# Mismatch between Kibana totals and direct \_msearch totals Elasticsearch 7.3.0

**URL:** <https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200>\
**Category:** Kibana\
**Created:** [March 18, 2020, 11:58pm UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200 "2020-03-18T23:58:57Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![jimmymacGA](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jimmymacga/32/47144_2.png) [@jimmymacGA](https://discuss.elastic.co/u/jimmymacGA)\
**Post date:** [March 18, 2020, 11:58pm UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200/1 "2020-03-18T23:58:58Z")

</div>

I am having an issue with geospatial queries in Kibana returning different results that a direct \_msearch query.

I copied the query params from the developer tools and posted it directly to my ElasticSearch server in Postman. I copied the URL as is and the query as is and the aggregations are different.

The number shards is the same and no failed shards are reported and the query runs successfully. And for development there is just one server so there are no variations.

What could be the reason for this ?

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [March 19, 2020, 1:02am UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200/2 "2020-03-19T01:02:56Z")

</div>

Can you post the queries you are using and the start of the responses.

Please format your code/logs/config using the `</>` button, or markdown style back ticks. It helps to make things easy to read which helps us help you 🙂

---

<div class="post-metadata">

**Author:** ![Nathan\_Reese](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/nathan_reese/32/84829_2.png) [@Nathan\_Reese](https://discuss.elastic.co/u/Nathan_Reese)\
**Post date:** [March 19, 2020, 3:48am UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200/3 "2020-03-19T03:48:04Z")

</div>

Are you using [Elastic maps](https://www.elastic.co/guide/en/kibana/7.6/maps.html) or coordinate/region map visualization?

---

<div class="post-metadata">

**Author:** ![jimmymacGA](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jimmymacga/32/47144_2.png) [@jimmymacGA](https://discuss.elastic.co/u/jimmymacGA)\
**Post date:** [March 20, 2020, 1:43am UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200/5 "2020-03-20T01:43:21Z")

</div>

`This is the query portion from the \_msearch query in kibana

{"aggs":{"2":{"geohash\_grid":{"field":"location","precision":2},"aggs":{"3":{"geo\_centroid":{"field":"location"}}}}},"size":0,"\_source":{"excludes":},"stored\_fields":["\*"],"script\_fields":{},"docvalue\_fields":[{"field":"@timestamp","format":"date\_time"},{"field":"receiveddatetime","format":"date\_time"}],"query":{"bool":{"must":[{"range":{"@timestamp":{"format":"strict\_date\_optional\_time","gte":"2019-03-20T01:32:34.798Z","lte":"2020-03-20T01:32:34.798Z"}}}],"filter":[{"match\_all":{}}],"should":,"must\_not":}},"timeout":"30000ms"}  
` `

---

<div class="post-metadata">

**Author:** ![jimmymacGA](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jimmymacga/32/47144_2.png) [@jimmymacGA](https://discuss.elastic.co/u/jimmymacGA)\
**Post date:** [March 20, 2020, 1:45am UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200/6 "2020-03-20T01:45:21Z")

</div>

No but I am using a geohash visualizuation in Kibana.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 17, 2020, 1:50am UTC](https://discuss.elastic.co/t/mismatch-between-kibana-totals-and-direct-msearch-totals-elasticsearch-7-3-0/224200/7 "2020-04-17T01:50:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
