# Latest

**URL:** https://discuss.elastic.co/latest.md?page=769

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 770

---

## [Pyspark-Elasticsearch connectivity and latest version compatibilty](https://discuss.elastic.co/t/pyspark-elasticsearch-connectivity-and-latest-version-compatibilty/325289)

<div class="topic-metadata">

**Author:** [@Bramha](https://discuss.elastic.co/u/Bramha)\
**Replies:** 6\
**Last updated:** [February 24, 2023, 2:24pm UTC](https://discuss.elastic.co/t/pyspark-elasticsearch-connectivity-and-latest-version-compatibilty/325289 "2023-02-24T14:24:12Z")

</div>

Hello All, I'm trying to use elasticsearch as a source in my poc. I'm using Python-3.10.10, Spark 3.3.0. I'm using Jupyter notebook below is my code: from pyspark import SparkConf, SparkContext conf = SparkConf() c…

---

## [Aggregations: Getting accurate counts for filter panel](https://discuss.elastic.co/t/aggregations-getting-accurate-counts-for-filter-panel/326433)

<div class="topic-metadata">

**Author:** [@MonikaJ](https://discuss.elastic.co/u/MonikaJ)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 11:23am UTC](https://discuss.elastic.co/t/aggregations-getting-accurate-counts-for-filter-panel/326433 "2023-02-24T11:23:09Z")

</div>

Many searches provide a standard filter panel on the left, that allows filtering by OR within a category and AND between categories. The logic the counts that are shown for every filter entry follows the following standa…

---

## [Configure Elasticsearch on Django App](https://discuss.elastic.co/t/configure-elasticsearch-on-django-app/326320)

<div class="topic-metadata">

**Author:** [@ekane3](https://discuss.elastic.co/u/ekane3)\
**Replies:** 8\
**Last updated:** [February 24, 2023, 1:31pm UTC](https://discuss.elastic.co/t/configure-elasticsearch-on-django-app/326320 "2023-02-24T13:31:52Z")

</div>

:wave: Hello everyone, I have been trying for weeks now to configure Elasticsearch/logstash on my Django app. But, all the tutorials i found are dealing with local elasticsearch meanwhile the one i’m dealing with is a…

---

## [Display a simple ratio](https://discuss.elastic.co/t/display-a-simple-ratio/326345)

<div class="topic-metadata">

**Author:** [@lamdba](https://discuss.elastic.co/u/lamdba)\
**Replies:** 3\
**Last updated:** [February 24, 2023, 1:28pm UTC](https://discuss.elastic.co/t/display-a-simple-ratio/326345 "2023-02-24T13:28:38Z")

</div>

Hello there, Driving me crazy, I'm trying to show a small indicator with all the data I've in my dataset. logically, it seems extremely easy to produce, but I can't figure how it can be done in Kibana. { "\_index": "m…

---

## [Records Limits on upload](https://discuss.elastic.co/t/records-limits-on-upload/326442)

<div class="topic-metadata">

**Author:** [@IceF1reX](https://discuss.elastic.co/u/IceF1reX)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 1:26pm UTC](https://discuss.elastic.co/t/records-limits-on-upload/326442 "2023-02-24T13:26:18Z")

</div>

How to increase or remove records limits from simultaneous upload in C# ?? For 300 000 and more

---

## [Not able to connect to Elastic search from logstash](https://discuss.elastic.co/t/not-able-to-connect-to-elastic-search-from-logstash/326267)

<div class="topic-metadata">

**Author:** [@vijay78](https://discuss.elastic.co/u/vijay78)\
**Replies:** 4\
**Last updated:** [February 24, 2023, 1:11pm UTC](https://discuss.elastic.co/t/not-able-to-connect-to-elastic-search-from-logstash/326267 "2023-02-24T13:11:51Z")

</div>

iam getting below error after running logstash pod Using bundled JDK: /usr/share/logstash/jdk Sending Logstash logs to /usr/share/logstash/logs which is now configured via log4j2.properties \[2023-02-23T06:44:35,912\]\[I…

---

## [Logstash plugin had an unrecoverable error. Will restart this plugin](https://discuss.elastic.co/t/logstash-plugin-had-an-unrecoverable-error-will-restart-this-plugin/326220)

