# Latest

**URL:** https://discuss.elastic.co/latest.md?page=589

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 590

---

## [Filter vector search by similarity value](https://discuss.elastic.co/t/filter-vector-search-by-similarity-value/339654)

<div class="topic-metadata">

**Author:** [@john\_nicolas](https://discuss.elastic.co/u/john_nicolas)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 11:53am UTC](https://discuss.elastic.co/t/filter-vector-search-by-similarity-value/339654 "2023-07-31T11:53:40Z")

</div>

i used in mappings file a dense\_vector for knn "esvector": { "type": "dense\_vector", "dims": 768, "index": true, "similarity": "cosine" }, I want to use a similarity threshold ,…

---

## [Split index into subindexes by dates like 'my-index-yyyy.MM.dd'](https://discuss.elastic.co/t/split-index-into-subindexes-by-dates-like-my-index-yyyy-mm-dd/339330)

<div class="topic-metadata">

**Author:** [@tyro\_plotter](https://discuss.elastic.co/u/tyro_plotter)\
**Replies:** 4\
**Last updated:** [July 31, 2023, 11:49am UTC](https://discuss.elastic.co/t/split-index-into-subindexes-by-dates-like-my-index-yyyy-mm-dd/339330 "2023-07-31T11:49:04Z")

</div>

I am considering two options: Time Series Ingest pipeline (Date index name processor) I am aware that they differ in their intended use, but I am trying to understand what risks there are. As a newbie to the time ser…

---

## [Getting No config files found in path in the cmd](https://discuss.elastic.co/t/getting-no-config-files-found-in-path-in-the-cmd/339684)

<div class="topic-metadata">

**Author:** [@ItsGautam](https://discuss.elastic.co/u/ItsGautam)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 11:23am UTC](https://discuss.elastic.co/t/getting-no-config-files-found-in-path-in-the-cmd/339684 "2023-07-31T11:23:41Z")

</div>

Logstash stopped processing because of an error: (SystemExit) exit in the cmd prompt conf file: input { file { type =\> "logs" path =\> "C:\\elk\\elk-stack" start\_position=\>"beginning" codec =\> multiline { pattern…

---

## [Create a kibana dashboard for user account lockouts](https://discuss.elastic.co/t/create-a-kibana-dashboard-for-user-account-lockouts/339463)

<div class="topic-metadata">

**Author:** [@kibana\_user17](https://discuss.elastic.co/u/kibana_user17)\
**Replies:** 9\
**Last updated:** [July 31, 2023, 11:07am UTC](https://discuss.elastic.co/t/create-a-kibana-dashboard-for-user-account-lockouts/339463 "2023-07-31T11:07:15Z")

</div>

Hi everyone. i'm very new to elasticsearch. Is it possible to create a dashboard in Kibana showing user account lockouts? If so, how? We used winlogbeat and elasticsearch. Appreciate the help..

---

## [Too many fields in an index](https://discuss.elastic.co/t/too-many-fields-in-an-index/339679)

<div class="topic-metadata">

**Author:** [@Jurrien](https://discuss.elastic.co/u/Jurrien)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 10:55am UTC](https://discuss.elastic.co/t/too-many-fields-in-an-index/339679 "2023-07-31T10:55:28Z")

</div>

We have an index with the following structure (see below) So basically, we have our index business\_objects with a link and no. We add objects to this index (doc\_type1, doc\_type2, ....). These objects are linked via no …

---

## [Word count using Logstash Pipeline](https://discuss.elastic.co/t/word-count-using-logstash-pipeline/339678)

<div class="topic-metadata">

**Author:** [@rvadiga](https://discuss.elastic.co/u/rvadiga)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 10:53am UTC](https://discuss.elastic.co/t/word-count-using-logstash-pipeline/339678 "2023-07-31T10:53:13Z")

</div>

Hi Team, I am trying to build and design a logstash pipeline where the count of different words tracked against the timestamp. I need to classify every word based on length of texts in three segments, say words with …

---

## [Support hieroglyphs and symbols](https://discuss.elastic.co/t/support-hieroglyphs-and-symbols/339677)

<div class="topic-metadata">

**Author:** [@viachaslau](https://discuss.elastic.co/u/viachaslau)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 10:45am UTC](https://discuss.elastic.co/t/support-hieroglyphs-and-symbols/339677 "2023-07-31T10:45:39Z")

</div>

What analyzer I should use for support hieroglyphs and symbols. I cant use ICU because It remove symbols.

