# Dashboard / Visualization to import

**URL:** <https://discuss.elastic.co/t/dashboard-visualization-to-import/26034>\
**Category:** Kibana\
**Created:** [July 22, 2015, 4:09am UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034 "2015-07-22T04:09:53Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![bdunbar](https://avatars.discourse-cdn.com/v4/letter/b/a3d4f5/32.png) [@bdunbar](https://discuss.elastic.co/u/bdunbar)\
**Post date:** [July 22, 2015, 4:09am UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/1 "2015-07-22T04:09:53Z")

</div>

I'm feeding log data from eight apache hosts into Elasticsearch, then using Kibana 4 to show the end users graphs, totals, and so on.

I see examples on the net where _others_ have designed some very nifty visualizations and dashboards. Is there a repository where one can grab the json and import?

It's not that I'm _opposed_ to the hard work, but if someone has already done it, I don't want to re-invent the wheel.

Thanks in advance.

---

<div class="post-metadata">

**Author:** ![tbragin](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tbragin/32/45166_2.png) [@tbragin](https://discuss.elastic.co/u/tbragin)\
**Post date:** [July 22, 2015, 1:49pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/2 "2015-07-22T13:49:50Z")

</div>

Hi Brian - There is currently no centralized repository for these types of examples and templates. For now, your best bet is to Google for what you want and see what is available in the community. Many folks expose sample configurations in their blogs or Github repositories.

A couple of things to watch out for, as you search:

- At the moment, a lot of examples are Kibana3-centric, and that dashboard format is not compatible with Kibana 4.
- Any dashboard you find with the community will be tied to specific field names and types indexed in Elasticsearch, so you'll need to obtain the Logstash config they used and also their Elasticsearch index template, if they changed it from the default.
- Your log file format needs to be the same as anticipated by the Logstash config above - if you made changes to your log configuration to produce logs of different format than the default, you'll likely need to adjust your grok pattern in Logstash config.
- Kibana 4 json export does not include the index pattern on top of which you defined the dashboard, so you'll need to add that manually.
- There are probably some other gotchas I forgot 🙂

I went ahead and exported my Logstash config and a sample Kibana 4 dashboard based on Apache2 logs for you to try. To use these files:

1. Make sure ELK stack is installed per Getting Started docs online
2. Make sure you are using the same or similar [Logstash config](https://gist.github.com/tbragin/eec3d30e962af9a61074) in your setup, so that you have the same fields available in Elasticsearch
3. Make sure your Apache log format is of the same format as this [sample file](https://gist.github.com/tbragin/01c5274aa17c4e0214cd)
4. Manually configure the index pattern in Kibana to be **[logstash-]YYYY.MM.DD**
5. Import the [sample Kibana dashboard](https://gist.github.com/tbragin/715c585c4d2ae7c273ff) in Kibana 4 Settings \>\> Object page

Let me know if this works for you!

---

<div class="post-metadata">

**Author:** ![bdunbar](https://avatars.discourse-cdn.com/v4/letter/b/a3d4f5/32.png) [@bdunbar](https://discuss.elastic.co/u/bdunbar)\
**Post date:** [July 22, 2015, 1:53pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/3 "2015-07-22T13:53:41Z")

</div>

I'll fool around with those this morning, and will report back.

Thank you, Tanya!

---

<div class="post-metadata">

**Author:** ![bdunbar](https://avatars.discourse-cdn.com/v4/letter/b/a3d4f5/32.png) [@bdunbar](https://discuss.elastic.co/u/bdunbar)\
**Post date:** [July 22, 2015, 2:48pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/4 "2015-07-22T14:48:28Z")

</div>

> [@tbragin](#):
>
> Manually configure the index pattern in Kibana to be [logstash-]YYYY.MM.DD

Interesting: my index pattern is logstash-\* - I think this was setup by direction of the 'getting started' guide.

Is there a benefit to [logstash-]YYYY.MM.DD ?

---

<div class="post-metadata">

**Author:** ![magnusbaeck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/magnusbaeck/32/44943_2.png) [@magnusbaeck](https://discuss.elastic.co/u/magnusbaeck)\
**Post date:** [July 22, 2015, 2:58pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/5 "2015-07-22T14:58:39Z")

</div>

> Is there a benefit to [logstash-]YYYY.MM.DD ?

Yes, it allows Kibana to restrict queries to only the indexes that are covered by the date range you've chosen. No point in searching logstash-2015.05.01 if you're only interested in the past week's log, right?

---

<div class="post-metadata">

**Author:** ![tbragin](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tbragin/32/45166_2.png) [@tbragin](https://discuss.elastic.co/u/tbragin)\
**Post date:** [July 22, 2015, 3:39pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/6 "2015-07-22T15:39:04Z")

</div>

Interestingly, some of these nuances will go away with enhancements enabled by Elasticsearch 2.0: [https://github.com/elastic/kibana/issues/4342](https://github.com/elastic/kibana/issues/4342)

---

<div class="post-metadata">

**Author:** ![bdunbar](https://avatars.discourse-cdn.com/v4/letter/b/a3d4f5/32.png) [@bdunbar](https://discuss.elastic.co/u/bdunbar)\
**Post date:** [July 22, 2015, 7:08pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/7 "2015-07-22T19:08:04Z")

</div>

> [@magnusbaeck](#):
>
> Yes, it allows Kibana to restrict queries to only the indexes that are covered by the date range you've chosen

That has improved performance 1000%. Subjectively speaking, of course, but man: kibana is doing everything way, way, faster. Thanks for the explanation, and thanks Tanya for the hint.

---

<div class="post-metadata">

**Author:** ![bdunbar](https://avatars.discourse-cdn.com/v4/letter/b/a3d4f5/32.png) [@bdunbar](https://discuss.elastic.co/u/bdunbar)\
**Post date:** [July 22, 2015, 7:47pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/8 "2015-07-22T19:47:41Z")

</div>

> [@tbragin](#):
>
> Let me know if this works for you!

It did! Two of the visualizations error 'Could not locate that index-pattern-field' for useragent.device.raw and useragenent.os.raw but I can figure that out, I think.

> [@tbragin](#):
>
> There is currently no centralized repository for these types of examples and templates.

Something like that could be super helpful. I've seen a few very slick looking dashboards/ visualizations with no idea how to duplicate the work, except pick through them step by step. That's great for _learning_, but it's hell on deadlines.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 2:15pm UTC](https://discuss.elastic.co/t/dashboard-visualization-to-import/26034/9 "2017-07-06T14:15:56Z")

</div>