<div class="topic-metadata">

**Author:** [@Vinicius\_Carmo](https://discuss.elastic.co/u/Vinicius_Carmo)\
**Replies:** 6\
**Last updated:** [February 24, 2023, 12:39pm UTC](https://discuss.elastic.co/t/logstash-plugin-had-an-unrecoverable-error-will-restart-this-plugin/326220 "2023-02-24T12:39:56Z")

</div>

Hello everyone, I need help I tried using the Microsoft-sentinel plugin output logstash. but I get an error: A plugin had an unrecoverable error. Will restart this plugin Error: address already in use I used two outp…

---

## [SocketException on \_bulk request working in curl but not in restTemplate](https://discuss.elastic.co/t/socketexception-on-bulk-request-working-in-curl-but-not-in-resttemplate/326437)

<div class="topic-metadata">

**Author:** [@D1sturbance](https://discuss.elastic.co/u/D1sturbance)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 12:12pm UTC](https://discuss.elastic.co/t/socketexception-on-bulk-request-working-in-curl-but-not-in-resttemplate/326437 "2023-02-24T12:12:49Z")

</div>

Hello, I have problems with \_bulk request throwing Connection reset by peer: socket write error; nested exception is javax.net.ssl.SSLProtocolException. I've read and know about bulk size and etc... So that's not an is…

---

## [Historic tomcat access logs transform historic timestamp to @timestamp](https://discuss.elastic.co/t/historic-tomcat-access-logs-transform-historic-timestamp-to-timestamp/325862)

<div class="topic-metadata">

**Author:** [@flomickl](https://discuss.elastic.co/u/flomickl)\
**Replies:** 6\
**Last updated:** [February 21, 2023, 11:57pm UTC](https://discuss.elastic.co/t/historic-tomcat-access-logs-transform-historic-timestamp-to-timestamp/325862 "2023-02-21T23:57:14Z")

</div>

Hi, I have some historic tomcat log files like 172.x.x.xx - - \[19/Dec/2022:23:59:58 +0100\] "POST /url/text/json HTTP/1.1" 200 348 I have already a Logstash grok pattern but I have a problem with the correct timestamp. …

---

## [Missing client level settings in high level rest client while migrating to transport client](https://discuss.elastic.co/t/missing-client-level-settings-in-high-level-rest-client-while-migrating-to-transport-client/326415)

<div class="topic-metadata">

**Author:** [@Umang\_Pachaury](https://discuss.elastic.co/u/Umang_Pachaury)\
**Replies:** 3\
**Last updated:** [February 24, 2023, 10:13am UTC](https://discuss.elastic.co/t/missing-client-level-settings-in-high-level-rest-client-while-migrating-to-transport-client/326415 "2023-02-24T10:13:52Z")

</div>

Hey Team, I am upgrading from transport client to high level rest client and there are some client level settings I could not find in high level rest client. I was able to upgrade almost all the code but was not able t…

---

## [Failed to clean async result](https://discuss.elastic.co/t/failed-to-clean-async-result/326347)

<div class="topic-metadata">

**Author:** [@INS](https://discuss.elastic.co/u/INS)\
**Replies:** 3\
**Last updated:** [February 24, 2023, 10:13am UTC](https://discuss.elastic.co/t/failed-to-clean-async-result/326347 "2023-02-24T10:13:23Z")

</div>

Hi I met the case on transport transport\_worker in my workflow ingest node (mem capacity 36GB) received data from source and the next this data should be relocated on data nodes (16GB) Can we control bulk of data betw…

---

## [Elastic-apm-agent-1.33.0.jar flagged by security scan](https://discuss.elastic.co/t/elastic-apm-agent-1-33-0-jar-flagged-by-security-scan/326369)

<div class="topic-metadata">

**Author:** [@tonyk](https://discuss.elastic.co/u/tonyk)\
**Replies:** 4\
**Last updated:** [February 24, 2023, 9:23am UTC](https://discuss.elastic.co/t/elastic-apm-agent-1-33-0-jar-flagged-by-security-scan/326369 "2023-02-24T09:23:35Z")

