# Latest

**URL:** https://discuss.elastic.co/latest.md?page=774

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 775

---

## [Compare 2 fields and drop the matching](https://discuss.elastic.co/t/compare-2-fields-and-drop-the-matching/326032)

<div class="topic-metadata">

**Author:** [@Dr.Dark92](https://discuss.elastic.co/u/Dr.Dark92)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 5:27pm UTC](https://discuss.elastic.co/t/compare-2-fields-and-drop-the-matching/326032 "2023-02-21T17:27:45Z")

</div>

Hi, I am trying to make a Dashbaord for Bind9 engine, in brief i have 3 indexes, first index for Blacklist logs second index for whitelist logs third index for resolver logs. the goal is : to drop any blacklisted d…

---

## [An alias for the node.name settings](https://discuss.elastic.co/t/an-alias-for-the-node-name-settings/326082)

<div class="topic-metadata">

**Author:** [@Roberto\_B](https://discuss.elastic.co/u/Roberto_B)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 4:52pm UTC](https://discuss.elastic.co/t/an-alias-for-the-node-name-settings/326082 "2023-02-21T16:52:40Z")

</div>

Hi all, it could be a strange question, but i need to have an alias for the same host in the cluster, for example: if i have a host with node.name: host1 I would like to have an alias for the same host like: "host1.fak…

---

## [Financial Year in Controls Visualization Options](https://discuss.elastic.co/t/financial-year-in-controls-visualization-options/324873)

<div class="topic-metadata">

**Author:** [@Sandeep\_Raju](https://discuss.elastic.co/u/Sandeep_Raju)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 4:01pm UTC](https://discuss.elastic.co/t/financial-year-in-controls-visualization-options/324873 "2023-02-21T16:01:40Z")

</div>

Hi all, I'm trying to display control visualization to show reports of a dashboard for 3 financial years ( Apr2021-Mar2022 & so on). But I cannot show this financial year in my controls option? from my date field, I c…

---

## [Nest Fuzzy Search per Account Field](https://discuss.elastic.co/t/nest-fuzzy-search-per-account-field/326093)

<div class="topic-metadata">

**Author:** [@Andreas1](https://discuss.elastic.co/u/Andreas1)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 3:40pm UTC](https://discuss.elastic.co/t/nest-fuzzy-search-per-account-field/326093 "2023-02-21T15:40:29Z")

</div>

I am struggling with Elasticsearch using NEST for C#. Let's assume an index of UserAccounts which looks like \[{ AccountId: 1, Name: "Test Account", Email: "test@test.com", Phone: "01234/5678", Street: "test Street 1", Z…

---

## [Snmptrap to logstash](https://discuss.elastic.co/t/snmptrap-to-logstash/326092)

<div class="topic-metadata">

**Author:** [@diegz](https://discuss.elastic.co/u/diegz)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 3:35pm UTC](https://discuss.elastic.co/t/snmptrap-to-logstash/326092 "2023-02-21T15:35:45Z")

</div>

Hello, I would like to send traps retrieved via the snmptrap service on RHEL 8 to logstash to store them on Elasticsearch. As the snmptrap input module does not support v3, I installed snmptrapd on the logstash server …

---

## [Elastic Defend integration on Windows Servers influences results from system.process dataset](https://discuss.elastic.co/t/elastic-defend-integration-on-windows-servers-influences-results-from-system-process-dataset/326087)

<div class="topic-metadata">

**Author:** [@norgro2601](https://discuss.elastic.co/u/norgro2601)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 3:22pm UTC](https://discuss.elastic.co/t/elastic-defend-integration-on-windows-servers-influences-results-from-system-process-dataset/326087 "2023-02-21T15:22:31Z")

</div>

I have added the Elastic Defend integration to Policies for Windows and Linux Servers today. After activation, the system.process dataset on the Windows servers doesn't report elastic-agent.exe as a running process any …

---

## [How to change valueColor to linear-gradient color of progress wheel in kibana canvas?](https://discuss.elastic.co/t/how-to-change-valuecolor-to-linear-gradient-color-of-progress-wheel-in-kibana-canvas/326086)

