# Latest

**URL:** https://discuss.elastic.co/latest.md?page=549

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 550

---

## [Metricbeat illegal\_argument\_exception error](https://discuss.elastic.co/t/metricbeat-illegal-argument-exception-error/341919)

<div class="topic-metadata">

**Author:** [@wleight](https://discuss.elastic.co/u/wleight)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 6:28pm UTC](https://discuss.elastic.co/t/metricbeat-illegal-argument-exception-error/341919 "2023-09-06T18:28:18Z")

</div>

Hi, I'm trying to set up Metricbeat -\> Elastic (8.9.0 on Ubuntu) using the HTTP JSON metricset, and had no problems at first, but then the output that is retrieved changed and now Metricbeat tells me "Cannot index event…

---

## [Failed to load BPF probes](https://discuss.elastic.co/t/failed-to-load-bpf-probes/339667)

<div class="topic-metadata">

**Author:** [@L1NG](https://discuss.elastic.co/u/L1NG)\
**Replies:** 9\
**Last updated:** [September 6, 2023, 6:28pm UTC](https://discuss.elastic.co/t/failed-to-load-bpf-probes/339667 "2023-09-06T18:28:10Z")

</div>

Hello, does anyone know how to resolve this issue? My kernel version is 6.4.5-1. el7.elrepo.x86\_ 64, the k8s version is v1.23.6, the system is CentOS Linux 7 (Core), and the Docker version is 24.0.5 state: 3 message: 1…

---

## [Anomaly Detection buckets over time?](https://discuss.elastic.co/t/anomaly-detection-buckets-over-time/340836)

<div class="topic-metadata">

**Author:** [@McJava1967](https://discuss.elastic.co/u/McJava1967)\
**Replies:** 2\
**Last updated:** [September 6, 2023, 5:50pm UTC](https://discuss.elastic.co/t/anomaly-detection-buckets-over-time/340836 "2023-09-06T17:50:52Z")

</div>

Hi all. I have an Anomaly Job running with hourly buckets. The values rise and fall once per day. It seems to work great in tracking that pattern, and learning about weekends. But I have a newbie question. When ML i…

---

## [Modify sort mechanism of elasticsearch by counting matched elements in array properties](https://discuss.elastic.co/t/modify-sort-mechanism-of-elasticsearch-by-counting-matched-elements-in-array-properties/342466)

<div class="topic-metadata">

**Author:** [@Ben\_Berizovsky](https://discuss.elastic.co/u/Ben_Berizovsky)\
**Replies:** 0\
**Last updated:** [September 6, 2023, 5:22pm UTC](https://discuss.elastic.co/t/modify-sort-mechanism-of-elasticsearch-by-counting-matched-elements-in-array-properties/342466 "2023-09-06T17:22:56Z")

</div>

Hello, I am trying to achieve a "Best Match" strategy for the results in my platform that uses Elasticsearch 7.15. Basically, there are the rules on how it should work: Every property that you match with a query\_strin…

---

## [How can I ensure that Elastic APM understands that an uploaded source map should be used for error monitoring?](https://discuss.elastic.co/t/how-can-i-ensure-that-elastic-apm-understands-that-an-uploaded-source-map-should-be-used-for-error-monitoring/342412)

<div class="topic-metadata">

**Author:** [@Casper\_Aangeenbrug](https://discuss.elastic.co/u/Casper_Aangeenbrug)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 2:32pm UTC](https://discuss.elastic.co/t/how-can-i-ensure-that-elastic-apm-understands-that-an-uploaded-source-map-should-be-used-for-error-monitoring/342412 "2023-09-06T14:32:10Z")

</div>

I've tried to use source maps for making my errors readable and failed. The versions of my project and the source map are the same. The errors pile in in an unreadable format and my uploaded source maps are unused and un…

---

## [Rally race crushes right after start](https://discuss.elastic.co/t/rally-race-crushes-right-after-start/342254)

<div class="topic-metadata">

**Author:** [@lokinehn](https://discuss.elastic.co/u/lokinehn)\
**Replies:** 10\
**Last updated:** [September 6, 2023, 4:32pm UTC](https://discuss.elastic.co/t/rally-race-crushes-right-after-start/342254 "2023-09-06T16:32:09Z")

</div>

I want to run a benchmark for my existing 8.9.0 cluster (honestly I've already run tests on that cluster earlier, and everything was great) and i get error right after start. Command i execute: esrally race --track=sql…