</div>

Our internal security team is running a scanning tool that is flagging the apm-agent-1.33.0.jar file as being insecure and vulnerable for the log4j vulnerability (CVE-2021-44228). In further investigation they found the…

---

## [Control filter in kibana doesnt work properly](https://discuss.elastic.co/t/control-filter-in-kibana-doesnt-work-properly/326160)

<div class="topic-metadata">

**Author:** [@Apoorva\_Shandilya](https://discuss.elastic.co/u/Apoorva_Shandilya)\
**Replies:** 7\
**Last updated:** [February 24, 2023, 9:15am UTC](https://discuss.elastic.co/t/control-filter-in-kibana-doesnt-work-properly/326160 "2023-02-24T09:15:41Z")

</div>

Hi I am a beginner here . Currently, we use Control Filter in Kibana Dashboards, but this filter doesn't work as we expected, so that it can't recommend us what are the available values for each field. which are the o…

---

## [Where to find the generated CSV report](https://discuss.elastic.co/t/where-to-find-the-generated-csv-report/326395)

<div class="topic-metadata">

**Author:** [@ashd](https://discuss.elastic.co/u/ashd)\
**Replies:** 1\
**Last updated:** [February 24, 2023, 9:09am UTC](https://discuss.elastic.co/t/where-to-find-the-generated-csv-report/326395 "2023-02-24T09:09:43Z")

</div>

How can I access the CSV reports that were generated? What are the step to access them?!

---

## [Use Elastic GET script output in Lens (or TSVB) panel](https://discuss.elastic.co/t/use-elastic-get-script-output-in-lens-or-tsvb-panel/326349)

<div class="topic-metadata">

**Author:** [@ivh](https://discuss.elastic.co/u/ivh)\
**Replies:** 5\
**Last updated:** [February 24, 2023, 8:37am UTC](https://discuss.elastic.co/t/use-elastic-get-script-output-in-lens-or-tsvb-panel/326349 "2023-02-24T08:37:50Z")

</div>

Hello! Tried solving this via an Elastic Support case, got nowhere ... hoping the community can help. I have a working GET script that successfully retrieves a single document (from an entire index) that contains the ma…

---

## [\[Filebeat 8.6.1 - httpjson\] invalid memory address or nil pointer dereference](https://discuss.elastic.co/t/filebeat-8-6-1-httpjson-invalid-memory-address-or-nil-pointer-dereference/326365)

<div class="topic-metadata">

**Author:** [@marrc.rousseau](https://discuss.elastic.co/u/marrc.rousseau)\
**Replies:** 1\
**Last updated:** [February 24, 2023, 8:19am UTC](https://discuss.elastic.co/t/filebeat-8-6-1-httpjson-invalid-memory-address-or-nil-pointer-dereference/326365 "2023-02-24T08:19:25Z")

</div>

Hello, I try to use httpjson with "chain" and "steps" but I'm stuck on this error "invalid memory address or nil pointer dereference". Here is what I did: a simple httpjson to call an API and get host IDs filebeat.i…

---

## [Use the correct datatype fields](https://discuss.elastic.co/t/use-the-correct-datatype-fields/326290)

<div class="topic-metadata">

**Author:** [@rschirin](https://discuss.elastic.co/u/rschirin)\
**Replies:** 4\
**Last updated:** [February 24, 2023, 7:59am UTC](https://discuss.elastic.co/t/use-the-correct-datatype-fields/326290 "2023-02-24T07:59:01Z")

</div>

Hey there, I would like just to get a suggestion. If I have a field that contains only ip addresses and it is used for standard match query, should be better to map it with the ip datatype or is it not relevant? is the…

---

## [Elasticsearch document update and insertio using update api](https://discuss.elastic.co/t/elasticsearch-document-update-and-insertio-using-update-api/326401)

<div class="topic-metadata">

**Author:** [@murli\_krishna](https://discuss.elastic.co/u/murli_krishna)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 5:20am UTC](https://discuss.elastic.co/t/elasticsearch-document-update-and-insertio-using-update-api/326401 "2023-02-24T05:20:58Z")

</div>

I want to ingest data using Python code, and if data is already available, I just want to update it with the given document for that ID. So far, I have tried this. Using Elasticsearch 8.6.1 import elasticsearch from …

