Unfortunately, Kibana's support of array fields is a bit lacking in some areas.
If the field on the document is an array, then if any filter matches that document, it will be included in the results (meaning all IPs will be shown).
There may still be a way to accomplish what you're trying to do, but I'm having a hard time understanding what you want the graph to be. If you were to filter by a single IP what do you want the pie chart to display?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.