---

## [\[DOCUMENTATION\] ElasticSearch and Kibana documentation in .pdf/.epub/.azw format?](https://discuss.elastic.co/t/documentation-elasticsearch-and-kibana-documentation-in-pdf-epub-azw-format/341584)

<div class="topic-metadata">

**Author:** [@CodeTradition](https://discuss.elastic.co/u/CodeTradition)\
**Replies:** 2\
**Last updated:** [September 6, 2023, 4:08pm UTC](https://discuss.elastic.co/t/documentation-elasticsearch-and-kibana-documentation-in-pdf-epub-azw-format/341584 "2023-09-06T16:08:42Z")

</div>

Hello guys, This might be a strange request for you but I was wondering if there was a documentation of Elasticsearch and Kibana in .pdf/.epub/.azw format ? I have been using Elasticsearch and Kibana since approximatel…

---

## [Question elk](https://discuss.elastic.co/t/question-elk/342417)

<div class="topic-metadata">

**Author:** [@Farah\_Bannour](https://discuss.elastic.co/u/Farah_Bannour)\
**Replies:** 9\
**Last updated:** [September 6, 2023, 3:47pm UTC](https://discuss.elastic.co/t/question-elk/342417 "2023-09-06T15:47:04Z")

</div>

Bonjour , j'espere que vous avez bien j ai une question ,j ai un champs resultat qui contient les valeur recu,ajourné ,false je voulais supprimer la valeur false du cette champs sans modifier le contenu aussi j ai un c…

---

## [ELK .NET Agent is impacting AZ Commands when application starts Working](https://discuss.elastic.co/t/elk-net-agent-is-impacting-az-commands-when-application-starts-working/342431)

<div class="topic-metadata">

**Author:** [@Vijay.kumarkammar](https://discuss.elastic.co/u/Vijay.kumarkammar)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 3:00pm UTC](https://discuss.elastic.co/t/elk-net-agent-is-impacting-az-commands-when-application-starts-working/342431 "2023-09-06T15:00:51Z")

</div>

HI Team, Kibana version: 8.6.1 Elasticsearch version: 8.6.2 APM Server version: 8.6.1 APM Agent language and version: dotnet Agent version1.21.0 Our Application is deployed in HA with Active - Active mode. we hav…

---

## [Build metric for a status of a rollout](https://discuss.elastic.co/t/build-metric-for-a-status-of-a-rollout/342429)

<div class="topic-metadata">

**Author:** [@jp1992ger](https://discuss.elastic.co/u/jp1992ger)\
**Replies:** 3\
**Last updated:** [September 6, 2023, 2:22pm UTC](https://discuss.elastic.co/t/build-metric-for-a-status-of-a-rollout/342429 "2023-09-06T14:22:16Z")

</div>

Hello everyone, I currently want to build a metric to track a rollout. So what I want to do is check if a field with a specific value does exist once per host, count these host and match them against hosts where this fi…

---

## [Export data from kibana dashboard in CSV/Excel](https://discuss.elastic.co/t/export-data-from-kibana-dashboard-in-csv-excel/342106)

<div class="topic-metadata">

**Author:** [@HiteshSingh](https://discuss.elastic.co/u/HiteshSingh)\
**Replies:** 8\
**Last updated:** [September 6, 2023, 2:21pm UTC](https://discuss.elastic.co/t/export-data-from-kibana-dashboard-in-csv-excel/342106 "2023-09-06T14:21:25Z")

</div>

I want to export the records from the kibana dashboard in CSV/Excel. I have added a table in the dashboard from discover which contains millions of records. I want to download/export these records into CSV/Excel. Let m…

---

## [Kibana visualization problem with metrics-1m index](https://discuss.elastic.co/t/kibana-visualization-problem-with-metrics-1m-index/340668)

<div class="topic-metadata">

**Author:** [@arthurrita](https://discuss.elastic.co/u/arthurrita)\
**Replies:** 0\
**Last updated:** [August 11, 2023, 10:48pm UTC](https://discuss.elastic.co/t/kibana-visualization-problem-with-metrics-1m-index/340668 "2023-08-11T22:48:13Z")

</div>

Hi! This is my first post, sorry if I forgot something. I'm trying to create a visualization with APM default Dataview (that has traces-apm\*, logs-apm\*, and metrics-apm\*). However, I'm facing a problem with the result …