---

## [Kibana server is not ready yet](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/339618)

<div class="topic-metadata">

**Author:** [@akhilesh\_teeluck](https://discuss.elastic.co/u/akhilesh_teeluck)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 10:37am UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/339618 "2023-07-31T10:37:25Z")

</div>

Dear All, I am using the free version of Elasticsearch and i have installed it on my ubuntu. in the elasticsearch configuration file, i have set the xpack security feature to true. now am having the following error when…

---

## [Apm Configuration with MongoDb Pod Kubernetes](https://discuss.elastic.co/t/apm-configuration-with-mongodb-pod-kubernetes/339432)

<div class="topic-metadata">

**Author:** [@rachit](https://discuss.elastic.co/u/rachit)\
**Replies:** 4\
**Last updated:** [July 31, 2023, 10:14am UTC](https://discuss.elastic.co/t/apm-configuration-with-mongodb-pod-kubernetes/339432 "2023-07-31T10:14:36Z")

</div>

Hi Team, It would be helpful if anyone could help me track MongoDb pods in Kubernetes. The APM server is up and running in the ELK cluster, but the agent needs to be running with MongoDB. If there is any documentation r…

---

## [Getting user id from logstash](https://discuss.elastic.co/t/getting-user-id-from-logstash/339504)

<div class="topic-metadata">

**Author:** [@frh](https://discuss.elastic.co/u/frh)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 10:01am UTC](https://discuss.elastic.co/t/getting-user-id-from-logstash/339504 "2023-07-31T10:01:29Z")

</div>

Hi, I've been trying to get this output in kibana by modifying my logstash, but to no avail. I'm not sure what went wrong. Input: User 'xxxxxx' logged in with concurrent ALM My logstash looks something like this: matc…

---

## [Maximum normal shards open achived](https://discuss.elastic.co/t/maximum-normal-shards-open-achived/339529)

<div class="topic-metadata">

**Author:** [@Patryk\_Ostrowski](https://discuss.elastic.co/u/Patryk_Ostrowski)\
**Replies:** 6\
**Last updated:** [July 31, 2023, 9:10am UTC](https://discuss.elastic.co/t/maximum-normal-shards-open-achived/339529 "2023-07-31T09:10:58Z")

</div>

Hello, I have one node ELK, I know that is not the best solution, but I cannot change that. I put logs to ELK, and every day I have new index for example: alerts-2023-07-23. But after few months of working filebeat showe…

---

## [Getting error when trying to run a filebeat](https://discuss.elastic.co/t/getting-error-when-trying-to-run-a-filebeat/339651)

<div class="topic-metadata">

**Author:** [@rkannan](https://discuss.elastic.co/u/rkannan)\
**Replies:** 3\
**Last updated:** [July 31, 2023, 9:00am UTC](https://discuss.elastic.co/t/getting-error-when-trying-to-run-a-filebeat/339651 "2023-07-31T09:00:36Z")

</div>

Exiting: fileset tomcat/error is configured but doesn't exist

---

## [How to add thousand of objects](https://discuss.elastic.co/t/how-to-add-thousand-of-objects/339124)

<div class="topic-metadata">

**Author:** [@senadk](https://discuss.elastic.co/u/senadk)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 8:46am UTC](https://discuss.elastic.co/t/how-to-add-thousand-of-objects/339124 "2023-07-31T08:46:08Z")

