# Latest

**URL:** https://discuss.elastic.co/latest.md?page=564

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 565

---

## [KQL SearchBar not visible](https://discuss.elastic.co/t/kql-searchbar-not-visible/341482)

<div class="topic-metadata">

**Author:** [@Farah\_Bhr](https://discuss.elastic.co/u/Farah_Bhr)\
**Replies:** 0\
**Last updated:** [August 23, 2023, 1:33pm UTC](https://discuss.elastic.co/t/kql-searchbar-not-visible/341482 "2023-08-23T13:33:16Z")

</div>

Hello, I am developing a customized kibana plugin, I want to visualize this KQL Searchbar with the filters and without the time range I tried this \<TopNavMenu appName={PLUGIN\_ID} showSearchBar={true} …

---

## [Logs Pulling Architecture](https://discuss.elastic.co/t/logs-pulling-architecture/341438)

<div class="topic-metadata">

**Author:** [@Raz\_Maabari](https://discuss.elastic.co/u/Raz_Maabari)\
**Replies:** 1\
**Last updated:** [August 23, 2023, 1:10pm UTC](https://discuss.elastic.co/t/logs-pulling-architecture/341438 "2023-08-23T13:10:00Z")

</div>

Filebeat uses a "push" architecture, sending logs to logstash or elastic. Is there a feature or product that would enable elastic to receive hosts' logs using a "pull" architecture? In my setup, I have network connectiv…

---

## [Security exception for remote cluster calls](https://discuss.elastic.co/t/security-exception-for-remote-cluster-calls/341395)

<div class="topic-metadata">

**Author:** [@darshanypatel](https://discuss.elastic.co/u/darshanypatel)\
**Replies:** 2\
**Last updated:** [August 23, 2023, 12:07pm UTC](https://discuss.elastic.co/t/security-exception-for-remote-cluster-calls/341395 "2023-08-23T12:07:41Z")

</div>

I have a local & a remote cluster running on the same host (localhost) to be used by the integration tests. It is basically a sidecar container running ES. These tests were passing for ES version 7.16.2, but when I tried…

---

## [Insert data into a field where data contains some text between dollar and flower brackets](https://discuss.elastic.co/t/insert-data-into-a-field-where-data-contains-some-text-between-dollar-and-flower-brackets/341444)

<div class="topic-metadata">

**Author:** [@Madhuri\_Desai](https://discuss.elastic.co/u/Madhuri_Desai)\
**Replies:** 1\
**Last updated:** [August 23, 2023, 10:57am UTC](https://discuss.elastic.co/t/insert-data-into-a-field-where-data-contains-some-text-between-dollar-and-flower-brackets/341444 "2023-08-23T10:57:11Z")

</div>

I need help with an issue that I am facing while inserting data into one of elastic index. Im trying to insert data from a log file into elastic and that file contains some text within dollar and flower brackets. Examp…

---

## [How to disable client certificate checks?](https://discuss.elastic.co/t/how-to-disable-client-certificate-checks/341365)

<div class="topic-metadata">

**Author:** [@nick\_harper1](https://discuss.elastic.co/u/nick_harper1)\
**Replies:** 3\
**Last updated:** [August 23, 2023, 10:54am UTC](https://discuss.elastic.co/t/how-to-disable-client-certificate-checks/341365 "2023-08-23T10:54:39Z")

</div>

Is it possible to disable the server from checking the clients? Even when I have this set: xpack.security.http.ssl.client\_authentication: none When I try to import anything using a script I get this: at java.lang.Thr…

---

## [Elastic Uptime - Best Practices](https://discuss.elastic.co/t/elastic-uptime-best-practices/340907)

<div class="topic-metadata">

**Author:** [@serkol](https://discuss.elastic.co/u/serkol)\
**Replies:** 3\
**Last updated:** [August 23, 2023, 10:47am UTC](https://discuss.elastic.co/t/elastic-uptime-best-practices/340907 "2023-08-23T10:47:56Z")

</div>

Hello Dear Community, I'm planning to set up Elastic Uptime in three different locations to monitor the response times of services. The goal is to track how the response times of services in our data centers change ove…

---

## [Improve Snapshot/Backup capabilities for Air Gapped deployments via direct downloads or allowing individuals to push snapshots to repositories such as GitLab, Nexus or Artifactory](https://discuss.elastic.co/t/improve-snapshot-backup-capabilities-for-air-gapped-deployments-via-direct-downloads-or-allowing-individuals-to-push-snapshots-to-repositories-such-as-gitlab-nexus-or-artifactory/340599)