---

## [Kibana7.17.10 log rotation](https://discuss.elastic.co/t/kibana7-17-10-log-rotation/342313)

<div class="topic-metadata">

**Author:** [@Ekta](https://discuss.elastic.co/u/Ekta)\
**Replies:** 7\
**Last updated:** [September 6, 2023, 1:54pm UTC](https://discuss.elastic.co/t/kibana7-17-10-log-rotation/342313 "2023-09-06T13:54:47Z")

</div>

Hi Kibana version-7.17.10 OS - 22.04 ubuntu I want to log rotation daily basis in kibana for kibana log file Can you help here?

---

## [How to customize navigation bar in kibana 8.9 interface?](https://discuss.elastic.co/t/how-to-customize-navigation-bar-in-kibana-8-9-interface/341683)

<div class="topic-metadata">

**Author:** [@Manal\_A](https://discuss.elastic.co/u/Manal_A)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 1:29pm UTC](https://discuss.elastic.co/t/how-to-customize-navigation-bar-in-kibana-8-9-interface/341683 "2023-09-06T13:29:06Z")

</div>

I want to change the color of the navigation bar of kiaban interface . Which file should I modify to change the color, and which parameter should I change?

---

## [I have different indexes that contain different fields I need to aggregate all of them, what i mean i have index1 and index2 in index1 I have ch and in index2 I have ch2 how can i add ch to ch2 with script or script field](https://discuss.elastic.co/t/i-have-different-indexes-that-contain-different-fields-i-need-to-aggregate-all-of-them-what-i-mean-i-have-index1-and-index2-in-index1-i-have-ch-and-in-index2-i-have-ch2-how-can-i-add-ch-to-ch2-with-script-or-script-field/341959)

<div class="topic-metadata">

**Author:** [@ghramalhajyalhajy](https://discuss.elastic.co/u/ghramalhajyalhajy)\
**Replies:** 0\
**Last updated:** [August 30, 2023, 9:05am UTC](https://discuss.elastic.co/t/i-have-different-indexes-that-contain-different-fields-i-need-to-aggregate-all-of-them-what-i-mean-i-have-index1-and-index2-in-index1-i-have-ch-and-in-index2-i-have-ch2-how-can-i-add-ch-to-ch2-with-script-or-script-field/341959 "2023-08-30T09:05:22Z")

</div>

search index PUT index1/\_doc/1 { "foo": "bar" } GET index2/\_search { "query": { "match": { "foo": "bar" } } }

---

## [Authentication Error setting up Eland on Jupyter Notebook](https://discuss.elastic.co/t/authentication-error-setting-up-eland-on-jupyter-notebook/342404)

<div class="topic-metadata">

**Author:** [@xynobob](https://discuss.elastic.co/u/xynobob)\
**Replies:** 3\
**Last updated:** [September 6, 2023, 1:06pm UTC](https://discuss.elastic.co/t/authentication-error-setting-up-eland-on-jupyter-notebook/342404 "2023-09-06T13:06:56Z")

</div>

Hi, I am trying to use Eland on Jupyter Notebook. Here is what I wrote on Jupyter import eland as ed import pandas as pd import numpy as np from elasticsearch import Elasticsearch def json(x): import json print…

---

## [Dev Tool response export file](https://discuss.elastic.co/t/dev-tool-response-export-file/342414)

<div class="topic-metadata">

**Author:** [@Mr.Unal](https://discuss.elastic.co/u/Mr.Unal)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 12:59pm UTC](https://discuss.elastic.co/t/dev-tool-response-export-file/342414 "2023-09-06T12:59:21Z")

</div>

Hello I have a lot table in kibana dashboard weekly. I want to get these figures in my excel file with automatically. I tried to use dev tools console but I couldn't export csv format response. Is there any method for …

---

## [PDF document ingestion into elastic](https://discuss.elastic.co/t/pdf-document-ingestion-into-elastic/342443)

<div class="topic-metadata">

**Author:** [@Ajay\_Kumar.S](https://discuss.elastic.co/u/Ajay_Kumar.S)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 12:44pm UTC](https://discuss.elastic.co/t/pdf-document-ingestion-into-elastic/342443 "2023-09-06T12:44:11Z")

</div>

Hello community How to import word, pdf documents into elastic??