</div>

Hi everyone, Im new to Elastic and i can't find a way to add big data (read 150k SQL rows) at once to my index. Im using postman to execute the endpoints like \_bulk. What i would like is to copy my 150k rows from my S…

---

## [How to run Kibana with Ngxinx?](https://discuss.elastic.co/t/how-to-run-kibana-with-ngxinx/339557)

<div class="topic-metadata">

**Author:** [@Filip\_Drzewiecki](https://discuss.elastic.co/u/Filip_Drzewiecki)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 8:44am UTC](https://discuss.elastic.co/t/how-to-run-kibana-with-ngxinx/339557 "2023-07-31T08:44:03Z")

</div>

Hello, I have my KIbana and Elasticsearch upp and running on AKS but I'm not relying on Elastic Operator, I'm just deploying everything as I would did with docker-compose. My services are up and Kibana is running as Lo…

---

## [Multiple JDBC input for different tables and output into separate indexes](https://discuss.elastic.co/t/multiple-jdbc-input-for-different-tables-and-output-into-separate-indexes/339596)

<div class="topic-metadata">

**Author:** [@Youdeep](https://discuss.elastic.co/u/Youdeep)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 7:58am UTC](https://discuss.elastic.co/t/multiple-jdbc-input-for-different-tables-and-output-into-separate-indexes/339596 "2023-07-31T07:58:29Z")

</div>

Hello I'm new to ELK. Question - How do I use different index when importing tables from DB using logstash. I have used multiple JDBC input for different tables and separate output for each table in logstash. Logstash s…

---

## [\[o.e.t.TransportService\] Received response for a request that has timed out](https://discuss.elastic.co/t/o-e-t-transportservice-received-response-for-a-request-that-has-timed-out/339056)

<div class="topic-metadata">

**Author:** [@EVINDX](https://discuss.elastic.co/u/EVINDX)\
**Replies:** 16\
**Last updated:** [July 31, 2023, 7:54am UTC](https://discuss.elastic.co/t/o-e-t-transportservice-received-response-for-a-request-that-has-timed-out/339056 "2023-07-31T07:54:54Z")

</div>

We are receiving the following error {ElasticsearchLogger} \[o.e.t.TransportService\] Received response for a request that has timed out, sent \[21.3s/21361ms\] ago, timed out \[5.6s/5682ms\] ago, action \[indices:monitor/stat…

---

## [How to visualize user login](https://discuss.elastic.co/t/how-to-visualize-user-login/339280)

<div class="topic-metadata">

**Author:** [@frh](https://discuss.elastic.co/u/frh)\
**Replies:** 3\
**Last updated:** [July 31, 2023, 7:50am UTC](https://discuss.elastic.co/t/how-to-visualize-user-login/339280 "2023-07-31T07:50:38Z")

</div>

Hi, I'm trying to figure out the number of user logins in certain instance. The reason being is I want to see how many users have logged in to instance ABC and who are the users logged in to instance ABC. Thank you.

---

## [How to forward ALL logs](https://discuss.elastic.co/t/how-to-forward-all-logs/339653)

<div class="topic-metadata">

**Author:** [@willsy](https://discuss.elastic.co/u/willsy)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 7:20am UTC](https://discuss.elastic.co/t/how-to-forward-all-logs/339653 "2023-07-31T07:20:41Z")

</div>

I have the following logstash configuration file that successfully sends information to a third party location. Effectively what i am asking is, how do i constantly send ALL the data going into elastic to this third par…

---

## [Does ES security settings "xpack.security.transport.filter.allow" conflict with eBPF program?](https://discuss.elastic.co/t/does-es-security-settings-xpack-security-transport-filter-allow-conflict-with-ebpf-program/339652)

<div class="topic-metadata">

**Author:** [@Michael\_K\_Aboagye](https://discuss.elastic.co/u/Michael_K_Aboagye)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 7:17am UTC](https://discuss.elastic.co/t/does-es-security-settings-xpack-security-transport-filter-allow-conflict-with-ebpf-program/339652 "2023-07-31T07:17:23Z")