<div class="topic-metadata">

**Author:** [@RJ\_Chen](https://discuss.elastic.co/u/RJ_Chen)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 3:07pm UTC](https://discuss.elastic.co/t/how-to-change-valuecolor-to-linear-gradient-color-of-progress-wheel-in-kibana-canvas/326086 "2023-02-21T15:07:47Z")

</div>

Hi, I want to change progress wheel's valueColor to linear-gradient color , I try to use expression editor and css to change it . but it's not work.... \>\<

---

## [Logstash Grok Path "\\" character](https://discuss.elastic.co/t/logstash-grok-path-character/326083)

<div class="topic-metadata">

**Author:** [@GinkoLucas](https://discuss.elastic.co/u/GinkoLucas)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 3:03pm UTC](https://discuss.elastic.co/t/logstash-grok-path-character/326083 "2023-02-21T15:03:42Z")

</div>

Hello, I have a problem that seems simple to solve, but I'm having trouble solving it. I have to grok a path, here is a path similar to mine: D:\\MyFiles\\allmylogs.log I have a problem with the "\\". How can I inclu…

---

## [Filter the list of shown in Kibana Dashboard Control](https://discuss.elastic.co/t/filter-the-list-of-shown-in-kibana-dashboard-control/324681)

<div class="topic-metadata">

**Author:** [@DougR](https://discuss.elastic.co/u/DougR)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 2:04pm UTC](https://discuss.elastic.co/t/filter-the-list-of-shown-in-kibana-dashboard-control/324681 "2023-02-21T14:04:18Z")

</div>

I am creating a dashboard in Kibana, and I'm using a Control for the first time, rather than an Input Control, as I have in the past. The issue: I'm using a lens that only draws data from a subset of hosts by applying a…

---

## [I have this code, and it is getting information from a database, and I would like this code to be able to see it in a graph. Can one help me?](https://discuss.elastic.co/t/i-have-this-code-and-it-is-getting-information-from-a-database-and-i-would-like-this-code-to-be-able-to-see-it-in-a-graph-can-one-help-me/325503)

<div class="topic-metadata">

**Author:** [@edson](https://discuss.elastic.co/u/edson)\
**Replies:** 7\
**Last updated:** [February 21, 2023, 2:07pm UTC](https://discuss.elastic.co/t/i-have-this-code-and-it-is-getting-information-from-a-database-and-i-would-like-this-code-to-be-able-to-see-it-in-a-graph-can-one-help-me/325503 "2023-02-21T14:07:57Z")

</div>

{ "name": "server5", "middleware": \[ { "name": "mq", "version": "9.2", "status": "green" }, { "name": "was", "version": "9", "status": "green" } \] }

---

## [Elasticsearch snapshot working](https://discuss.elastic.co/t/elasticsearch-snapshot-working/326067)

<div class="topic-metadata">

**Author:** [@Vikrant\_Aggarwal](https://discuss.elastic.co/u/Vikrant_Aggarwal)\
**Replies:** 3\
**Last updated:** [February 21, 2023, 2:01pm UTC](https://discuss.elastic.co/t/elasticsearch-snapshot-working/326067 "2023-02-21T14:01:38Z")

</div>

Hello Experts, I have theoretical question about working of ES snapshots. I know snapshots are incremental. We have one cluster in which we are keeping the data forever, we take the snapshot on daily basis, we want to …

---

## [How to display the value in x-axis of a stacked bar only once instead of multiple times?](https://discuss.elastic.co/t/how-to-display-the-value-in-x-axis-of-a-stacked-bar-only-once-instead-of-multiple-times/324434)

<div class="topic-metadata">

**Author:** [@Srikanth\_V](https://discuss.elastic.co/u/Srikanth_V)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 1:54pm UTC](https://discuss.elastic.co/t/how-to-display-the-value-in-x-axis-of-a-stacked-bar-only-once-instead-of-multiple-times/324434 "2023-02-21T13:54:30Z")

</div>

Hello, I am currently using a histogram date interval as year and it seems to be appearing multiple times in the x-axis. Is there a way, we can restrict this value to be shown only once? Thanks in advance.