---

## [Kibana not loading....on domain](https://discuss.elastic.co/t/kibana-not-loading-on-domain/342066)

<div class="topic-metadata">

**Author:** [@Saili\_Bakalkar](https://discuss.elastic.co/u/Saili_Bakalkar)\
**Replies:** 4\
**Last updated:** [September 6, 2023, 12:41pm UTC](https://discuss.elastic.co/t/kibana-not-loading-on-domain/342066 "2023-09-06T12:41:16Z")

</div>

I have my website running on port 8080, and on a separate server there is kibana dashboard which is on port 5601. The server where i have my website has httpd configured in such a way that it has two virtual host for 44…

---

## [Troubleshooting on RUM](https://discuss.elastic.co/t/troubleshooting-on-rum/342436)

<div class="topic-metadata">

**Author:** [@Anjali3](https://discuss.elastic.co/u/Anjali3)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 12:41pm UTC](https://discuss.elastic.co/t/troubleshooting-on-rum/342436 "2023-09-06T12:41:16Z")

</div>

We have configured the RUM monitoring on our application. How can we troubleshoot the issues on RUM. Also, Logs are not reporting . How can we monitor from application end.

---

## [Node connection to cluster is being refused (AWS ECS)](https://discuss.elastic.co/t/node-connection-to-cluster-is-being-refused-aws-ecs/341989)

<div class="topic-metadata">

**Author:** [@stanyzra](https://discuss.elastic.co/u/stanyzra)\
**Replies:** 1\
**Last updated:** [September 6, 2023, 12:20pm UTC](https://discuss.elastic.co/t/node-connection-to-cluster-is-being-refused-aws-ecs/341989 "2023-09-06T12:20:18Z")

</div>

Hello, I'm trying to deploy a dockerized 3 node Elasticsearch (8.9.1) cluster in AWS ECS. The cluster's bootstraping seens to be okay, but when I try to join a node into it, I get a connection refused error. These are …

---

## [How to add processors for eks?](https://discuss.elastic.co/t/how-to-add-processors-for-eks/342441)

<div class="topic-metadata">

**Author:** [@tirelibirefe](https://discuss.elastic.co/u/tirelibirefe)\
**Replies:** 0\
**Last updated:** [September 6, 2023, 12:14pm UTC](https://discuss.elastic.co/t/how-to-add-processors-for-eks/342441 "2023-09-06T12:14:49Z")

</div>

Hello, I have installed ES, Kibana 8.9.1 on EKS 1.27 and struggling with fleet. I would like to add "processors" definition to my Fleet for EKS as described here. add\_fields: target: orchestrator.cluster fields: n…

---

## [Question elk stack](https://discuss.elastic.co/t/question-elk-stack/342411)

<div class="topic-metadata">

**Author:** [@Farah\_Bannour](https://discuss.elastic.co/u/Farah_Bannour)\
**Replies:** 3\
**Last updated:** [September 6, 2023, 12:07pm UTC](https://discuss.elastic.co/t/question-elk-stack/342411 "2023-09-06T12:07:52Z")

</div>

Hello , I HAVE A QUESTION IF ANY ONE khnwo please help me how i drop an empty value in the field elk stack (i have a field resultat contain value recu,ajourné,admis ,false) i wont to drop only the value false but with …

---

## [Mapping file \_settings.json does not exist for elasticsearch version 8 in](https://discuss.elastic.co/t/mapping-file-settings-json-does-not-exist-for-elasticsearch-version-8-in/340908)

<div class="topic-metadata">

**Author:** [@prashant\_chaturvedi](https://discuss.elastic.co/u/prashant_chaturvedi)\
**Replies:** 5\
**Last updated:** [September 6, 2023, 12:00pm UTC](https://discuss.elastic.co/t/mapping-file-settings-json-does-not-exist-for-elasticsearch-version-8-in/340908 "2023-09-06T12:00:25Z")

</div>

I have installed elasticsearch search 8.9.0 and fscrawaler 2.10 -SNAPSHOT which in the document page says that this is test but still i get the error java.lang.IllegalArgumentException: Mapping file \_settings.json does …

---

## [Elasticsearch storage on containers](https://discuss.elastic.co/t/elasticsearch-storage-on-containers/340829)

<div class="topic-metadata">

**Author:** [@anderstr1](https://discuss.elastic.co/u/anderstr1)\
**Replies:** 2\
**Last updated:** [September 6, 2023, 11:33am UTC](https://discuss.elastic.co/t/elasticsearch-storage-on-containers/340829 "2023-09-06T11:33:40Z")