<div class="topic-metadata">

**Author:** [@sheldon.mcclung](https://discuss.elastic.co/u/sheldon.mcclung)\
**Replies:** 4\
**Last updated:** [August 23, 2023, 10:47am UTC](https://discuss.elastic.co/t/improve-snapshot-backup-capabilities-for-air-gapped-deployments-via-direct-downloads-or-allowing-individuals-to-push-snapshots-to-repositories-such-as-gitlab-nexus-or-artifactory/340599 "2023-08-23T10:47:09Z")

</div>

The below image shows the docs with the current snapshot repository options. For an environment that is air gapped, there are not many options available as far as registries to backup the elastic data. I propose that…

---

## [Elastic APM server errors 502](https://discuss.elastic.co/t/elastic-apm-server-errors-502/340714)

<div class="topic-metadata">

**Author:** [@lalitprasanth](https://discuss.elastic.co/u/lalitprasanth)\
**Replies:** 13\
**Last updated:** [August 23, 2023, 10:28am UTC](https://discuss.elastic.co/t/elastic-apm-server-errors-502/340714 "2023-08-23T10:28:12Z")

</div>

Kibana version: 8.8.1 Elasticsearch version: 8.8.1 APM Server version: 8.8.1 APM Agent language and version: NodeJs Agent elastic-apm-node": "^3.47.0 Configuration: const apm = require('elastic-apm-node').start({ …

---

## [Nested Aggregation not returning document count](https://discuss.elastic.co/t/nested-aggregation-not-returning-document-count/341454)

<div class="topic-metadata">

**Author:** [@Raju\_Yadav](https://discuss.elastic.co/u/Raju_Yadav)\
**Replies:** 0\
**Last updated:** [August 23, 2023, 9:49am UTC](https://discuss.elastic.co/t/nested-aggregation-not-returning-document-count/341454 "2023-08-23T09:49:56Z")

</div>

i have a product document and that product is published into various eCommerce website like amazon , flipkart as shown in location field. The product published is a nested field in Elasticsearch. now i want to aggregate …

---

## [Problem with accessing elastic from Hetzner](https://discuss.elastic.co/t/problem-with-accessing-elastic-from-hetzner/341446)

<div class="topic-metadata">

**Author:** [@scolak](https://discuss.elastic.co/u/scolak)\
**Replies:** 1\
**Last updated:** [August 23, 2023, 9:44am UTC](https://discuss.elastic.co/t/problem-with-accessing-elastic-from-hetzner/341446 "2023-08-23T09:44:30Z")

</div>

Hi, I have an issue with accessing elastic from Hetzner Finland servers. Whenever I try update or install I get 403 Forbidden. Can you check if the IP range si blocked (95.217.198.0/24)? Thank you

---

## [Why is fast bulk than single indexing in elasticsearch](https://discuss.elastic.co/t/why-is-fast-bulk-than-single-indexing-in-elasticsearch/341339)

<div class="topic-metadata">

**Author:** [@slowup](https://discuss.elastic.co/u/slowup)\
**Replies:** 11\
**Last updated:** [August 23, 2023, 9:42am UTC](https://discuss.elastic.co/t/why-is-fast-bulk-than-single-indexing-in-elasticsearch/341339 "2023-08-23T09:42:00Z")

</div>

I wonder why bulk indexing is faster than single indexing. I'm curious from the point of view of elasticsearch, other than being connected and closed and network communication problems. Based on the default refresh tim…

---

## [Runtime Fields](https://discuss.elastic.co/t/runtime-fields/341270)

<div class="topic-metadata">

**Author:** [@MOHIT\_SHARMA4](https://discuss.elastic.co/u/MOHIT_SHARMA4)\
**Replies:** 5\
**Last updated:** [August 23, 2023, 9:37am UTC](https://discuss.elastic.co/t/runtime-fields/341270 "2023-08-23T09:37:14Z")

</div>

Hey, I wanted to know what is the difference between defining runtime\_field in mapping v/s and doing so in the query itself. For this, I tried running the following requests to observe if there occurs any changes in int…

---

## [Unable to change bar width in a canvas when x-axis is with timestamp](https://discuss.elastic.co/t/unable-to-change-bar-width-in-a-canvas-when-x-axis-is-with-timestamp/341372)

