# Latest

**URL:** https://discuss.elastic.co/latest.md?page=773

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 774

---

## [How to search Multiple dense vector fields, including nested filelds](https://discuss.elastic.co/t/how-to-search-multiple-dense-vector-fields-including-nested-filelds/326119)

<div class="topic-metadata">

**Author:** [@shijithp007](https://discuss.elastic.co/u/shijithp007)\
**Replies:** 3\
**Last updated:** [February 22, 2023, 12:58pm UTC](https://discuss.elastic.co/t/how-to-search-multiple-dense-vector-fields-including-nested-filelds/326119 "2023-02-22T12:58:04Z")

</div>

I am working on semantic search, where i try to save processed results of scraped website data. Website has title, summary, sub\_section\_headings and sub\_section\_data. i am storing title & summary as dense vectors and sub…

---

## [Synthetics push command issues](https://discuss.elastic.co/t/synthetics-push-command-issues/325650)

<div class="topic-metadata">

**Author:** [@BenB196](https://discuss.elastic.co/u/BenB196)\
**Replies:** 5\
**Last updated:** [February 22, 2023, 11:53am UTC](https://discuss.elastic.co/t/synthetics-push-command-issues/325650 "2023-02-22T11:53:21Z")

</div>

Hi All, I'm testing out the npx @elastic/synthetics push command, but I'm running into a few issues, and was wondering if anyone has any ideas on how to fix them. Push command doesn't respect NodeJS TLS settings. I h…

---

## [Logstash setup on Azure kubernetes services](https://discuss.elastic.co/t/logstash-setup-on-azure-kubernetes-services/326159)

<div class="topic-metadata">

**Author:** [@vijay78](https://discuss.elastic.co/u/vijay78)\
**Replies:** 0\
**Last updated:** [February 22, 2023, 10:38am UTC](https://discuss.elastic.co/t/logstash-setup-on-azure-kubernetes-services/326159 "2023-02-22T10:38:13Z")

</div>

i am running Elasticsearch and kibana as container on azure kubernetes services iam able to run as expected both Elasticsearch and kibana and load some sample logs from a file Now iam trying to load kubernetes sample lo…

---

## [Cant convert timestamp field from text to date](https://discuss.elastic.co/t/cant-convert-timestamp-field-from-text-to-date/326158)

<div class="topic-metadata">

**Author:** [@Dor\_Steinberg](https://discuss.elastic.co/u/Dor_Steinberg)\
**Replies:** 0\
**Last updated:** [February 22, 2023, 10:36am UTC](https://discuss.elastic.co/t/cant-convert-timestamp-field-from-text-to-date/326158 "2023-02-22T10:36:30Z")

</div>

hello everyone, i got problem converting log.timestamp field from text to date someone can help me understand what am i doing wrong? i also will appreciate if do you have an idea of getting the day of the week from th…

---

## [Index pattern not creating](https://discuss.elastic.co/t/index-pattern-not-creating/326126)

<div class="topic-metadata">

**Author:** [@akhilkv43](https://discuss.elastic.co/u/akhilkv43)\
**Replies:** 2\
**Last updated:** [February 22, 2023, 9:54am UTC](https://discuss.elastic.co/t/index-pattern-not-creating/326126 "2023-02-22T09:54:30Z")

</div>

In Elasticsearch yml i have provided the code to create index pattern named production When opening kibana its not reflecting. here is the code i ahve injected in elasticsearch action.auto\_create\_index: .monitoring\*,.…

---

## [Synthetic integration](https://discuss.elastic.co/t/synthetic-integration/325754)

<div class="topic-metadata">

**Author:** [@kumar\_v](https://discuss.elastic.co/u/kumar_v)\
**Replies:** 1\
**Last updated:** [February 22, 2023, 9:50am UTC](https://discuss.elastic.co/t/synthetic-integration/325754 "2023-02-22T09:50:16Z")

</div>

I have done synthetic integration with the elastic agent running in web servers. Set alerts about the ping response and tls certificates expiry dates. As the certs was approaching the expiry, updated the certs in the loa…

---

## [Kibana 8.6.1 keeps Loading Elastic forever when using a JWT token](https://discuss.elastic.co/t/kibana-8-6-1-keeps-loading-elastic-forever-when-using-a-jwt-token/325282)