</div>

Our goal is to run Elasticsearch on docker containers. Until now we have only managed to run it properly on an Azure Virtual Machine. Our challenge is regarding storage. When using Elasticsearch, I understand that a typ…

---

## [Haystack Europe, the Search Relevance Conference in Berlin 20th & 21st September, featuring Philipp Krenn on Reciprocal Rank Fusion](https://discuss.elastic.co/t/haystack-europe-the-search-relevance-conference-in-berlin-20th-21st-september-featuring-philipp-krenn-on-reciprocal-rank-fusion/342435)

<div class="topic-metadata">

**Author:** [@flaxsearch](https://discuss.elastic.co/u/flaxsearch)\
**Replies:** 0\
**Last updated:** [September 6, 2023, 10:58am UTC](https://discuss.elastic.co/t/haystack-europe-the-search-relevance-conference-in-berlin-20th-21st-september-featuring-philipp-krenn-on-reciprocal-rank-fusion/342435 "2023-09-06T10:58:28Z")

</div>

Hi all, Haystack Europe is returning to Berlin on September 20th & 21st for two days of amazing presentations about search & retrieval, with Philipp Krenn of Elastic one of our expert speakers! Check out the programme f…

---

## [Configuring a Cluster with public certificates](https://discuss.elastic.co/t/configuring-a-cluster-with-public-certificates/342430)

<div class="topic-metadata">

**Author:** [@RuthGl](https://discuss.elastic.co/u/RuthGl)\
**Replies:** 0\
**Last updated:** [September 6, 2023, 10:38am UTC](https://discuss.elastic.co/t/configuring-a-cluster-with-public-certificates/342430 "2023-09-06T10:38:27Z")

</div>

Hello! How to set up a cluster with public certificates? I have certificates from AlphaSSL with wildcard \*.mydomain.com : root\_ca.crt intermediate.crt mydomain.key mydomain.crt How can I properly configure transpor…

---

## [How to see the list of users who accessed to a particular dashboard in Kibana?](https://discuss.elastic.co/t/how-to-see-the-list-of-users-who-accessed-to-a-particular-dashboard-in-kibana/342324)

<div class="topic-metadata">

**Author:** [@RJG](https://discuss.elastic.co/u/RJG)\
**Replies:** 3\
**Last updated:** [September 6, 2023, 10:28am UTC](https://discuss.elastic.co/t/how-to-see-the-list-of-users-who-accessed-to-a-particular-dashboard-in-kibana/342324 "2023-09-06T10:28:35Z")

</div>

Can we see the list of users and the accessed time for a particular dashboard in Kibana GUI

---

## [How to get the field value from an object](https://discuss.elastic.co/t/how-to-get-the-field-value-from-an-object/342246)

<div class="topic-metadata">

**Author:** [@uma\_parvathy](https://discuss.elastic.co/u/uma_parvathy)\
**Replies:** 3\
**Last updated:** [September 6, 2023, 9:57am UTC](https://discuss.elastic.co/t/how-to-get-the-field-value-from-an-object/342246 "2023-09-06T09:57:43Z")

</div>

i've a case\_number which has a field "task\_id". i need to use that id to get all task details. i tried to get the value , it is empty. please help me out. Here is the Elasticsearch pulled data { "\_index": "logs…

---

## [Elasticsearch has accumulated a lot of pending tasks, and stop indexing](https://discuss.elastic.co/t/elasticsearch-has-accumulated-a-lot-of-pending-tasks-and-stop-indexing/341414)

<div class="topic-metadata">

**Author:** [@ShanYang](https://discuss.elastic.co/u/ShanYang)\
**Replies:** 12\
**Last updated:** [September 6, 2023, 9:16am UTC](https://discuss.elastic.co/t/elasticsearch-has-accumulated-a-lot-of-pending-tasks-and-stop-indexing/341414 "2023-09-06T09:16:53Z")

</div>

Phenomenon: When generating a new index across days, elasticsearch stop indexing. The cluster health show green but with many pending task. Used Get \_tasks?, I saw thousands transport task and hundreds direct task. Clu…

[Previous page](https://discuss.elastic.co/latest.md?page=548)

[Next page](https://discuss.elastic.co/latest.md?page=550)