<div class="topic-metadata">

**Author:** [@KLM](https://discuss.elastic.co/u/KLM)\
**Replies:** 2\
**Last updated:** [August 23, 2023, 9:14am UTC](https://discuss.elastic.co/t/unable-to-change-bar-width-in-a-canvas-when-x-axis-is-with-timestamp/341372 "2023-08-23T09:14:51Z")

</div>

It is not changing the bar width of a bar chart when x-axis show time. follows the code used to generate the graph filters | essql query="SELECT HISTOGRAM("@timestamp", INTERVAL 10 MINUTES) as timestamp, count(\*) …

---

## [Indices are not generating through logstash to see the logs](https://discuss.elastic.co/t/indices-are-not-generating-through-logstash-to-see-the-logs/341394)

<div class="topic-metadata">

**Author:** [@vikascateina](https://discuss.elastic.co/u/vikascateina)\
**Replies:** 0\
**Last updated:** [August 22, 2023, 4:26pm UTC](https://discuss.elastic.co/t/indices-are-not-generating-through-logstash-to-see-the-logs/341394 "2023-08-22T16:26:34Z")

</div>

Hi, I have implemented logstash but in my index management I am not able to see Indices of logstash but Ingest pipeline is created as shown in image. I want to push my mule application logs to logstash.How can I do …

---

## [Font Size and Null Values](https://discuss.elastic.co/t/font-size-and-null-values/340940)

<div class="topic-metadata">

**Author:** [@bishnoib](https://discuss.elastic.co/u/bishnoib)\
**Replies:** 3\
**Last updated:** [August 23, 2023, 8:05am UTC](https://discuss.elastic.co/t/font-size-and-null-values/340940 "2023-08-23T08:05:49Z")

</div>

Hi i am using Kibana 8.9.0 and I am creating a vertical bar chart with three categories. I wanted to change the font size of the labels and some of the columns have null/empty values I want to show them in the bar but th…

---

## [How to configure loadbalancer to accsess kibana installed on bare metal kubernetes with helm chart](https://discuss.elastic.co/t/how-to-configure-loadbalancer-to-accsess-kibana-installed-on-bare-metal-kubernetes-with-helm-chart/341439)

<div class="topic-metadata">

**Author:** [@alex\_petrov](https://discuss.elastic.co/u/alex_petrov)\
**Replies:** 0\
**Last updated:** [August 23, 2023, 7:50am UTC](https://discuss.elastic.co/t/how-to-configure-loadbalancer-to-accsess-kibana-installed-on-bare-metal-kubernetes-with-helm-chart/341439 "2023-08-23T07:50:42Z")

</div>

here is my helm chart for kibana with ssl and tls enabled.I have access to port 5601 with assined cluter ip (i have telnet throw port 5601)but not access throw loadbalancer(with assigned ip) but other apps working proper…

---

## [ROTATE ML INDEXES](https://discuss.elastic.co/t/rotate-ml-indexes/339286)

<div class="topic-metadata">

**Author:** [@Daniel\_Lopez](https://discuss.elastic.co/u/Daniel_Lopez)\
**Replies:** 2\
**Last updated:** [August 23, 2023, 7:02am UTC](https://discuss.elastic.co/t/rotate-ml-indexes/339286 "2023-08-23T07:02:43Z")

</div>

Hi to everyone! I was trying to apply an ILM to ML Job, but I couldn't found nothing related with ilm in machines learning job configuration Does someone how to do it?

---

## [Can't get the logs of process.name field](https://discuss.elastic.co/t/cant-get-the-logs-of-process-name-field/341431)

<div class="topic-metadata">

**Author:** [@Cruz](https://discuss.elastic.co/u/Cruz)\
**Replies:** 1\
**Last updated:** [August 23, 2023, 6:38am UTC](https://discuss.elastic.co/t/cant-get-the-logs-of-process-name-field/341431 "2023-08-23T06:38:58Z")

</div>

Hello, can someone tell me what is wrong why I can't get the logs on field:process.name ? I just following the instruction here https://www.elastic.co/guide/en/beats/filebeat/master/filebeat-module-system.html and …

---

## [Logstash runs forever but no index got created](https://discuss.elastic.co/t/logstash-runs-forever-but-no-index-got-created/341428)

