# Add \`\_id\` field to visualization

**URL:** <https://discuss.elastic.co/t/add-id-field-to-visualization/364415>\
**Category:** Kibana\
**Created:** [August 5, 2024, 7:52pm UTC](https://discuss.elastic.co/t/add-id-field-to-visualization/364415 "2024-08-05T19:52:42Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![hughes](https://avatars.discourse-cdn.com/v4/letter/h/58956e/32.png) [@hughes](https://discuss.elastic.co/u/hughes)\
**Post date:** [August 5, 2024, 7:52pm UTC](https://discuss.elastic.co/t/add-id-field-to-visualization/364415/1 "2024-08-05T19:52:42Z")

</div>

Is there a way to add the `_id` meta field to a table visualization?

 ![image (10)](https://us1.discourse-cdn.com/elastic/original/3X/1/e/1e60680b7eadc7a9cdef7eca517285f7e700d538.png)  
 ![image (11)](https://us1.discourse-cdn.com/elastic/original/3X/2/0/20c58360018d57cd04f4a17c20bd5cb07b2a60df.png)

---

<div class="post-metadata">

**Author:** ![czek0](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/czek0/32/136480_2.png) [@czek0](https://discuss.elastic.co/u/czek0)\
**Post date:** [August 6, 2024, 8:01am UTC](https://discuss.elastic.co/t/add-id-field-to-visualization/364415/2 "2024-08-06T08:01:01Z")

</div>

In most integrations, each document has metadata associated with it, such as the `_id` metadata fields. Try deleting "\_id" in the search bar and searching again. IT could also be problem with the data view. Try refreshing or replicating the view in a new view and see if there are any changes. You can also check each individual winlogbeat\* index and check individually that the \_id metafield shows up.  
🙂 hope this helps

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [August 6, 2024, 12:30pm UTC](https://discuss.elastic.co/t/add-id-field-to-visualization/364415/3 "2024-08-06T12:30:11Z")

</div>

> [@hughes](#):
>
> Is there a way to add the `_id` meta field to a table visualization?

The `_id` field is [restricted](https://www.elastic.co/guide/en/elasticsearch/reference/current/mapping-id-field.html) from use in aggregations, sorting and scripting, that's why you cannot use it in a visualization.

If you want you need to duplicate this field into another one, how you do that depends on how are you indexing your data.

Are you using elastic agent integrations? If so, you would need to create a [custom ingest pipeline](https://www.elastic.co/guide/en/fleet/current/data-streams-pipeline-tutorial.html) and use a `set` processor to copy the `_id` field to another field, like `searchable_id` or any name you want.

> [@czek0](#):
>
> Try deleting "\_id" and searching again

It is not possible to do that, the `_id` field cannot be deleted.

---

<div class="post-metadata">

**Author:** ![czek0](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/czek0/32/136480_2.png) [@czek0](https://discuss.elastic.co/u/czek0)\
**Post date:** [August 6, 2024, 1:46pm UTC](https://discuss.elastic.co/t/add-id-field-to-visualization/364415/4 "2024-08-06T13:46:34Z")

</div>

Thanks for correcting me, I meant "delete \_id " from the search bar text box. Now that I look again, I agree with you, the \_id is restricted from aggregations
