# Latest

**URL:** https://discuss.elastic.co/latest.md?page=719

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 720

---

## [Docker cluster](https://discuss.elastic.co/t/docker-cluster/329511)

<div class="topic-metadata">

**Author:** [@Fatiha](https://discuss.elastic.co/u/Fatiha)\
**Replies:** 0\
**Last updated:** [April 6, 2023, 12:53pm UTC](https://discuss.elastic.co/t/docker-cluster/329511 "2023-04-06T12:53:21Z")

</div>

hi how to check the logs at /usr/share/elasticsearch/logs/docker-cluster.log

---

## [APM Java Agent log\_sending=true with multiple appenders](https://discuss.elastic.co/t/apm-java-agent-log-sending-true-with-multiple-appenders/328378)

<div class="topic-metadata">

**Author:** [@SimonS1](https://discuss.elastic.co/u/SimonS1)\
**Replies:** 2\
**Last updated:** [April 6, 2023, 12:48pm UTC](https://discuss.elastic.co/t/apm-java-agent-log-sending-true-with-multiple-appenders/328378 "2023-04-06T12:48:24Z")

</div>

Hi Elastic We are using the APM Java Agent (apm-agent-attach:1.36.0) for a Spring Boot application. We have set the log\_sending to true. The logs are sent to the APM Server and are visible in the Kibana. Everything work…

---

## [How can be use the alerting for a data query](https://discuss.elastic.co/t/how-can-be-use-the-alerting-for-a-data-query/327671)

<div class="topic-metadata">

**Author:** [@allaboutopensource](https://discuss.elastic.co/u/allaboutopensource)\
**Replies:** 1\
**Last updated:** [April 6, 2023, 12:32pm UTC](https://discuss.elastic.co/t/how-can-be-use-the-alerting-for-a-data-query/327671 "2023-04-06T12:32:50Z")

</div>

we have to setup an alert for all the windows event logs which are under the "error" types. I was able to create the dashboard for the windows event logs which eventually shows me the count of the event logs which has "e…

---

## [Logstash snmp OID](https://discuss.elastic.co/t/logstash-snmp-oid/327677)

<div class="topic-metadata">

**Author:** [@San9](https://discuss.elastic.co/u/San9)\
**Replies:** 2\
**Last updated:** [April 6, 2023, 12:30pm UTC](https://discuss.elastic.co/t/logstash-snmp-oid/327677 "2023-04-06T12:30:20Z")

</div>

Hi all. In logstash, I use the snmp module to poll the OIDs. It partially works, I get the required values. I have many OIDs and hosts to poll. The problem is that on some of the equipment certain oids do not work or …

---

## [How to get started with Elastic APM?](https://discuss.elastic.co/t/how-to-get-started-with-elastic-apm/328124)

<div class="topic-metadata">

**Author:** [@Shoeb\_Masum](https://discuss.elastic.co/u/Shoeb_Masum)\
**Replies:** 3\
**Last updated:** [April 6, 2023, 12:09pm UTC](https://discuss.elastic.co/t/how-to-get-started-with-elastic-apm/328124 "2023-04-06T12:09:52Z")

</div>

I want to explore Elastic APM to be used in some of our IT applications. The plan is to go with the free version of the self-managed Elastic APM. I learned four components of the Elastic APM solution - APM agents, APM Se…

---

## [Elastic Fleet Vault Integration](https://discuss.elastic.co/t/elastic-fleet-vault-integration/329330)

<div class="topic-metadata">

**Author:** [@adis3421](https://discuss.elastic.co/u/adis3421)\
**Replies:** 1\
**Last updated:** [April 6, 2023, 11:12am UTC](https://discuss.elastic.co/t/elastic-fleet-vault-integration/329330 "2023-04-06T11:12:05Z")

</div>

Hi, I add vault integration in elastic agent after instalation I have in my vault: on fleet server port 9007/tcp is open but not listen on tcp but only tcp6

---

## [Post-installation warning message](https://discuss.elastic.co/t/post-installation-warning-message/329218)

<div class="topic-metadata">

**Author:** [@Ghepardo](https://discuss.elastic.co/u/Ghepardo)\
**Replies:** 7\
**Last updated:** [April 6, 2023, 10:02am UTC](https://discuss.elastic.co/t/post-installation-warning-message/329218 "2023-04-06T10:02:57Z")

