# \[bug\] setup.dashboards.index not working for filebeat nor winlogbeat

**URL:** <https://discuss.elastic.co/t/bug-setup-dashboards-index-not-working-for-filebeat-nor-winlogbeat/274260>\
**Category:** Beats\
**Tags:** filebeat, winlogbeat\
**Created:** [May 27, 2021, 7:48pm UTC](https://discuss.elastic.co/t/bug-setup-dashboards-index-not-working-for-filebeat-nor-winlogbeat/274260 "2021-05-27T19:48:04Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![gschanuel](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/gschanuel/32/89371_2.png) [@gschanuel](https://discuss.elastic.co/u/gschanuel)\
**Post date:** [May 27, 2021, 7:48pm UTC](https://discuss.elastic.co/t/bug-setup-dashboards-index-not-working-for-filebeat-nor-winlogbeat/274260/1 "2021-05-27T19:48:04Z")

</div>

Hello there!

I'm using ELK 7.13.0.  
After setting `setup.dashboards.index` and `setup.dashboards.enabled: true`, Dashboards, searches and visualizations are loaded, but Dashboads shows  
`Could not locate that index-pattern (id: winlogbeat-*)`  
`Could not locate that index-pattern (id: filebeat-*)`

[In this post](https://discuss.elastic.co/t/how-can-we-use-the-beats-provided-kibana-dashboards-but-use-a-custom-index-pattern-name/271282/2) it's said that

> The index pattern is hard coded

but this goes against [the current Filebeat Reference](https://www.elastic.co/guide/en/beats/filebeat/current/configuration-dashboards.html#_setup_dashboards_index)

Below are the relevant parts of both my winlogbeat.yml and filebeat.yml config files

```auto
#winlogbeat.yml:
setup.dashboards.enabled: true
setup.dashboards.index: "activedirectory-*"
setup.kibana:
  host: "https://kibana.foo.bar"
  space.id: "activedirectory"

```

```auto
#filebeat.yml:
    setup.dashboards.enabled: true
    setup.dashboards.index: "azure-*"
    setup.kibana:
      host: "https://kibana.foo.bar"
      space.id: "azure"

```

~~Also, for filebeat, I'm using o365 module but all dashboards are installed, leaving kind of a mess in my space, no possible [setup.dashboards.beat](https://www.elastic.co/guide/en/beats/filebeat/current/configuration-dashboards.html#_setup_dashboards_beat) setting could prevent it. I tried a handful of settings as `"O365"`, `"Filebeat-O365-Audit"`, `"O365-Audit"`, `"Filebeat-O365"`, `"o365audit"`, `"Filebeat o365`, `"o365"` with no success. There could be a list of accepted values in the reference page~~  
_edit: I'm posting the o365 issue in another thread to not mix things up here_

---

<div class="post-metadata">

**Author:** ![legoguy1000](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/legoguy1000/32/54301_2.png) [@legoguy1000](https://discuss.elastic.co/u/legoguy1000)\
**Post date:** [May 27, 2021, 11:43pm UTC](https://discuss.elastic.co/t/bug-setup-dashboards-index-not-working-for-filebeat-nor-winlogbeat/274260/2 "2021-05-27T23:43:44Z")

</div>

Just so I fully understand, u tried to change the index pattern of the dashboards using the setting and it loaded them but didn't appear to have any affect?

---

<div class="post-metadata">

**Author:** ![gschanuel](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/gschanuel/32/89371_2.png) [@gschanuel](https://discuss.elastic.co/u/gschanuel)\
**Post date:** [May 27, 2021, 11:45pm UTC](https://discuss.elastic.co/t/bug-setup-dashboards-index-not-working-for-filebeat-nor-winlogbeat/274260/3 "2021-05-27T23:45:25Z")

</div>

Correct!  
The dashboars were loaded but still using the same default index pattern used by each beat client

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 25, 2021, 1:45am UTC](https://discuss.elastic.co/t/bug-setup-dashboards-index-not-working-for-filebeat-nor-winlogbeat/274260/4 "2021-06-25T01:45:37Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