---

## [Why the messages I collected are not displayed completely](https://discuss.elastic.co/t/why-the-messages-i-collected-are-not-displayed-completely/326073)

<div class="topic-metadata">

**Author:** [@NardRage](https://discuss.elastic.co/u/NardRage)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 1:51pm UTC](https://discuss.elastic.co/t/why-the-messages-i-collected-are-not-displayed-completely/326073 "2023-02-21T13:51:46Z")

</div>

\[错误\] %1 (%2) %3 错误的页面链接 (错误 %4) 在 B 树中检测到 (ObjectId：%5，PgnoRoot：%6) 的数据库 %7 (%8 =\> %9，%10)。 标记：%11 致命： %12

---

## [Fleet Server - Filebeat Using HTTP instead of HTTPS](https://discuss.elastic.co/t/fleet-server-filebeat-using-http-instead-of-https/325657)

<div class="topic-metadata">

**Author:** [@pritchey](https://discuss.elastic.co/u/pritchey)\
**Replies:** 8\
**Last updated:** [February 21, 2023, 1:38pm UTC](https://discuss.elastic.co/t/fleet-server-filebeat-using-http-instead-of-https/325657 "2023-02-21T13:38:59Z")

</div>

I have a self-hosted elastic stack running 8.6.1. I'm trying to get fleet running but I'm hitting a wall on one part. The fleet server and any agents show as "healthy" but no data every shows up. Digging into things I…

---

## [How to customize labels for Services？](https://discuss.elastic.co/t/how-to-customize-labels-for-services/326040)

<div class="topic-metadata">

**Author:** [@OMG](https://discuss.elastic.co/u/OMG)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 1:11pm UTC](https://discuss.elastic.co/t/how-to-customize-labels-for-services/326040 "2023-02-21T13:11:20Z")

</div>

In the "ElastiFlow: Overview", "ElastiFlow: Top Talkers" and other interfaces have services display modules, the well-known TCP or UDP connection has been translated into the corresponding service name, I want to add a p…

---

## [Logstash webhook when parsing is done](https://discuss.elastic.co/t/logstash-webhook-when-parsing-is-done/326050)

<div class="topic-metadata">

**Author:** [@Jirka\_Liska](https://discuss.elastic.co/u/Jirka_Liska)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 12:59pm UTC](https://discuss.elastic.co/t/logstash-webhook-when-parsing-is-done/326050 "2023-02-21T12:59:33Z")

</div>

Hello community! I'm currently working on integration elastic stack with my custom application. I'm trying to find out if possible for logstash to create webook call when processing is done? The workload is: File upload…

---

## [Lower precision\_threshold in cardinality takes more time than higher](https://discuss.elastic.co/t/lower-precision-threshold-in-cardinality-takes-more-time-than-higher/326063)

<div class="topic-metadata">

**Author:** [@Maya\_Simhi](https://discuss.elastic.co/u/Maya_Simhi)\
**Replies:** 0\
**Last updated:** [February 21, 2023, 11:56am UTC](https://discuss.elastic.co/t/lower-precision-threshold-in-cardinality-takes-more-time-than-higher/326063 "2023-02-21T11:56:20Z")

</div>

Hi, I'm using cardinality aggregation as a sub aggregation inside a term aggregation. I read a lot of explanations from Elasticsearch that says the higher the precision\_threshold the more time the query takes. but I se…

---

## [How to run a ruby function that updates and event and clears the empty fields recursively](https://discuss.elastic.co/t/how-to-run-a-ruby-function-that-updates-and-event-and-clears-the-empty-fields-recursively/326057)

<div class="topic-metadata">

**Author:** [@vilman](https://discuss.elastic.co/u/vilman)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 11:12am UTC](https://discuss.elastic.co/t/how-to-run-a-ruby-function-that-updates-and-event-and-clears-the-empty-fields-recursively/326057 "2023-02-21T11:12:30Z")

</div>

I got an event which sometimes contain empty fields. I would like to delete those fields which are null and those which are empty.