</div>

ES documentation states that developers/admins can filter IP addresses at the transport layer via this parameter: xpack.security.transport.filter.allow . So let's assume I have configured the parameter xpack.security.t…

---

## [Logstash querying elasticsearch timeout error](https://discuss.elastic.co/t/logstash-querying-elasticsearch-timeout-error/339085)

<div class="topic-metadata">

**Author:** [@willsy](https://discuss.elastic.co/u/willsy)\
**Replies:** 4\
**Last updated:** [July 31, 2023, 7:09am UTC](https://discuss.elastic.co/t/logstash-querying-elasticsearch-timeout-error/339085 "2023-07-31T07:09:33Z")

</div>

Hello, I have the following error; just seeing if anyone knows where i am setting this? i originally put the timeout setting in the testpipeline.conf for logstash. Any help is greatly appreciated \[2023-07-24T11:59:41,3…

---

## [Auto authentication of user in python application](https://discuss.elastic.co/t/auto-authentication-of-user-in-python-application/339648)

<div class="topic-metadata">

**Author:** [@Rushi\_Bagul](https://discuss.elastic.co/u/Rushi_Bagul)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 6:50am UTC](https://discuss.elastic.co/t/auto-authentication-of-user-in-python-application/339648 "2023-07-31T06:50:59Z")

</div>

Hi team, I have my django application in which I am rendering iframed Kibana dashboard. If am log in django application at same time log in iframed Kibana dashboard as well, it won't log in again in Kibana dashboard. S…

---

## [Elasticsearch Memory Utilization](https://discuss.elastic.co/t/elasticsearch-memory-utilization/338928)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 8\
**Last updated:** [July 31, 2023, 6:31am UTC](https://discuss.elastic.co/t/elasticsearch-memory-utilization/338928 "2023-07-31T06:31:44Z")

</div>

Hi Team, I am new to the Elasticsearch world. I had installed the Elasticsearch in one of my lab VM, where it is showing memory utilization is 8.3 GB when I check "systemctl status elasticsearch" and VM gets hang. Is t…

---

## [Visualization showing both metrics and overall status](https://discuss.elastic.co/t/visualization-showing-both-metrics-and-overall-status/339496)

<div class="topic-metadata">

**Author:** [@mathur7vidit](https://discuss.elastic.co/u/mathur7vidit)\
**Replies:** 3\
**Last updated:** [July 31, 2023, 5:07am UTC](https://discuss.elastic.co/t/visualization-showing-both-metrics-and-overall-status/339496 "2023-07-31T05:07:01Z")

</div>

Is something like below visualization possible in kibana?

---

## [Group By Datetime fields While querying](https://discuss.elastic.co/t/group-by-datetime-fields-while-querying/339639)

<div class="topic-metadata">

**Author:** [@cybercom](https://discuss.elastic.co/u/cybercom)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 4:03am UTC](https://discuss.elastic.co/t/group-by-datetime-fields-while-querying/339639 "2023-07-31T04:03:12Z")

</div>

I need to group by day in my query, so i'm trying to apply group by with datetime field as below: { "\_source": "false", "query": { "match\_all": {} }, "aggs": { "group\_by\_weekday": { …

---

## [Rename nested field in Logstash using Ruby filter](https://discuss.elastic.co/t/rename-nested-field-in-logstash-using-ruby-filter/339637)

<div class="topic-metadata">

**Author:** [@mario\_kazela](https://discuss.elastic.co/u/mario_kazela)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 3:57am UTC](https://discuss.elastic.co/t/rename-nested-field-in-logstash-using-ruby-filter/339637 "2023-07-31T03:57:52Z")

</div>

Hi, I have some issues with rename a nested field in json. Example of nested field: test\_results.result.legacy.entities.user\_mentions.name then i want to rename it to displayname I have try this method, but unfortuna…