<div class="topic-metadata">

**Author:** [@frits](https://discuss.elastic.co/u/frits)\
**Replies:** 11\
**Last updated:** [February 22, 2023, 9:18am UTC](https://discuss.elastic.co/t/kibana-8-6-1-keeps-loading-elastic-forever-when-using-a-jwt-token/325282 "2023-02-22T09:18:50Z")

</div>

I've been trying to get a JWT token login to work for a few days now. I've made a couple of great steps, I think I've managed to authenticate against the JWT provider (Broadcom IDM). I think I've created a correct role a…

---

## [Weired behaviour of fuzziness in elasticsearch](https://discuss.elastic.co/t/weired-behaviour-of-fuzziness-in-elasticsearch/326058)

<div class="topic-metadata">

**Author:** [@alliswell](https://discuss.elastic.co/u/alliswell)\
**Replies:** 2\
**Last updated:** [February 22, 2023, 9:10am UTC](https://discuss.elastic.co/t/weired-behaviour-of-fuzziness-in-elasticsearch/326058 "2023-02-22T09:10:14Z")

</div>

I have following document in my\_index: { "title": "weiß", "id": 1 } Consider the following query: GET my\_index/\_search?explain=true { "\_source": \["title"\], "query": { "bool": { "must": \[ { …

---

## [\[ERROR\]\[plugins.alerting\] Executing Alert default:monitoring\_alert\_XXX](https://discuss.elastic.co/t/error-plugins-alerting-executing-alert-default-monitoring-alert-xxx/326140)

<div class="topic-metadata">

**Author:** [@thesn](https://discuss.elastic.co/u/thesn)\
**Replies:** 0\
**Last updated:** [February 22, 2023, 8:52am UTC](https://discuss.elastic.co/t/error-plugins-alerting-executing-alert-default-monitoring-alert-xxx/326140 "2023-02-22T08:52:34Z")

</div>

Hi, I have ES and Kibana 7.16.2 running on Docker. When I see the docker logs for Kibana, there are a number of errors related to plugins.alerting: \[2023-02-21T17:07:20.438+07:00\]\[ERROR\]\[plugins.alerting\] Executing Al…

---

## [Infinite extent for field "y1": \[Infinity, -Infinity\]](https://discuss.elastic.co/t/infinite-extent-for-field-y1-infinity-infinity/326137)

<div class="topic-metadata">

**Author:** [@Thearith](https://discuss.elastic.co/u/Thearith)\
**Replies:** 0\
**Last updated:** [February 22, 2023, 7:55am UTC](https://discuss.elastic.co/t/infinite-extent-for-field-y1-infinity-infinity/326137 "2023-02-22T07:55:42Z")

</div>

Here is the code that I'm using for create sankey diagram: { $schema: https://vega.github.io/schema/vega/v3.0.json data: \[ { // query ES based on the currently selected time range and filter string name: rawData u…

---

## [Kafka increasing consumer lag](https://discuss.elastic.co/t/kafka-increasing-consumer-lag/326125)

<div class="topic-metadata">

**Author:** [@Sophia](https://discuss.elastic.co/u/Sophia)\
**Replies:** 0\
**Last updated:** [February 22, 2023, 5:53am UTC](https://discuss.elastic.co/t/kafka-increasing-consumer-lag/326125 "2023-02-22T05:53:12Z")

</div>

Hello! I have ELK stack installed with Kafka on Docker containers. There is lag between incoming logs and consuming logs that is increasing, and offset reading speed is not enough. Kafka have only one topic. I tried dif…

---

## [Https communication not secured for elasticsearch](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026)

<div class="topic-metadata">

**Author:** [@akhilkv43](https://discuss.elastic.co/u/akhilkv43)\
**Replies:** 3\
**Last updated:** [February 22, 2023, 5:59am UTC](https://discuss.elastic.co/t/https-communication-not-secured-for-elasticsearch/326026 "2023-02-22T05:59:21Z")

</div>

I am using single node version is 8.5.3 Getting" Your connection to this site is not secured". I used cert and key in yml file Attaching the yml file can anybody advise on installation ======================== Elas…

---

## [Need help for installing Elastic-search, filebeat, logstash, metricbeat and kibana via helm using 8.5.1](https://discuss.elastic.co/t/need-help-for-installing-elastic-search-filebeat-logstash-metricbeat-and-kibana-via-helm-using-8-5-1/325994)