---

## [Unwanted line break of numerical value in tooltip](https://discuss.elastic.co/t/unwanted-line-break-of-numerical-value-in-tooltip/325706)

<div class="topic-metadata">

**Author:** [@Jonas\_S](https://discuss.elastic.co/u/Jonas_S)\
**Replies:** 4\
**Last updated:** [February 21, 2023, 10:57am UTC](https://discuss.elastic.co/t/unwanted-line-break-of-numerical-value-in-tooltip/325706 "2023-02-21T10:57:50Z")

</div>

Hello, when adding a break down to visualizations, the tooltip width can be to small, so a line break is made. Which is ok, by itself, but it results in also adding a line break in the numerical value in the end: The…

---

## [Problem with storage ECK 2.6.1](https://discuss.elastic.co/t/problem-with-storage-eck-2-6-1/325973)

<div class="topic-metadata">

**Author:** [@ccaillet](https://discuss.elastic.co/u/ccaillet)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 10:49am UTC](https://discuss.elastic.co/t/problem-with-storage-eck-2-6-1/325973 "2023-02-21T10:49:50Z")

</div>

Hi all I've a test cluster with 6 nodes with 80GB of PVC each. And i've the following behaviour which is very strange : I've one shard on a a node this shard is about 15GB and the free size is about 18GB so I've 47GB wh…

---

## [High Level Rest Client Java initialisation slowing down the application](https://discuss.elastic.co/t/high-level-rest-client-java-initialisation-slowing-down-the-application/326044)

<div class="topic-metadata">

**Author:** [@anis.tajouri](https://discuss.elastic.co/u/anis.tajouri)\
**Replies:** 2\
**Last updated:** [February 21, 2023, 10:34am UTC](https://discuss.elastic.co/t/high-level-rest-client-java-initialisation-slowing-down-the-application/326044 "2023-02-21T10:34:45Z")

</div>

Using following java code initialising the High Level Rest Client in a web service, without performing any elasticsearch request, I have additional 250ms when calling the web service. commenting this code, I have less a…

---

## [How to remove duplication when aggregating data for visualization?](https://discuss.elastic.co/t/how-to-remove-duplication-when-aggregating-data-for-visualization/324407)

<div class="topic-metadata">

**Author:** [@tinrik](https://discuss.elastic.co/u/tinrik)\
**Replies:** 0\
**Last updated:** [February 1, 2023, 10:10am UTC](https://discuss.elastic.co/t/how-to-remove-duplication-when-aggregating-data-for-visualization/324407 "2023-02-01T10:10:12Z")

</div>

Hi! Based on answers from other posts, I learned that I need to upload "normalized data" to Kibana, which may come at the cost of sending duplicated data: { file: foo, project: foo, count: 123, id: 1 } { file: foo, pr…

---

## [Embed dashboard and/or kibana anonymous on ElasticCloud](https://discuss.elastic.co/t/embed-dashboard-and-or-kibana-anonymous-on-elasticcloud/324996)

<div class="topic-metadata">

**Author:** [@hagud](https://discuss.elastic.co/u/hagud)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 10:17am UTC](https://discuss.elastic.co/t/embed-dashboard-and-or-kibana-anonymous-on-elasticcloud/324996 "2023-02-08T10:17:02Z")

</div>

Good morning We are testing Elastic Cloud and we do not know if it possible or how could be offer public\_url iframe to selected dashboard or graphs. I have seen tha tlocal installation is able to share anonymous iframe…

---

## [CSV export - Please use Kibana feature privileges instead](https://discuss.elastic.co/t/csv-export-please-use-kibana-feature-privileges-instead/325722)

<div class="topic-metadata">

**Author:** [@rschirin](https://discuss.elastic.co/u/rschirin)\
**Replies:** 0\
**Last updated:** [February 16, 2023, 10:44am UTC](https://discuss.elastic.co/t/csv-export-please-use-kibana-feature-privileges-instead/325722 "2023-02-16T10:44:12Z")

</div>

Hey there, I saw that reporting\_user role is deprecated so I have to enable the correct privileges using Spaces. I follow this official page Kibana doc, but I am still getting the error "Sorry, you don't have access to…

---

## [Find a pattern within field's value using regular expression Kibana UI](https://discuss.elastic.co/t/find-a-pattern-within-fields-value-using-regular-expression-kibana-ui/324885)

