# Kibana view surronding documents global index

**URL:** <https://discuss.elastic.co/t/kibana-view-surronding-documents-global-index/167596>\
**Category:** Kibana\
**Created:** [February 8, 2019, 9:19am UTC](https://discuss.elastic.co/t/kibana-view-surronding-documents-global-index/167596 "2019-02-08T09:19:16Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![mortenb123](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mortenb123/32/37227_2.png) [@mortenb123](https://discuss.elastic.co/u/mortenb123)\
**Post date:** [February 8, 2019, 9:19am UTC](https://discuss.elastic.co/t/kibana-view-surronding-documents-global-index/167596/1 "2019-02-08T09:19:16Z")

</div>

I have an issue with Kibana viewing surrounding documents, it turns out it only does lookup on the "\_id" part not using the "\_index", so it only shows data from latest index in the the index group here "proxylog-\*"

` https://<elasticserver:port>/app/kibana#/context/f1a079c0-f233-11e8-8bf8-43571a2d76e4/proxylog/209463`

turns out it needs a globally unique index on the \_id field, currently our indexes look like this:

> ```
> '{
> "index": {
> "_index": "proxylog-sensiowfdev02-2019-02-08",
> "_type": "proxylog",
> "_id": 209463
> }
> }'
> 
> ```

This refers to the line number in the massive \*.gz file i read in, it is important in duplicate handling and restart. How can I make this composite in a fast way  
Can I just add "\_index" I have no time doing a uuid() generation for all because I need insert rate of \>10K/lines/sec.

Best practices greatly appriciated

---

<div class="post-metadata">

**Author:** ![mortenb123](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mortenb123/32/37227_2.png) [@mortenb123](https://discuss.elastic.co/u/mortenb123)\
**Post date:** [February 8, 2019, 11:03am UTC](https://discuss.elastic.co/t/kibana-view-surronding-documents-global-index/167596/2 "2019-02-08T11:03:45Z")

</div>

I just added: \_index to \_id, then it logs up correctly:

> '{  
> "index": {  
> "\_index": "proxylog-sensiowfdev02-2019-02-08",  
> "\_type": "proxylog",  
> "\_id": "proxylog-sensiowfdev02-2019-02-08:589491"  
> }  
> }'

Now the link in Kibana looks like this:

> https:///app/kibana#/context/f1a079c0-f233-11e8-8bf8-43571a2d76e4/proxylog/proxylog-sensiowfdev02-2019-02-08:594940

---

<div class="post-metadata">

**Author:** ![cjcenizal](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/cjcenizal/32/11216_2.png) [@cjcenizal](https://discuss.elastic.co/u/cjcenizal)\
**Post date:** [February 9, 2019, 1:01am UTC](https://discuss.elastic.co/t/kibana-view-surronding-documents-global-index/167596/3 "2019-02-09T01:01:23Z")

</div>

Glad you were able to find a solution. Thanks for sharing it!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 9, 2019, 1:01am UTC](https://discuss.elastic.co/t/kibana-view-surronding-documents-global-index/167596/4 "2019-03-09T01:01:32Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