<div class="topic-metadata">

**Author:** [@uma\_parvathy](https://discuss.elastic.co/u/uma_parvathy)\
**Replies:** 0\
**Last updated:** [August 23, 2023, 6:13am UTC](https://discuss.elastic.co/t/logstash-runs-forever-but-no-index-got-created/341428 "2023-08-23T06:13:30Z")

</div>

Hi All, I'm using the below configuration in logstash to populate the data on Elasticsearch 7.17.11 from logstash 7.17.12. It shows pipeline started but no index got created . input { jdbc { jdbc\_driver\_li…

---

## [Huge Segments filling up heap](https://discuss.elastic.co/t/huge-segments-filling-up-heap/341317)

<div class="topic-metadata">

**Author:** [@sreekanth\_makam](https://discuss.elastic.co/u/sreekanth_makam)\
**Replies:** 3\
**Last updated:** [August 23, 2023, 5:25am UTC](https://discuss.elastic.co/t/huge-segments-filling-up-heap/341317 "2023-08-23T05:25:34Z")

</div>

In our cluster, We have 6 node each with 30GB heap. We have around 30 indices each with few Millions of docs. Index structure is very very small with just 10 fileds. Each index size is hardly 5GB. Issue: After ingestin…

---

## [Stacked bar graph](https://discuss.elastic.co/t/stacked-bar-graph/341203)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 11\
**Last updated:** [August 23, 2023, 4:24am UTC](https://discuss.elastic.co/t/stacked-bar-graph/341203 "2023-08-23T04:24:48Z")

</div>

Hi i am working on a stacked bar graph, As shown in the image, on x axis i have time on y i have sum of bytes and breakdown by service name. so basically in logs in every entry there is a service name, bytes and time…

---

## [Cannot write Filebeat output to Elastic running on Docker Container on my MAC](https://discuss.elastic.co/t/cannot-write-filebeat-output-to-elastic-running-on-docker-container-on-my-mac/339970)

<div class="topic-metadata">

**Author:** [@bigdaddy0918](https://discuss.elastic.co/u/bigdaddy0918)\
**Replies:** 5\
**Last updated:** [August 22, 2023, 11:24pm UTC](https://discuss.elastic.co/t/cannot-write-filebeat-output-to-elastic-running-on-docker-container-on-my-mac/339970 "2023-08-22T23:24:16Z")

</div>

I have created a 3 node Elastic Docker Container using the instructions from Elastic 8.2.3, and upgraded it to 8.7.1. I am able to successfully create objects in the Elastic database, and the docker-compose command succ…

---

## [Metricbeat Perfmon Counters Stop Ingesting](https://discuss.elastic.co/t/metricbeat-perfmon-counters-stop-ingesting/341412)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 0\
**Last updated:** [August 22, 2023, 10:11pm UTC](https://discuss.elastic.co/t/metricbeat-perfmon-counters-stop-ingesting/341412 "2023-08-22T22:11:51Z")

</div>

Hello, Need help understanding why perfmon works but eventually stops working after awhile, Using Elastic Agent - Windows Integration to collect windows perfmon counters, the data comes in but then stops ingesting afte…

---

## [Kibana APM not showing any data for the last two weeks](https://discuss.elastic.co/t/kibana-apm-not-showing-any-data-for-the-last-two-weeks/341291)

<div class="topic-metadata">

**Author:** [@ELLIOTTCABLE](https://discuss.elastic.co/u/ELLIOTTCABLE)\
**Replies:** 7\
**Last updated:** [August 22, 2023, 9:16pm UTC](https://discuss.elastic.co/t/kibana-apm-not-showing-any-data-for-the-last-two-weeks/341291 "2023-08-22T21:16:20Z")

</div>

Kibana version: v8.8.1 Elasticsearch version: v8.8.1 APM Server version: v8.8.0 Browser version: FireFox v116.0.3; Chrome v115.0.5790.170 Original install method (e.g. download page, yum, deb, from source, etc.) and…

---

## [Elasticsearch Interface not loading](https://discuss.elastic.co/t/elasticsearch-interface-not-loading/341399)

<div class="topic-metadata">

**Author:** [@Elk\_huh](https://discuss.elastic.co/u/Elk_huh)\
**Replies:** 1\
**Last updated:** [August 22, 2023, 9:02pm UTC](https://discuss.elastic.co/t/elasticsearch-interface-not-loading/341399 "2023-08-22T21:02:31Z")

