# Need help to convert fielddata to doc\_values

**URL:** <https://discuss.elastic.co/t/need-help-to-convert-fielddata-to-doc-values/172169>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [March 13, 2019, 2:34pm UTC](https://discuss.elastic.co/t/need-help-to-convert-fielddata-to-doc-values/172169 "2019-03-13T14:34:46Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![pastorsx](https://avatars.discourse-cdn.com/v4/letter/p/58956e/32.png) [@pastorsx](https://discuss.elastic.co/u/pastorsx)\
**Post date:** [March 13, 2019, 2:34pm UTC](https://discuss.elastic.co/t/need-help-to-convert-fielddata-to-doc-values/172169/1 "2019-03-13T14:34:46Z")

</div>

Hi all,

I have a cluster and we use ES to index our data. We then use Kibana to display those all in different dashboards, but we think the memory usage by ES is just way too much and we cannot fix the issue.

I read about doc\_values vs fielddata... so my question is how can we force data to be sent as doc\_values. ES is fed by either filebeat or metricbeat.... we are getting about 10000 hits/min from filebeat and 34000 hits/min from metricbeat.

How can I force data to be doc\_values? Where can that be setup?.. I saw templates from logstash to ES that could be used... although it seems per .... but I am not using logstash and it seems to be done by fields but metricbeat has 1673 fields and filebeat 402.... that can't be updated indidually, there must be something big I am missing. Can you please point me out in the right direction?

thank you in advance

---

<div class="post-metadata">

**Author:** ![mobidyc](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mobidyc/32/42027_2.png) [@mobidyc](https://discuss.elastic.co/u/mobidyc)\
**Post date:** [March 16, 2019, 4:16pm UTC](https://discuss.elastic.co/t/need-help-to-convert-fielddata-to-doc-values/172169/2 "2019-03-16T16:16:22Z")

</div>

Hello,

it depends of your \*beat version.  
this doc should help a lot:  
[https://www.elastic.co/guide/en/elasticsearch/reference/current/fielddata.html](https://www.elastic.co/guide/en/elasticsearch/reference/current/fielddata.html)

before version 5/6, the fields were not "text" and "keyword" but "string" (analyzed or not).

---

<div class="post-metadata">

**Author:** ![wangqinghuan](https://avatars.discourse-cdn.com/v4/letter/w/d26b3c/32.png) [@wangqinghuan](https://discuss.elastic.co/u/wangqinghuan)\
**Post date:** [March 22, 2019, 5:52am UTC](https://discuss.elastic.co/t/need-help-to-convert-fielddata-to-doc-values/172169/3 "2019-03-22T05:52:17Z")

</div>

I am using Filebeat 6.x and ES 6.x, all fields which support doc values have them enabled by default

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 19, 2019, 6:07am UTC](https://discuss.elastic.co/t/need-help-to-convert-fielddata-to-doc-values/172169/4 "2019-04-19T06:07:53Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
