# Fields don't appear as expected

**URL:** <https://discuss.elastic.co/t/fields-dont-appear-as-expected/172953>\
**Category:** Kibana\
**Created:** [March 19, 2019, 11:33am UTC](https://discuss.elastic.co/t/fields-dont-appear-as-expected/172953 "2019-03-19T11:33:34Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![gorzek](https://avatars.discourse-cdn.com/v4/letter/g/839c29/32.png) [@gorzek](https://discuss.elastic.co/u/gorzek)\
**Post date:** [March 19, 2019, 11:33am UTC](https://discuss.elastic.co/t/fields-dont-appear-as-expected/172953/1 "2019-03-19T11:33:34Z")

</div>

I have a stack installed in Kubernetes that is as follows:

- Elasticsearch 6.6.1
- Fluent-Bit 1.0.4
- Kibana 6.6.1

Kubernetes metadata (as a JSON object containing fields like "pod\_name" and "host") is passed in to Kibana, but Kibana does not show them as fields in the Discover page. Under "selected fields" there is "kubernetes" with a question mark beside it. If I uncheck "Hide missing fields", I see the fields I expect, such as "kubernetes.pod\_name", though Kibana insists they are not present in the data. I can filter on them and run visualizations without an issue, but cannot get statistics in the "selected field" column since Kibana doesn't believe they are present.

I assume Kibana is just failing to recognize them in the data despite identifying them well enough to put them in the field list. I went as far as blowing away all my data and reinstalling everything from scratch, and see the same issue. I am fairly new to Kibana so it's possible I've just set something up wrong. Any help would be very appreciated.

---

<div class="post-metadata">

**Author:** ![lukas](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/lukas/32/6812_2.png) [@lukas](https://discuss.elastic.co/u/lukas)\
**Post date:** [March 20, 2019, 4:11pm UTC](https://discuss.elastic.co/t/fields-dont-appear-as-expected/172953/2 "2019-03-20T16:11:36Z")

</div>

It kind of depends on your mapping inside Elasticsearch, but in general the field counts that show up in Discover are only for the 500 first results that Discover pulls up, and not for all of the data inside Elasticsearch.

What is your mapping for `kubernetes` and its subfields?

---

<div class="post-metadata">

**Author:** ![gorzek](https://avatars.discourse-cdn.com/v4/letter/g/839c29/32.png) [@gorzek](https://discuss.elastic.co/u/gorzek)\
**Post date:** [March 21, 2019, 10:53am UTC](https://discuss.elastic.co/t/fields-dont-appear-as-expected/172953/3 "2019-03-21T10:53:58Z")

</div>

I have no specific mapping for it, which may be my problem! I will work on getting that in place.

Thank you!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 18, 2019, 10:54am UTC](https://discuss.elastic.co/t/fields-dont-appear-as-expected/172953/4 "2019-04-18T10:54:12Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