<div class="topic-metadata">

**Author:** [@aklimo](https://discuss.elastic.co/u/aklimo)\
**Replies:** 0\
**Last updated:** [February 7, 2023, 10:28am UTC](https://discuss.elastic.co/t/find-a-pattern-within-fields-value-using-regular-expression-kibana-ui/324885 "2023-02-07T10:28:19Z")

</div>

Hello, I am trying to find a pattern within the field using regular expression and it's not working the way I think it should. The field is message.ApiData.ResponseBody and it contains a JSON response. It is a collecti…

---

## [Is it possible to capture all the documents returned by a particular Kibana dashboard?](https://discuss.elastic.co/t/is-it-possible-to-capture-all-the-documents-returned-by-a-particular-kibana-dashboard/325732)

<div class="topic-metadata">

**Author:** [@eeijlar](https://discuss.elastic.co/u/eeijlar)\
**Replies:** 0\
**Last updated:** [February 16, 2023, 12:08pm UTC](https://discuss.elastic.co/t/is-it-possible-to-capture-all-the-documents-returned-by-a-particular-kibana-dashboard/325732 "2023-02-16T12:08:09Z")

</div>

I took a Saved Session for a Kibana dashboard, and did inspect on it, which returned this: { "timeRange": { "from": "2023-02-16T09:49:46.292Z", "to": "2023-02-16T10:08:50.981Z" }, "query": { "language"…

---

## [How many Aliases can an Index have?](https://discuss.elastic.co/t/how-many-aliases-can-an-index-have/325953)

<div class="topic-metadata">

**Author:** [@tbart01](https://discuss.elastic.co/u/tbart01)\
**Replies:** 7\
**Last updated:** [February 21, 2023, 10:04am UTC](https://discuss.elastic.co/t/how-many-aliases-can-an-index-have/325953 "2023-02-21T10:04:24Z")

</div>

We have an index with some 250,000 aliases, and rapidly growing. Are there any known limits that we should be aware of? We were not able to find any concrete information searching the web/documentation. Lately, we've no…

---

## [Audio in Canvas](https://discuss.elastic.co/t/audio-in-canvas/326043)

<div class="topic-metadata">

**Author:** [@AdityaKhajuria](https://discuss.elastic.co/u/AdityaKhajuria)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 9:58am UTC](https://discuss.elastic.co/t/audio-in-canvas/326043 "2023-02-21T09:58:11Z")

</div>

Hi ELK team, Is there a way i can use and play audio file in Kibana Canvas or Dashboard? If not, is it possible to implement the same by some external plugins or any other way around. Thank you

---

## [How can I access elasticsearch cluster created by docker compose by using actual ip address?](https://discuss.elastic.co/t/how-can-i-access-elasticsearch-cluster-created-by-docker-compose-by-using-actual-ip-address/326037)

<div class="topic-metadata">

**Author:** [@LongKang\_Fan](https://discuss.elastic.co/u/LongKang_Fan)\
**Replies:** 1\
**Last updated:** [February 21, 2023, 9:36am UTC](https://discuss.elastic.co/t/how-can-i-access-elasticsearch-cluster-created-by-docker-compose-by-using-actual-ip-address/326037 "2023-02-21T09:36:26Z")

</div>

Hi Community. I am following the instructions in this tutorial -- Start a multi-node cluster with Docker: I could access Elasticsearch by using this command "curl --cacert ca.crt -u elastic:rogerfan https://localhost:…

---

## [Problem with running kibana](https://discuss.elastic.co/t/problem-with-running-kibana/326034)

<div class="topic-metadata">

**Author:** [@reza\_setareh](https://discuss.elastic.co/u/reza_setareh)\
**Replies:** 4\
**Last updated:** [February 21, 2023, 8:54am UTC](https://discuss.elastic.co/t/problem-with-running-kibana/326034 "2023-02-21T08:54:56Z")

</div>

hi everybody.i got error when i run kibana.bat this is error below Unable to retrieve version information from Elasticsearch nodes. security\_exception: \[security\_exception\] Reason: missing authentication credentials for…

[Previous page](https://discuss.elastic.co/latest.md?page=773)

[Next page](https://discuss.elastic.co/latest.md?page=775)
