# Index creation time missing in \`index\` metricset

**URL:** <https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139>\
**Category:** Beats\
**Tags:** metricbeat\
**Created:** [April 15, 2020, 2:28pm UTC](https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139 "2020-04-15T14:28:23Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Alessio\_Creo](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/alessio_creo/32/43381_2.png) [@Alessio\_Creo](https://discuss.elastic.co/u/Alessio_Creo)\
**Post date:** [April 15, 2020, 2:28pm UTC](https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139/1 "2020-04-15T14:28:23Z")

</div>

Hi,

I'm trying to build a dashboard to gather all the metrics of my Elastic Stack environment using metricbeat data.

Using the `index` metricset in metribeat I've seen that there are missing information as `index_creation_time` reported instead in `.monitoring-es*` indices.

I want to show, in the dashboard, the metrics of the indices created "today" but without the `index_creation_time` field is impossible to achieve without further operation on the metricbeat index.

Is possible to retrieve this info without manipulating or enriching the data with logstash/ingest pipelines?

Thank you very much.

Alessio

---

<div class="post-metadata">

**Author:** ![mtojek](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mtojek/32/63863_2.png) [@mtojek](https://discuss.elastic.co/u/mtojek)\
**Post date:** [April 16, 2020, 7:23am UTC](https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139/2 "2020-04-16T07:23:58Z")

</div>

This information should be in index settings. Could you please use the API to review these settings?

BTW This is ES related issue not Beats.

---

<div class="post-metadata">

**Author:** ![Alessio\_Creo](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/alessio_creo/32/43381_2.png) [@Alessio\_Creo](https://discuss.elastic.co/u/Alessio_Creo)\
**Post date:** [April 16, 2020, 9:44am UTC](https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139/3 "2020-04-16T09:44:02Z")

</div>

Thank you for the reply.

In order to build a simple metric visualization with metricbeat data, that shows how many indices have been created today, I need a field in the metricbeat event that says when the indices have been created, but this specific field is not present.  
This is an example of a REAL metricbeat event

```auto
{
    "@timestamp": "2017-10-12T08:05:34.853Z",
    "beat": {
        "hostname": "host.example.com",
        "name": "host.example.com"
    },
    "elasticsearch": {
        "cluster": {
            "id": "UziYVLPkTTmCzccc6102Bg",
            "name": "elasticsearch"
        },
        "index": {
            "name": "filebeat-7.0.0-alpha1-2018.05.09",
            "total": {
                "docs": {
                    "count": 1,
                    "deleted": 0
                },
                "segments": {
                    "count": 1,
                    "memory": {
                        "bytes": 6983
                    }
                },
                "store": {
                    "size": {
                        "bytes": 19326
                    }
                }
            }
        }
    },
    "metricset": {
        "host": "127.0.0.1:9200",
        "module": "elasticsearch",
        "name": "index",
        "rtt": 115
    },
    "service": {
        "name": "elasticsearch"
    }
}

```

This is an example of a what I would have in a metricbeat event

```auto
    "@timestamp": "2017-10-12T08:05:34.853Z",
    "beat": {
        "hostname": "host.example.com",
        "name": "host.example.com"
    },
    "elasticsearch": {
        "cluster": {
            "id": "UziYVLPkTTmCzccc6102Bg",
            "name": "elasticsearch"
        },
        "index": {
            "created_at":"2017-10-11T08:05:34.853Z"
            "name": "filebeat-7.0.0-alpha1-2018.05.09",
            "total": {
                "docs": {
                    "count": 1,
                    "deleted": 0
                },
                "segments": {
                    "count": 1,
                    "memory": {
                        "bytes": 6983
                    }
                },
                "store": {
                    "size": {
                        "bytes": 19326
                    }
                }
            }
        }
    },
    "metricset": {
        "host": "127.0.0.1:9200",
        "module": "elasticsearch",
        "name": "index",
        "rtt": 115
    },
    "service": {
        "name": "elasticsearch"
    }
}

```

Is the same event but in the `index` object there a `created_at` field.

I apologize if I didn't explain properly my context.

Thank you very much again.

---

<div class="post-metadata">

**Author:** ![mtojek](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mtojek/32/63863_2.png) [@mtojek](https://discuss.elastic.co/u/mtojek)\
**Post date:** [April 17, 2020, 6:40am UTC](https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139/4 "2020-04-17T06:40:43Z")

</div>

How about this? [http://localhost:9200/\_cat/indices?h=i,creation.date.string](http://localhost:9200/_cat/indices?h=i,creation.date.string)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [May 15, 2020, 6:48am UTC](https://discuss.elastic.co/t/index-creation-time-missing-in-index-metricset/228139/5 "2020-05-15T06:48:48Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