</div>

Cluster is green, all nodes are green but yet i cannot open up the interface, it stays as a blank screen, anyone ever run into this ? if I go to the monitoring node, and view the main cluster it loads fine , looks fine

---

## [We couldn't log you in. Please try again - Elastc/Kibana](https://discuss.elastic.co/t/we-couldnt-log-you-in-please-try-again-elastc-kibana/341384)

<div class="topic-metadata">

**Author:** [@Giancarlo\_Huapaya\_Ra](https://discuss.elastic.co/u/Giancarlo_Huapaya_Ra)\
**Replies:** 1\
**Last updated:** [August 22, 2023, 8:39pm UTC](https://discuss.elastic.co/t/we-couldnt-log-you-in-please-try-again-elastc-kibana/341384 "2023-08-22T20:39:21Z")

</div>

Hi, I am trying to log in to my kibana but I get the following message: I have logged in to the server and I get the following error in the log: \[ERROR\]\[plugins.securitySolution.endpoint:user-artifact-packager:1.0.0…

---

## [File beat - handle too big registry file](https://discuss.elastic.co/t/file-beat-handle-too-big-registry-file/340719)

<div class="topic-metadata">

**Author:** [@sean\_kotler](https://discuss.elastic.co/u/sean_kotler)\
**Replies:** 4\
**Last updated:** [August 22, 2023, 8:32pm UTC](https://discuss.elastic.co/t/file-beat-handle-too-big-registry-file/340719 "2023-08-22T20:32:53Z")

</div>

Hi Team, I would like to understand how to handle filebeat too big registry file when logs files needs to be process only once (old logs(logs that are already in my logs folder, before my filebeat service will be in use…

---

## [Which is the best way to work with two different parameters bound to the legend?](https://discuss.elastic.co/t/which-is-the-best-way-to-work-with-two-different-parameters-bound-to-the-legend/341124)

<div class="topic-metadata">

**Author:** [@EdRayQO](https://discuss.elastic.co/u/EdRayQO)\
**Replies:** 2\
**Last updated:** [August 22, 2023, 7:57pm UTC](https://discuss.elastic.co/t/which-is-the-best-way-to-work-with-two-different-parameters-bound-to-the-legend/341124 "2023-08-22T19:57:33Z")

</div>

Hi everyone, I'm reposting this from this discussion in vega-lite's github in case someone can help me. I have a line chart and I want to group the lines using different fields. I've achieved this using a selection para…

---

## [Unable to start logstash - Tried to load a plugin's code, but failed. {:exception=\>#\<LoadError: no such file to load -- logstash/outputs/microsoft-logstash-output-azure-loganalytics](https://discuss.elastic.co/t/unable-to-start-logstash-tried-to-load-a-plugins-code-but-failed-exception-loaderror-no-such-file-to-load-logstash-outputs-microsoft-logstash-output-azure-loganalytics/341403)

<div class="topic-metadata">

**Author:** [@pavank](https://discuss.elastic.co/u/pavank)\
**Replies:** 2\
**Last updated:** [August 22, 2023, 7:15pm UTC](https://discuss.elastic.co/t/unable-to-start-logstash-tried-to-load-a-plugins-code-but-failed-exception-loaderror-no-such-file-to-load-logstash-outputs-microsoft-logstash-output-azure-loganalytics/341403 "2023-08-22T19:15:37Z")

</div>

Hi We are trying to install the microsoft-logstash-output-azure-loganalytics output plugin to send logs to Azure Log analytics, but getting the following error in Logstash start-up and the Logstash service keeps restart…

---

## [Heartbeat - monitor email domains](https://discuss.elastic.co/t/heartbeat-monitor-email-domains/341306)

<div class="topic-metadata">

**Author:** [@Robin020](https://discuss.elastic.co/u/Robin020)\
**Replies:** 4\
**Last updated:** [August 22, 2023, 6:50pm UTC](https://discuss.elastic.co/t/heartbeat-monitor-email-domains/341306 "2023-08-22T18:50:44Z")

</div>

Hello, I am trying to monitor email domains (with heartbeat) for example: - type: tcp name: TLS\_CHECK schedule: '@every 30s' hosts: \["tls://mx.example.com"\] ports: \[25\] Unfortantly this give me the following e…

[Previous page](https://discuss.elastic.co/latest.md?page=563)

[Next page](https://discuss.elastic.co/latest.md?page=565)