</div>

I have installed Elasticsearch on an Ubuntu 22.04 system. When I start the service, I get a warning message like the following in the Elasticsearch log: \[2023-04-03T14:07:41,411\]\[WARN \]\[stderr \] \[\<\<ho…

---

## [SOLR collection to Elasticsearch Indices data migration](https://discuss.elastic.co/t/solr-collection-to-elasticsearch-indices-data-migration/329364)

<div class="topic-metadata">

**Author:** [@mruthyu](https://discuss.elastic.co/u/mruthyu)\
**Replies:** 5\
**Last updated:** [April 6, 2023, 9:25am UTC](https://discuss.elastic.co/t/solr-collection-to-elasticsearch-indices-data-migration/329364 "2023-04-06T09:25:06Z")

</div>

Is it possible to migrate the indexed data (collections) in SOLR to Elasticsearch (Indices)? Data volume will be around 100 million to 1 billion. If yes. What should be the approach? Is there any migration tool availabl…

---

## [Logstash bulk requests growing after some time](https://discuss.elastic.co/t/logstash-bulk-requests-growing-after-some-time/328486)

<div class="topic-metadata">

**Author:** [@zerzn](https://discuss.elastic.co/u/zerzn)\
**Replies:** 1\
**Last updated:** [April 6, 2023, 9:15am UTC](https://discuss.elastic.co/t/logstash-bulk-requests-growing-after-some-time/328486 "2023-04-06T09:15:47Z")

</div>

hi, I have a strange situation with logstash with elasticsearch and maybe someone can help me out. My logstash bulk requests to elasticsearch are growing after some hours. (2-24h) There are arround 1000 winlogbeat age…

---

## [Type of Long not valid in time series dimension](https://discuss.elastic.co/t/type-of-long-not-valid-in-time-series-dimension/329464)

<div class="topic-metadata">

**Author:** [@A\_Mightiev](https://discuss.elastic.co/u/A_Mightiev)\
**Replies:** 4\
**Last updated:** [April 6, 2023, 8:52am UTC](https://discuss.elastic.co/t/type-of-long-not-valid-in-time-series-dimension/329464 "2023-04-06T08:52:18Z")

</div>

Hi Is this a bug? I can't use a type long field for a time\_series\_dimension. this is a simple example: PUT /temperature01 { "settings": { "index": { "mode": "time\_series", "time\_seri…

---

## [In Operator Behaves Unexpectedly When Used in a Filter](https://discuss.elastic.co/t/in-operator-behaves-unexpectedly-when-used-in-a-filter/329449)

<div class="topic-metadata">

**Author:** [@foxfire-auspex](https://discuss.elastic.co/u/foxfire-auspex)\
**Replies:** 2\
**Last updated:** [April 6, 2023, 8:42am UTC](https://discuss.elastic.co/t/in-operator-behaves-unexpectedly-when-used-in-a-filter/329449 "2023-04-06T08:42:59Z")

</div>

Hello, I just had a very strange experience debugging one of our Logstash filters and would like to know whether we could have anticipated this or encountered a known quirk or bug (we run Logstash v7.17). Please see be…

---

## [How to count documents in Elasticsearch with exclusive name-value attribute filters of nested type?](https://discuss.elastic.co/t/how-to-count-documents-in-elasticsearch-with-exclusive-name-value-attribute-filters-of-nested-type/329491)

<div class="topic-metadata">

**Author:** [@AKSHAY\_AGARWAL1](https://discuss.elastic.co/u/AKSHAY_AGARWAL1)\
**Replies:** 0\
**Last updated:** [April 6, 2023, 8:05am UTC](https://discuss.elastic.co/t/how-to-count-documents-in-elasticsearch-with-exclusive-name-value-attribute-filters-of-nested-type/329491 "2023-04-06T08:05:12Z")

</div>

\`Require a solution to count the number of documents in Elasticsearch that match a given set of exclusive name-value attribute pairs, where the attribute field is of nested type. The output should show the count of docum…

---

## [Can I use Packetbeat and the ELK stack for network logs generated by a website button](https://discuss.elastic.co/t/can-i-use-packetbeat-and-the-elk-stack-for-network-logs-generated-by-a-website-button/329489)