---

## [Unable to change "elastic" user password](https://discuss.elastic.co/t/unable-to-change-elastic-user-password/326364)

<div class="topic-metadata">

**Author:** [@SUNA](https://discuss.elastic.co/u/SUNA)\
**Replies:** 4\
**Last updated:** [February 24, 2023, 5:18am UTC](https://discuss.elastic.co/t/unable-to-change-elastic-user-password/326364 "2023-02-24T05:18:51Z")

</div>

Team, Can you please help to change \*\*elastic\*\* user password. root@elk:/usr/share/elasticsearch/bin# ls -lrt total 20812 -rwxr-xr-x 1 root root 21220982 Jan 13 2021 elasticsearch-sql-cli-7.10.2.jar -rwxr-xr-x 1 root …

---

## [Get the matched and unmatched result based on fields inside an index](https://discuss.elastic.co/t/get-the-matched-and-unmatched-result-based-on-fields-inside-an-index/326397)

<div class="topic-metadata">

**Author:** [@Prashant\_Pandey1](https://discuss.elastic.co/u/Prashant_Pandey1)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 4:06am UTC](https://discuss.elastic.co/t/get-the-matched-and-unmatched-result-based-on-fields-inside-an-index/326397 "2023-02-24T04:06:21Z")

</div>

Hi All , I'm new to Elasticsearch, please can someone help on this I want to matched and unmatched data based on fields from index. Sample of Data Schema of index : { "\_index": "comparebyid", "\_id": "MPGsra40AGzOIw1…

---

## [Lost Trial License on ECK After Creating LoadBalancer](https://discuss.elastic.co/t/lost-trial-license-on-eck-after-creating-loadbalancer/326396)

<div class="topic-metadata">

**Author:** [@tr78](https://discuss.elastic.co/u/tr78)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 3:37am UTC](https://discuss.elastic.co/t/lost-trial-license-on-eck-after-creating-loadbalancer/326396 "2023-02-24T03:37:24Z")

</div>

Hi, I've been running a trial license on ECK for about a week now without issue. Today I created a LoadBalancer to expose the API on port 9200, and after applying my license had reverted back to basic. If I try the tr…

---

## [Autocomplete - Completion Suggester Or Search as you type filed type](https://discuss.elastic.co/t/autocomplete-completion-suggester-or-search-as-you-type-filed-type/326393)

<div class="topic-metadata">

**Author:** [@xef](https://discuss.elastic.co/u/xef)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 3:18am UTC](https://discuss.elastic.co/t/autocomplete-completion-suggester-or-search-as-you-type-filed-type/326393 "2023-02-24T03:18:02Z")

</div>

We need to create an autocomplete functionality so that as the user is typing suggestions are shown from the backend elasticsearch indices. Which is the better option for indiex that has 10 million plus records and the …

---

## [How to create readonly public API Key?](https://discuss.elastic.co/t/how-to-create-readonly-public-api-key/326270)

<div class="topic-metadata">

**Author:** [@indicozy](https://discuss.elastic.co/u/indicozy)\
**Replies:** 1\
**Last updated:** [February 24, 2023, 2:15am UTC](https://discuss.elastic.co/t/how-to-create-readonly-public-api-key/326270 "2023-02-24T02:15:20Z")

</div>

I'm trying to create an API Key for users to search on my frontend, however, I cannot find configuration example for readonly users to specific indices. Could you please share your config for this setting?

---

## [Get request taking much time in elasticsearch](https://discuss.elastic.co/t/get-request-taking-much-time-in-elasticsearch/326391)

<div class="topic-metadata">

**Author:** [@Siva\_Karan](https://discuss.elastic.co/u/Siva_Karan)\
**Replies:** 1\
**Last updated:** [February 24, 2023, 2:12am UTC](https://discuss.elastic.co/t/get-request-taking-much-time-in-elasticsearch/326391 "2023-02-24T02:12:59Z")

</div>

Hi Team, For elasticsearch using transport client 9kb record it takes to 3 seconds. sometimes it will take the 100 ms.