<div class="topic-metadata">

**Author:** [@Ram\_M](https://discuss.elastic.co/u/Ram_M)\
**Replies:** 11\
**Last updated:** [February 22, 2023, 4:43am UTC](https://discuss.elastic.co/t/need-help-for-installing-elastic-search-filebeat-logstash-metricbeat-and-kibana-via-helm-using-8-5-1/325994 "2023-02-22T04:43:25Z")

</div>

Hi all... I've using the helm chart for Elastic -search, Filebeat, Logstash and Kibana. Version is 8.5.1 environment in kubernetes AKS. Issue is Logstash not recognize the elastic-search. I need proper installation gui…

---

## [Using synonym\_graph means non-synonyms are not found](https://discuss.elastic.co/t/using-synonym-graph-means-non-synonyms-are-not-found/326022)

<div class="topic-metadata">

**Author:** [@Jonathan\_Mugan](https://discuss.elastic.co/u/Jonathan_Mugan)\
**Replies:** 8\
**Last updated:** [February 22, 2023, 4:20am UTC](https://discuss.elastic.co/t/using-synonym-graph-means-non-synonyms-are-not-found/326022 "2023-02-22T04:20:43Z")

</div>

Hi, I have this analyzer settings = { "analysis": { "analyzer": { "gale\_analyzer": { "tokenizer": "standard", "filter": \[ "lowercase", …

---

## [Manually-configured security in cluster](https://discuss.elastic.co/t/manually-configured-security-in-cluster/325708)

<div class="topic-metadata">

**Author:** [@frank\_2](https://discuss.elastic.co/u/frank_2)\
**Replies:** 3\
**Last updated:** [February 22, 2023, 1:23am UTC](https://discuss.elastic.co/t/manually-configured-security-in-cluster/325708 "2023-02-22T01:23:42Z")

</div>

Hello, I'm following the guide on how to manually set up security within a cluster. Am I right in thinking that the instructions tell the reader to copy the same transport certificate and key to every node in the clust…

---

## [Trying to bring up filebeat + logstash + Elasticsea + Kibana](https://discuss.elastic.co/t/trying-to-bring-up-filebeat-logstash-elasticsea-kibana/326095)

<div class="topic-metadata">

**Author:** [@vassiliy.vins](https://discuss.elastic.co/u/vassiliy.vins)\
**Replies:** 3\
**Last updated:** [February 22, 2023, 1:05am UTC](https://discuss.elastic.co/t/trying-to-bring-up-filebeat-logstash-elasticsea-kibana/326095 "2023-02-22T01:05:58Z")

</div>

Hi! Followed Elasticsearch docs while installing elasticsearch + kibana + logstash + filebeat default set up. For the moment filebeat configured to send events using logstash-tutorial.log.gz (extracted to logstash-tu…

---

## [Missing "Edit hosts" button under "Fleet server hosts" in Kibana](https://discuss.elastic.co/t/missing-edit-hosts-button-under-fleet-server-hosts-in-kibana/326109)

<div class="topic-metadata">

**Author:** [@Matt\_Johnston](https://discuss.elastic.co/u/Matt_Johnston)\
**Replies:** 2\
**Last updated:** [February 22, 2023, 12:57am UTC](https://discuss.elastic.co/t/missing-edit-hosts-button-under-fleet-server-hosts-in-kibana/326109 "2023-02-22T00:57:00Z")

</div>

Hello. I am trying to set up APM for my Elastic Stack by following this tutorial (Quick start | APM User Guide \[8.6\] | Elastic). I am currently on "Step 1: Set up Fleet". The second step of that section says, "Under Fle…

---

## [Dashboards - Best Practices and Thoughts for Elastic's Observability Team](https://discuss.elastic.co/t/dashboards-best-practices-and-thoughts-for-elastics-observability-team/326078)

<div class="topic-metadata">

**Author:** [@mgevans](https://discuss.elastic.co/u/mgevans)\
**Replies:** 1\
**Last updated:** [February 22, 2023, 12:07am UTC](https://discuss.elastic.co/t/dashboards-best-practices-and-thoughts-for-elastics-observability-team/326078 "2023-02-22T00:07:03Z")

</div>

//this article is written as part of a response to github issue on dashboards which is tracking what do to with time-series data on single digit wigets. Dashboards! Why do dashboards exist In Observability? Dashboards…