<div class="topic-metadata">

**Author:** [@Jana\_Urmi](https://discuss.elastic.co/u/Jana_Urmi)\
**Replies:** 0\
**Last updated:** [April 6, 2023, 7:43am UTC](https://discuss.elastic.co/t/can-i-use-packetbeat-and-the-elk-stack-for-network-logs-generated-by-a-website-button/329489 "2023-04-06T07:43:42Z")

</div>

I wrote a Python script to extract the network logs generated by clicking a button on a website using Selenium and store them in a file. I now want to use the ELK stack to visualize the logs. I'm confused whether Packet…

---

## [Logstash s3 parsing issue](https://discuss.elastic.co/t/logstash-s3-parsing-issue/329484)

<div class="topic-metadata">

**Author:** [@Rushikesh](https://discuss.elastic.co/u/Rushikesh)\
**Replies:** 0\
**Last updated:** [April 6, 2023, 6:12am UTC](https://discuss.elastic.co/t/logstash-s3-parsing-issue/329484 "2023-04-06T06:12:30Z")

</div>

output { s3 { access\_key\_id =\> "test" secret\_access\_key =\> "test" bucket =\> "logstorage" region =\> "us-west-1" codec =\> "json\_lines" prefix =\> "%{+YYYY}/%{+MM}/%{+dd}/example.log" } } So I h…

---

## [Logstash Output Issue](https://discuss.elastic.co/t/logstash-output-issue/329319)

<div class="topic-metadata">

**Author:** [@Rushikesh](https://discuss.elastic.co/u/Rushikesh)\
**Replies:** 2\
**Last updated:** [April 6, 2023, 5:10am UTC](https://discuss.elastic.co/t/logstash-output-issue/329319 "2023-04-06T05:10:29Z")

</div>

Below is my logstash configuration file. input { beats { port =\> 5044 } } filter { json { source =\> "message" } } output { stdout { codec =\> json } } filter { mutate { add\_field =\> { …

---

## [Logstash query against elastic returning unwanted field](https://discuss.elastic.co/t/logstash-query-against-elastic-returning-unwanted-field/329418)

<div class="topic-metadata">

**Author:** [@eeijlar](https://discuss.elastic.co/u/eeijlar)\
**Replies:** 1\
**Last updated:** [April 6, 2023, 5:05am UTC](https://discuss.elastic.co/t/logstash-query-against-elastic-returning-unwanted-field/329418 "2023-04-06T05:05:45Z")

</div>

I am exporting the metricbeat index from elastic using logstash. I would like to exclude the service.type term docker from the output. I am using the following query: query =\> '{ "query": { …

---

## [Can we use Scann for vector similarity in elasticsearch?](https://discuss.elastic.co/t/can-we-use-scann-for-vector-similarity-in-elasticsearch/328682)

<div class="topic-metadata">

**Author:** [@prakritidev](https://discuss.elastic.co/u/prakritidev)\
**Replies:** 2\
**Last updated:** [April 6, 2023, 4:58am UTC](https://discuss.elastic.co/t/can-we-use-scann-for-vector-similarity-in-elasticsearch/328682 "2023-04-06T04:58:34Z")

</div>

Hi, I am using es 7.14 and the cosine similairty function is not optimal as compare to other technologies. Can I use ScaNN somehow instead ? How will i integrate that library is thats possible. Thanks.

---

## [Silent setup](https://discuss.elastic.co/t/silent-setup/328972)

<div class="topic-metadata">

**Author:** [@geb](https://discuss.elastic.co/u/geb)\
**Replies:** 3\
**Last updated:** [April 6, 2023, 4:48am UTC](https://discuss.elastic.co/t/silent-setup/328972 "2023-04-06T04:48:57Z")

</div>

Is it possible to issue the command /usr/share/elasticsearch/bin/elasticsearch-certutil http in unattended mode? I automated the whole certificate generation stuff but couldnt solve this task.