---

## [Error when trying to install Fleet Server to a centralized host](https://discuss.elastic.co/t/error-when-trying-to-install-fleet-server-to-a-centralized-host/326387)

<div class="topic-metadata">

**Author:** [@Stephen\_Johnston](https://discuss.elastic.co/u/Stephen_Johnston)\
**Replies:** 0\
**Last updated:** [February 24, 2023, 1:18am UTC](https://discuss.elastic.co/t/error-when-trying-to-install-fleet-server-to-a-centralized-host/326387 "2023-02-24T01:18:00Z")

</div>

Hi, I'm trying to add a new fleet server in kibana. When I try to install the Fleet Server Agent on a centralized host, I'm getting errors after I input the following code: curl -L -O https://artifacts.elastic.co/downlo…

---

## [Storing only pointer to source field?](https://discuss.elastic.co/t/storing-only-pointer-to-source-field/326368)

<div class="topic-metadata">

**Author:** [@XD\_Captain](https://discuss.elastic.co/u/XD_Captain)\
**Replies:** 3\
**Last updated:** [February 24, 2023, 12:21am UTC](https://discuss.elastic.co/t/storing-only-pointer-to-source-field/326368 "2023-02-24T00:21:19Z")

</div>

Hi, I'm new to Elasticsearch and am wondering about this: is there a handy way to not store the \_source field (original json file), but instead store just a pointer (ID) to the source field items? For instance if the …

---

## [Tag events based in words in different fields](https://discuss.elastic.co/t/tag-events-based-in-words-in-different-fields/326382)

<div class="topic-metadata">

**Author:** [@xalmer](https://discuss.elastic.co/u/xalmer)\
**Replies:** 0\
**Last updated:** [February 23, 2023, 11:35pm UTC](https://discuss.elastic.co/t/tag-events-based-in-words-in-different-fields/326382 "2023-02-23T23:35:04Z")

</div>

Hello everybody, I want to make a better code, but i try a lot of thing and nothing works. I need to tag the input based in many words in 4 different fields. Im doing like this, but need to replicate all the filter fo…

---

## [Error running Repository Analysis API on AWS S3](https://discuss.elastic.co/t/error-running-repository-analysis-api-on-aws-s3/326381)

<div class="topic-metadata">

**Author:** [@ben.clifford](https://discuss.elastic.co/u/ben.clifford)\
**Replies:** 0\
**Last updated:** [February 23, 2023, 11:24pm UTC](https://discuss.elastic.co/t/error-running-repository-analysis-api-on-aws-s3/326381 "2023-02-23T23:24:36Z")

</div>

I am running a 4 node cluster in AWS trying to use the Repository Analysis API to validate S3 compatible storage. The cluster is healthy and well provisioned, and doing nothing but running this API test. After continuous…

---

## [Runtime Field Convert String to Number](https://discuss.elastic.co/t/runtime-field-convert-string-to-number/326370)

<div class="topic-metadata">

**Author:** [@sparker22](https://discuss.elastic.co/u/sparker22)\
**Replies:** 1\
**Last updated:** [February 23, 2023, 10:49pm UTC](https://discuss.elastic.co/t/runtime-field-convert-string-to-number/326370 "2023-02-23T22:49:05Z")

</div>

Is there a way to convert string / text to a number in a runtime field script? We have data that is getting ingested into Elastic as keyword / text fields, but I need to convert that data at runtime from a string to numb…

---

## [Upload of multiple CSV files into same index](https://discuss.elastic.co/t/upload-of-multiple-csv-files-into-same-index/326156)

<div class="topic-metadata">

**Author:** [@Raj4](https://discuss.elastic.co/u/Raj4)\
**Replies:** 4\
**Last updated:** [February 23, 2023, 10:07pm UTC](https://discuss.elastic.co/t/upload-of-multiple-csv-files-into-same-index/326156 "2023-02-23T22:07:07Z")

</div>

Hi, Please advise me on the below. I want to upload CSV file into the same index name on daily basis and need to create Kibana dashboard. Is it possible for me to upload the CSV file directly into Elasticsearch autom…

[Previous page](https://discuss.elastic.co/latest.md?page=768)

[Next page](https://discuss.elastic.co/latest.md?page=770)