---

## [No logstash output on windows](https://discuss.elastic.co/t/no-logstash-output-on-windows/326077)

<div class="topic-metadata">

**Author:** [@jeanette](https://discuss.elastic.co/u/jeanette)\
**Replies:** 6\
**Last updated:** [February 21, 2023, 11:50pm UTC](https://discuss.elastic.co/t/no-logstash-output-on-windows/326077 "2023-02-21T23:50:09Z")

</div>

Hello, I have been troubleshooting my logstash for some time now. I was following the "Parsing Logs with Logstash" tutorial for Windows and have not been able to see any output with the basic pipeline. Below is my first-…

---

## [Ruby script for auditd EXECVE logs](https://discuss.elastic.co/t/ruby-script-for-auditd-execve-logs/326098)

<div class="topic-metadata">

**Author:** [@JCW](https://discuss.elastic.co/u/JCW)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 10:53pm UTC](https://discuss.elastic.co/t/ruby-script-for-auditd-execve-logs/326098 "2023-02-21T22:53:09Z")

</div>

I want to make a ruby script that makes an extra field for "command" that it parses out of the message that auditd creates, however it does not work and I am unable to figure out why. example log: type=EXECVE msg=audit…

---

## [How to obtain an OpenTelemetry reference to use to manually instrument code?](https://discuss.elastic.co/t/how-to-obtain-an-opentelemetry-reference-to-use-to-manually-instrument-code/325884)

<div class="topic-metadata">

**Author:** [@daniel\_purdew](https://discuss.elastic.co/u/daniel_purdew)\
**Replies:** 6\
**Last updated:** [February 21, 2023, 10:06pm UTC](https://discuss.elastic.co/t/how-to-obtain-an-opentelemetry-reference-to-use-to-manually-instrument-code/325884 "2023-02-21T22:06:24Z")

</div>

Hello, I'm using 1.36.0 of the apm java agent against 7.17.9 apm server. My app has manually instrumented code that I want to integrate with the apm traces. Previously when using opentracing, I did this via just making…

---

## [\[ERROR\] Cannot race. Worker \[22\] has exited prematurely](https://discuss.elastic.co/t/error-cannot-race-worker-22-has-exited-prematurely/325690)

<div class="topic-metadata">

**Author:** [@Utkarsh17](https://discuss.elastic.co/u/Utkarsh17)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 9:40pm UTC](https://discuss.elastic.co/t/error-cannot-race-worker-22-has-exited-prematurely/325690 "2023-02-21T21:40:35Z")

</div>

Hi, I am getting the error -------\>\[ERROR\] Cannot race. Worker \[22\] has exited prematurely. Following is setup and configuration Elastic Search ver 8.5.2 ESRally ver 2.7.0 5 node Kubernetes cluster with 1 controller …

---

## [Elaticsearch cluster back up is failing - "reason":"RepositoryMissingException"](https://discuss.elastic.co/t/elaticsearch-cluster-back-up-is-failing-reason-repositorymissingexception/326074)

<div class="topic-metadata">

**Author:** [@chateesh](https://discuss.elastic.co/u/chateesh)\
**Replies:** 10\
**Last updated:** [February 21, 2023, 9:39pm UTC](https://discuss.elastic.co/t/elaticsearch-cluster-back-up-is-failing-reason-repositorymissingexception/326074 "2023-02-21T21:39:14Z")

</div>

We've backup repository type as S3, and cluster is running as dockerized AWS EC2, recently snapshot process is failing with reason "reason":"RepositoryMissingException". This error is coming from one of the data node. C…

---

## [Why does indexation load create query load?](https://discuss.elastic.co/t/why-does-indexation-load-create-query-load/326055)

<div class="topic-metadata">

**Author:** [@alsyia](https://discuss.elastic.co/u/alsyia)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 9:36pm UTC](https://discuss.elastic.co/t/why-does-indexation-load-create-query-load/326055 "2023-02-21T21:36:32Z")

</div>

Hi everyone, I've noticed when my ES (5.6) cluster is indexing lots of documents the number of queries being answered also increases. I index using the op\_type "create" with predefined ids, so I guess this is just the c…

---

## [Got err with ES API request "no handler found for uri"](https://discuss.elastic.co/t/got-err-with-es-api-request-no-handler-found-for-uri/325820)

