadata">

**Author:** [@DWAIPAYAN\_SOM](https://discuss.elastic.co/u/DWAIPAYAN_SOM)\
**Replies:** 4\
**Last updated:** [September 18, 2023, 12:07pm UTC](https://discuss.elastic.co/t/query-not-working-as-expected/343186 "2023-09-18T12:07:48Z")

</div>

The below are my query for selection and rejection. Selection : { "nested": { "path": "somethingnew", "query": { "bool": { "must": \[ { …

---

## [Anomaly detection Population Job](https://discuss.elastic.co/t/anomaly-detection-population-job/342451)

<div class="topic-metadata">

**Author:** [@NamithaJ97](https://discuss.elastic.co/u/NamithaJ97)\
**Replies:** 6\
**Last updated:** [September 18, 2023, 12:07pm UTC](https://discuss.elastic.co/t/anomaly-detection-population-job/342451 "2023-09-18T12:07:39Z")

</div>

country state child\_count a a\_s1 302 a a\_s2 310 a a\_s3 308 a a\_s4 21 b b\_s1 14 b b\_s2 16 b b\_s3 17 b b\_s4 218 I have a population anomaly detecti…

---

## [License Platinuim Vs Entreprise](https://discuss.elastic.co/t/license-platinuim-vs-entreprise/343231)

<div class="topic-metadata">

**Author:** [@Manal\_A](https://discuss.elastic.co/u/Manal_A)\
**Replies:** 3\
**Last updated:** [September 18, 2023, 11:50am UTC](https://discuss.elastic.co/t/license-platinuim-vs-entreprise/343231 "2023-09-18T11:50:18Z")

</div>

In our project, we have three working environments. Currently, we are in the Lab where we conduct our installation and deployment tests for the ELK stack Version 8.8.1, using a set of virtual machines (Elastic Data Node,…

---

## [Is this library subject to US EAR (Encryption and Export administration regulations)?](https://discuss.elastic.co/t/is-this-library-subject-to-us-ear-encryption-and-export-administration-regulations/343211)

<div class="topic-metadata">

**Author:** [@ztest-dev](https://discuss.elastic.co/u/ztest-dev)\
**Replies:** 2\
**Last updated:** [September 18, 2023, 11:00am UTC](https://discuss.elastic.co/t/is-this-library-subject-to-us-ear-encryption-and-export-administration-regulations/343211 "2023-09-18T11:00:02Z")

</div>

Hello everyone, First, thank you so much for developing this open-source software which is powerful and feature-rich but also simple and easy to use. I prepare to use it in my projects. However, I wonder whether this so…

---

## [Enhanced Table Computed Columns can handle null values](https://discuss.elastic.co/t/enhanced-table-computed-columns-can-handle-null-values/343131)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 2\
**Last updated:** [September 18, 2023, 10:41am UTC](https://discuss.elastic.co/t/enhanced-table-computed-columns-can-handle-null-values/343131 "2023-09-18T10:41:03Z")

</div>

Hello @fbaligand , I am using computed columns to show Hyperlink values. The issue I'm facing is that this columns not always contains the value and somethimes the data from backend itself is not available, hence comput…

---

## [Elastic APM dotnet yarp issue](https://discuss.elastic.co/t/elastic-apm-dotnet-yarp-issue/343247)

<div class="topic-metadata">

**Author:** [@tamazbagdavadze](https://discuss.elastic.co/u/tamazbagdavadze)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 10:32am UTC](https://discuss.elastic.co/t/elastic-apm-dotnet-yarp-issue/343247 "2023-09-18T10:32:24Z")

</div>

Kibana version: 8.5.1 Elasticsearch version: 8.5.1 APM Server version: 8.5.1 (amd64), libbeat 8.5.1 \[7cf6f555935def992ecfd9a4693771447cb51431 built 2022-11-09 11:21:18 -0800 -0800\] APM Agent language and version: Elas…

---

## [Node validation exception \[1\] bootstrap checks failed](https://discuss.elastic.co/t/node-validation-exception-1-bootstrap-checks-failed/343239)

<div class="topic-metadata">

**Author:** [@dev008](https://discuss.elastic.co/u/dev008)\
**Replies:** 3\
**Last updated:** [September 18, 2023, 10:30am UTC](https://discuss.elastic.co/t/node-validation-exception-1-bootstrap-checks-failed/343239 "2023-09-18T10:30:01Z")

</div>

Hi Team, I am getting the below error while configuring Elastic clustering on master node. I have gone through documentation still the error persist . Can someone please guide me where am i going wrong. Here are the lo…

---

## [Adjust max\_header\_size because search fails if header exceeds 8kb](https://discuss.elastic.co/t/adjust-max-header-size-because-search-fails-if-header-exceeds-8kb/340458)

<div class="topic-metadata">

**Author:** [@ismaelalt](https://discuss.elastic.co/u/ismaelalt)\
**Replies:** 6\
**Last updated:** [September 18, 2023, 10:29am UTC](https://discuss.elastic.co/t/adjust-max-header-size-because-search-fails-if-header-exceeds-8kb/340458 "2023-09-18T10:29:21Z")

</div>

Hi, Question: Is there a way to adjust the parameter http.max\_header\_size (doc) from Elastic cloud? Context: I am using Elasticsearch through App Search. When I perform a search request with header exceeding 8kb, I …

---

## [Problems with GeoPoint field after switching to Elasticsearch Java API Client](https://discuss.elastic.co/t/problems-with-geopoint-field-after-switching-to-elasticsearch-java-api-client/342739)

<div class="topic-metadata">

**Author:** [@MonikaS](https://discuss.elastic.co/u/MonikaS)\
**Replies:** 2\
**Last updated:** [September 18, 2023, 10:15am UTC](https://discuss.elastic.co/t/problems-with-geopoint-field-after-switching-to-elasticsearch-java-api-client/342739 "2023-09-18T10:15:52Z")

</div>

Hi. I'm trying to switch from RestHighLevelClient to Elasticsearch Java API Client in my Java application, and now it causes some problems with indexing geo\_point fields. Specifically, I get. { "index":{ "\_id"…

---

## [Isolating and restoring the Data node](https://discuss.elastic.co/t/isolating-and-restoring-the-data-node/343244)

<div class="topic-metadata">

**Author:** [@Manal\_A](https://discuss.elastic.co/u/Manal_A)\
**Replies:** 0\
**Last updated:** [September 18, 2023, 9:50am UTC](https://discuss.elastic.co/t/isolating-and-restoring-the-data-node/343244 "2023-09-18T09:50:15Z")

</div>

What is the procedure for isolating and restoring the Data node for version 8.8.1?

---

## [Unable to create elk cluster due to Node validation error](https://discuss.elastic.co/t/unable-to-create-elk-cluster-due-to-node-validation-error/343117)

<div class="topic-metadata">

**Author:** [@Bhakti\_Bhabal](https://discuss.elastic.co/u/Bhakti_Bhabal)\
**Replies:** 4\
**Last updated:** [September 18, 2023, 9:45am UTC](https://discuss.elastic.co/t/unable-to-create-elk-cluster-due-to-node-validation-error/343117 "2023-09-18T09:45:46Z")

</div>

Hello All, I am setting up elastic cluster in my environment. I have setup a master node and i want the elastic to run on the IP address of master node in order to get the clustering working . When i add the below lines…

[Previous page](https://discuss.elastic.co/latest.md?page=536)

[Next page](https://discuss.elastic.co/latest.md?page=538)