---

## [Pipeline Fail, failed to load pipeline. Error: Expected one of \[ \\\\t\\\\r\\\\n\], \\"#\\", \\"input\\", \\"filter\\", \\"output\\" at line 21](https://discuss.elastic.co/t/pipeline-fail-failed-to-load-pipeline-error-expected-one-of-t-r-n-input-filter-output-at-line-21/339615)

<div class="topic-metadata">

**Author:** [@Youdeep](https://discuss.elastic.co/u/Youdeep)\
**Replies:** 3\
**Last updated:** [July 31, 2023, 12:05am UTC](https://discuss.elastic.co/t/pipeline-fail-failed-to-load-pipeline-error-expected-one-of-t-r-n-input-filter-output-at-line-21/339615 "2023-07-31T00:05:17Z")

</div>

Running a pipeline with two config file: Error after running: logstash -f .\\config\\pipelines.yml Error: \[ERROR\]\[logstash.agent \] Failed to execute action {:action=\>LogStash::PipelineAction::Create/pipeline\_i…

---

## [Issues configuring SSL TCP Syslog Collection - Palo Alto Integration](https://discuss.elastic.co/t/issues-configuring-ssl-tcp-syslog-collection-palo-alto-integration/339572)

<div class="topic-metadata">

**Author:** [@elasticnub](https://discuss.elastic.co/u/elasticnub)\
**Replies:** 8\
**Last updated:** [July 30, 2023, 6:01pm UTC](https://discuss.elastic.co/t/issues-configuring-ssl-tcp-syslog-collection-palo-alto-integration/339572 "2023-07-30T18:01:35Z")

</div>

I am new to the Elastic ecosystem and looking for assistance...trying to configure tcp SSL collection for palo logs from cortex datalake... this cert worked fine with our previous solution so I know nothing is wrong with…

---

## [Kibana Task Manager (KTM) not reporting accurate observed Kibana instances values](https://discuss.elastic.co/t/kibana-task-manager-ktm-not-reporting-accurate-observed-kibana-instances-values/339624)

<div class="topic-metadata">

**Author:** [@JGreene](https://discuss.elastic.co/u/JGreene)\
**Replies:** 0\
**Last updated:** [July 30, 2023, 4:48pm UTC](https://discuss.elastic.co/t/kibana-task-manager-ktm-not-reporting-accurate-observed-kibana-instances-values/339624 "2023-07-30T16:48:50Z")

</div>

Hello, Looking for guidance on troubleshooting Kibana Task Manager reporting "observed":{"observed\_kibana\_instances":1 when there are 12 instances in total. Other clusters (7.16.X) report their total Kibana instances a…

---

## [Does fscrawler support opensearch?](https://discuss.elastic.co/t/does-fscrawler-support-opensearch/339613)

<div class="topic-metadata">

**Author:** [@nadiGam](https://discuss.elastic.co/u/nadiGam)\
**Replies:** 2\
**Last updated:** [July 30, 2023, 3:26pm UTC](https://discuss.elastic.co/t/does-fscrawler-support-opensearch/339613 "2023-07-30T15:26:37Z")

</div>

---

## [Kafka Integration Installation Error - "Limit of total dimension fields \[16\] has been exceeded"](https://discuss.elastic.co/t/kafka-integration-installation-error-limit-of-total-dimension-fields-16-has-been-exceeded/339052)

<div class="topic-metadata">

**Author:** [@Moaath](https://discuss.elastic.co/u/Moaath)\
**Replies:** 9\
**Last updated:** [July 30, 2023, 6:46am UTC](https://discuss.elastic.co/t/kafka-integration-installation-error-limit-of-total-dimension-fields-16-has-been-exceeded/339052 "2023-07-30T06:46:29Z")

</div>

Hi Everyone, I am currently trying to install the Kafka integration via the Fleet UI in Kibana, but I've encountered an issue that I hope someone can shed some light on. The error message I'm receiving is as follows: E…

[Previous page](https://discuss.elastic.co/latest.md?page=588)

[Next page](https://discuss.elastic.co/latest.md?page=590)