<div class="topic-metadata">

**Author:** [@dsafsdzdfaer](https://discuss.elastic.co/u/dsafsdzdfaer)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 9:31pm UTC](https://discuss.elastic.co/t/got-err-with-es-api-request-no-handler-found-for-uri/325820 "2023-02-21T21:31:29Z")

</div>

I got err with the below request : url = ENV\['KIBANA\_ELASTICSEARCH\_SERVICE'\] + '/mib\_prod\*/\_search?filter\_path=hits.hits.\_source.message,hits.hits.\_source.timestamp' header = {'Content-Type' =\> 'application/json'} …

---

## [Elasticsearch monitoring by metricbeat creating index with pattern .ds-.monitoring-es-8-mb-yyyy.mm.dd-\*](https://discuss.elastic.co/t/elasticsearch-monitoring-by-metricbeat-creating-index-with-pattern-ds-monitoring-es-8-mb-yyyy-mm-dd/326084)

<div class="topic-metadata">

**Author:** [@ramdas](https://discuss.elastic.co/u/ramdas)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 2:55pm UTC](https://discuss.elastic.co/t/elasticsearch-monitoring-by-metricbeat-creating-index-with-pattern-ds-monitoring-es-8-mb-yyyy-mm-dd/326084 "2023-02-21T14:55:58Z")

</div>

Hi, I have recently started testing to use metricbeat for elasticsearch's monitoring. i have elasticsearch deployed as statefulset and metricbeat as daemonset on azure kubernetes services cluster. i have configured met…

---

## [Multiline settings for handling edge cases of stdout logs of mixed ndjson and java](https://discuss.elastic.co/t/multiline-settings-for-handling-edge-cases-of-stdout-logs-of-mixed-ndjson-and-java/324189)

<div class="topic-metadata">

**Author:** [@tolland](https://discuss.elastic.co/u/tolland)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 8:40pm UTC](https://discuss.elastic.co/t/multiline-settings-for-handling-edge-cases-of-stdout-logs-of-mixed-ndjson-and-java/324189 "2023-02-21T20:40:47Z")

</div>

Hi, I am currently working with a system that has spring apps running as wars in tomcat, and am currently sending the logs to an ingest pipeline using filebeat. Unfortunately due to legacy reasons, logs are being output…

---

## [How to prevent other nodes from joining my cluster?](https://discuss.elastic.co/t/how-to-prevent-other-nodes-from-joining-my-cluster/326096)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 3\
**Last updated:** [February 21, 2023, 7:25pm UTC](https://discuss.elastic.co/t/how-to-prevent-other-nodes-from-joining-my-cluster/326096 "2023-02-21T19:25:02Z")

</div>

How can I prevent other elasticsearch nodes from joining my cluster. Let's say I initiate a single node elastic cluster like this: (Notice I am using letsencrypt ssl certificates) cluster.initial\_master\_nodes: \["node1…

---

## [Kibana error: There are no living connections](https://discuss.elastic.co/t/kibana-error-there-are-no-living-connections/326097)

<div class="topic-metadata">

**Author:** [@bcantrell](https://discuss.elastic.co/u/bcantrell)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 6:55pm UTC](https://discuss.elastic.co/t/kibana-error-there-are-no-living-connections/326097 "2023-02-21T18:55:55Z")

</div>

Hello all, All servers are running ELK versions 8.1.3 (I know, upgrade is in the works), on Windows 2016. This error started getting spammed on 2023-02-17 after hours in the kibana log file and I cannot figure out how …

---

## [How to add "missing" parameter in multi\_terms aggregations using Java Api Client](https://discuss.elastic.co/t/how-to-add-missing-parameter-in-multi-terms-aggregations-using-java-api-client/326046)

<div class="topic-metadata">

**Author:** [@AlexSafonov](https://discuss.elastic.co/u/AlexSafonov)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 9:52am UTC](https://discuss.elastic.co/t/how-to-add-missing-parameter-in-multi-terms-aggregations-using-java-api-client/326046 "2023-02-21T09:52:52Z")

</div>

Hi! I would like to find a way to add "missing" parameter in multi\_terms aggregations using java api client. "multi\_terms": { "terms": \[ { "field": "workDate" }, { "field": "teamName…

[Previous page](https://discuss.elastic.co/latest.md?page=772)

[Next page](https://discuss.elastic.co/latest.md?page=774)
