# Kibana error randomly

**URL:** <https://discuss.elastic.co/t/kibana-error-randomly/249471>\
**Category:** Kibana\
**Created:** [September 22, 2020, 8:06am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471 "2020-09-22T08:06:40Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![Gentle-Chen](https://avatars.discourse-cdn.com/v4/letter/g/d07c76/32.png) [@Gentle-Chen](https://discuss.elastic.co/u/Gentle-Chen)\
**Post date:** [September 22, 2020, 8:06am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/1 "2020-09-22T08:06:40Z")

</div>

Hi,

I am upgrading Kibana from 6.0 to 7.2.1, and it works fine after upgraded, but i found it often shutdown randomly with below error, do you have any idea?

```auto
events.js:174
      throw er; // Unhandled 'error' event
      ^

Error: read ECONNRESET
    at TCP.onStreamRead (internal/stream_base_commons.js:111:27)
Emitted 'error' event at:
    at emitErrorNT (internal/streams/destroy.js:82:8)
    at emitErrorAndCloseNT (internal/streams/destroy.js:50:3)
    at process._tickCallback (internal/process/next_tick.js:63:19)

```

---

<div class="post-metadata">

**Author:** ![Bamieh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bamieh/32/38730_2.png) [@Bamieh](https://discuss.elastic.co/u/Bamieh)\
**Post date:** [September 22, 2020, 10:40am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/2 "2020-09-22T10:40:13Z")

</div>

Hello,

Connection resets (`ECONNRESET`) might happen for several reasons. Node throws this error when the other side of the TCP conversation abruptly closed its end of the connection. This error log provided is not useful on its own to understand what is happening.

It might be the connection to elasticsearch getting dropped, it might be nodeJS itself erroring out or the container you are running kibana from dropping connections or timing out sockets.

It might be worth collecting other logs to understand what is happening here. You could look at the API server logs to see if it complains about something.

---

<div class="post-metadata">

**Author:** ![Gentle-Chen](https://avatars.discourse-cdn.com/v4/letter/g/d07c76/32.png) [@Gentle-Chen](https://discuss.elastic.co/u/Gentle-Chen)\
**Post date:** [September 23, 2020, 1:13am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/3 "2020-09-23T01:13:00Z")

</div>

hi @Bamieh

During the kibana downtime, i can call localhost:9200 to get elasticsearch server status, and my kibana does not run in docker container.

Btw, may you advise where can I get the API server logs?

---

<div class="post-metadata">

**Author:** ![Mikhail\_Shustov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mikhail_shustov/32/49186_2.png) [@Mikhail\_Shustov](https://discuss.elastic.co/u/Mikhail_Shustov)\
**Post date:** [September 23, 2020, 8:37am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/4 "2020-09-23T08:37:38Z")

</div>

> Btw, may you advise where can I get the API server logs?

`logging.verbose: true` - Set to true to log all events, including system usage information and all requests.  
`elasticsearch.logQueries: true` - Log queries sent to Elasticsearch. Requires logging.verbose set to true. This is useful for seeing the query DSL generated by applications that currently do not have an inspector, for example Timelion and Monitoring.

---

<div class="post-metadata">

**Author:** ![Gentle-Chen](https://avatars.discourse-cdn.com/v4/letter/g/d07c76/32.png) [@Gentle-Chen](https://discuss.elastic.co/u/Gentle-Chen)\
**Post date:** [September 23, 2020, 8:51am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/5 "2020-09-23T08:51:52Z")

</div>

hi @Mikhail_Shustov

both above two config are set up in kibana.yml?

---

<div class="post-metadata">

**Author:** ![Mikhail\_Shustov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mikhail_shustov/32/49186_2.png) [@Mikhail\_Shustov](https://discuss.elastic.co/u/Mikhail_Shustov)\
**Post date:** [September 23, 2020, 9:00am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/6 "2020-09-23T09:00:19Z")

</div>

> both above two config are set up in kibana.yml?

yes

---

<div class="post-metadata">

**Author:** ![Gentle-Chen](https://avatars.discourse-cdn.com/v4/letter/g/d07c76/32.png) [@Gentle-Chen](https://discuss.elastic.co/u/Gentle-Chen)\
**Post date:** [September 23, 2020, 9:04am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/7 "2020-09-23T09:04:24Z")

</div>

> [@Mikhail\_Shustov](#):
>
> elasticsearch.logQueries: true

Thanks, let me try it and wait for the error happen again.

---

<div class="post-metadata">

**Author:** ![Gentle-Chen](https://avatars.discourse-cdn.com/v4/letter/g/d07c76/32.png) [@Gentle-Chen](https://discuss.elastic.co/u/Gentle-Chen)\
**Post date:** [October 13, 2020, 8:03am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/8 "2020-10-13T08:03:53Z")

</div>

hi @Mikhail_Shustov

after i added above two config in kibana.yml, i found the logs like below pic, can you help advise?

 ![kibana log](https://us1.discourse-cdn.com/elastic/original/3X/9/9/999028494ea941e9ea72920a21c93540da5fe51c.png)

PS: when i use kibana 6.0 which directly installed in my pc, the issue does not happen before. After i upgraded to 7.2.1, it happens. Are there anythings i missed during the upgrade?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 10, 2020, 8:03am UTC](https://discuss.elastic.co/t/kibana-error-randomly/249471/9 "2020-11-10T08:03:54Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