---

## [Filebeat stops sending logs after kubernetes deployment.Hence logs loosing happens](https://discuss.elastic.co/t/filebeat-stops-sending-logs-after-kubernetes-deployment-hence-logs-loosing-happens/329480)

<div class="topic-metadata">

**Author:** [@Perwaiz\_Alam](https://discuss.elastic.co/u/Perwaiz_Alam)\
**Replies:** 0\
**Last updated:** [April 6, 2023, 4:45am UTC](https://discuss.elastic.co/t/filebeat-stops-sending-logs-after-kubernetes-deployment-hence-logs-loosing-happens/329480 "2023-04-06T04:45:14Z")

</div>

Filebeat stops sending logs after kubernetes deployment.Hence logs loosing happens

---

## [I have a question need great god help to have a look, a data into the es and run for a period of time will appear stuck, here are some information](https://discuss.elastic.co/t/i-have-a-question-need-great-god-help-to-have-a-look-a-data-into-the-es-and-run-for-a-period-of-time-will-appear-stuck-here-are-some-information/329184)

<div class="topic-metadata">

**Author:** [@northestface](https://discuss.elastic.co/u/northestface)\
**Replies:** 1\
**Last updated:** [April 6, 2023, 3:14am UTC](https://discuss.elastic.co/t/i-have-a-question-need-great-god-help-to-have-a-look-a-data-into-the-es-and-run-for-a-period-of-time-will-appear-stuck-here-are-some-information/329184 "2023-04-06T03:14:40Z")

</div>

this is jstash information 2023-04-03 16:34:24 Full thread dump OpenJDK 64-Bit Server VM (17.0.6+10 mixed mode, sharing): Threads class SMR info: \_java\_thread\_list=0x00007f24d0004620, length=41, elements={ 0x00007f251c…

---

## [Elastic hide/remove some unwanted fields](https://discuss.elastic.co/t/elastic-hide-remove-some-unwanted-fields/329433)

<div class="topic-metadata">

**Author:** [@Farah\_Bhr](https://discuss.elastic.co/u/Farah_Bhr)\
**Replies:** 1\
**Last updated:** [April 6, 2023, 1:02am UTC](https://discuss.elastic.co/t/elastic-hide-remove-some-unwanted-fields/329433 "2023-04-06T01:02:20Z")

</div>

I have elastic basic free license can I hide some fields to a specific user ? or can I remove certain fields from appearing in kibana by unwanted fields, I meant these fields "@version", "\_id", "\_index", "\_score", "\_t…

---

## [How to disable add\_cloud\_metadata processor?](https://discuss.elastic.co/t/how-to-disable-add-cloud-metadata-processor/329463)

<div class="topic-metadata">

**Author:** [@Vanav](https://discuss.elastic.co/u/Vanav)\
**Replies:** 0\
**Last updated:** [April 5, 2023, 8:01pm UTC](https://discuss.elastic.co/t/how-to-disable-add-cloud-metadata-processor/329463 "2023-04-05T20:01:05Z")

</div>

I have a standalone Elastic Agent with filestream input. I want to cleanup sent data. How to disable default processors add\_cloud\_metadata and others? I can drop fields, but I prefer to disable processor. In filebeat I …

---

## [Logstash: Ingesting the data from Azure Storage](https://discuss.elastic.co/t/logstash-ingesting-the-data-from-azure-storage/329404)

<div class="topic-metadata">

**Author:** [@mruthyu](https://discuss.elastic.co/u/mruthyu)\
**Replies:** 2\
**Last updated:** [April 5, 2023, 7:29pm UTC](https://discuss.elastic.co/t/logstash-ingesting-the-data-from-azure-storage/329404 "2023-04-05T19:29:46Z")

</div>

I know from AWS S3 we can ingest the data into elasticsearch using logstash. Similar way is it possible to ingest the data from Azure Storage as well? I don't see the input plugin in the documentation - Input plugins | …

---

## [Terraform Elastic Provider using the CA fingerprint](https://discuss.elastic.co/t/terraform-elastic-provider-using-the-ca-fingerprint/329115)

<div class="topic-metadata">

**Author:** [@zx8086](https://discuss.elastic.co/u/zx8086)\
**Replies:** 1\
**Last updated:** [April 5, 2023, 7:25pm UTC](https://discuss.elastic.co/t/terraform-elastic-provider-using-the-ca-fingerprint/329115 "2023-04-05T19:25:56Z")

</div>

Would be great to incorporate the CA fingerprint into the Provider options, any timeline on this ?

