I do not think this is currently possible in Kibana. One way to get around this potential limitation would be to create an entity centric index based on the ID to visualise this information.
Did you try using "Filter" option in the bucket, that should do the trick. In the filter option you can specify the field you want and it also supports a NOT (!) operator.
thank for the replay,
your case is different because you are searching from two different fields
I need to find the IDs that has just one type, that mean I need to run an aggregation of IDs that has unique type - distinct search.
that could't be done with Lucene
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.