---

## [KIbana login giving warning](https://discuss.elastic.co/t/kibana-login-giving-warning/329155)

<div class="topic-metadata">

**Author:** [@Sandeep\_Raju](https://discuss.elastic.co/u/Sandeep_Raju)\
**Replies:** 1\
**Last updated:** [April 5, 2023, 7:19pm UTC](https://discuss.elastic.co/t/kibana-login-giving-warning/329155 "2023-04-05T19:19:50Z")

</div>

Hi all, When i try to login to my kibana the below login warning pops up: Configuration recommended In a production environment, it is recommended that you configureserver.publicBaseUrl. \[Learn more.\](https://www.elast…

---

## [Elastic parsing error field type format incorrect](https://discuss.elastic.co/t/elastic-parsing-error-field-type-format-incorrect/329352)

<div class="topic-metadata">

**Author:** [@merlin](https://discuss.elastic.co/u/merlin)\
**Replies:** 1\
**Last updated:** [April 5, 2023, 7:18pm UTC](https://discuss.elastic.co/t/elastic-parsing-error-field-type-format-incorrect/329352 "2023-04-05T19:18:40Z")

</div>

Hello, I am collecting windows event logs via MS windows event log collector and then forwarded to graylog via winlogbeats. I am getting alerts to parsing errors for a winlogbeat field shown below due to the field data b…

---

## [Minimal/optimal hardware setup for one node Elasticsearch stack with daily index 10GB to 20GB](https://discuss.elastic.co/t/minimal-optimal-hardware-setup-for-one-node-elasticsearch-stack-with-daily-index-10gb-to-20gb/328944)

<div class="topic-metadata">

**Author:** [@elk1985](https://discuss.elastic.co/u/elk1985)\
**Replies:** 3\
**Last updated:** [April 5, 2023, 5:40pm UTC](https://discuss.elastic.co/t/minimal-optimal-hardware-setup-for-one-node-elasticsearch-stack-with-daily-index-10gb-to-20gb/328944 "2023-04-05T17:40:44Z")

</div>

Hello everybody. I'm new here, but very happy to join the community. Is there any official documentation regarding minimal / optimal hardware requirements for Elasticsearch ? Soon I will put in production single node …

---

## [Elasticsearch 8.2.0 doesn't start in centos 8](https://discuss.elastic.co/t/elasticsearch-8-2-0-doesnt-start-in-centos-8/329322)

<div class="topic-metadata">

**Author:** [@dhrchatt](https://discuss.elastic.co/u/dhrchatt)\
**Replies:** 2\
**Last updated:** [April 5, 2023, 3:30pm UTC](https://discuss.elastic.co/t/elasticsearch-8-2-0-doesnt-start-in-centos-8/329322 "2023-04-05T15:30:53Z")

</div>

When I start elasticsearch-8.2.0 version in Linux Centos8, it is giving following error: 0.000s\]\[warning\]\[os,container\] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /scratch/chroot/OL\_7…

---

## [Database connection](https://discuss.elastic.co/t/database-connection/329309)

<div class="topic-metadata">

**Author:** [@Kirtash](https://discuss.elastic.co/u/Kirtash)\
**Replies:** 5\
**Last updated:** [April 5, 2023, 2:33pm UTC](https://discuss.elastic.co/t/database-connection/329309 "2023-04-05T14:33:23Z")

</div>

Good morning, I have a database with differents instances but in the service map it shows according to the server, that is the same. Is it possible define something to the connections according to server+instance? I th…

---

## ["filter by geometry" button missing for some indexes](https://discuss.elastic.co/t/filter-by-geometry-button-missing-for-some-indexes/329259)

<div class="topic-metadata">

**Author:** [@Donald\_Morton](https://discuss.elastic.co/u/Donald_Morton)\
**Replies:** 4\
**Last updated:** [April 4, 2023, 1:57pm UTC](https://discuss.elastic.co/t/filter-by-geometry-button-missing-for-some-indexes/329259 "2023-04-04T13:57:23Z")

</div>

Kibana: 8.3.2 Hi, i'm trying to use the "filter by geometry" button but it happens to be missing on some indexes. Any idea why it only appears in some?

[Previous page](https://discuss.elastic.co/latest.md?page=718)

[Next page](https://discuss.elastic.co/latest.md?page=720)
