# Only search index for results in a selected time range

**URL:** <https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652>\
**Category:** Kibana\
**Created:** [July 26, 2017, 2:14pm UTC](https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652 "2017-07-26T14:14:20Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Helix](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/helix/32/19987_2.png) [@Helix](https://discuss.elastic.co/u/Helix)\
**Post date:** [July 26, 2017, 2:14pm UTC](https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652/1 "2017-07-26T14:14:21Z")

</div>

Hello,

I have been using kibana for several days now and ran into the following problem:

Everything is working perfectly fine as long as I only store data from the last few days. I have to mention that I am collecting a huge amount of data everyday, I am speaking of 40 to 50 GB per day.

Now, after a few days, Kibana started to have Timeouts and the Elasticsearch plugin crashed everytime I tried to open a dashboard, causing a Status Red. I deleted indexes older than 3 days and everything worked again. But about a week later, I stumbled across the same problem - again, I deleted my old indexes and Kibana is running again.

However, this is not a solution since this way, I can't access data older than a few days. Could it be that Kibana always searches all the indexes for results when I refresh a dashboard, and not just the data collected in the selected timerange?

Thank you in advance!

---

<div class="post-metadata">

**Author:** ![Christian\_Dahlqvist](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christian_dahlqvist/32/4617_2.png) [@Christian\_Dahlqvist](https://discuss.elastic.co/u/Christian_Dahlqvist)\
**Post date:** [July 26, 2017, 2:40pm UTC](https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652/2 "2017-07-26T14:40:44Z")

</div>

Are you using daily indices? If so, how many indexes and shards do you have per day?

---

<div class="post-metadata">

**Author:** ![Helix](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/helix/32/19987_2.png) [@Helix](https://discuss.elastic.co/u/Helix)\
**Post date:** [August 17, 2017, 6:37am UTC](https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652/3 "2017-08-17T06:37:46Z")

</div>

One Index per day and only one share.

---

<div class="post-metadata">

**Author:** ![Christian\_Dahlqvist](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christian_dahlqvist/32/4617_2.png) [@Christian\_Dahlqvist](https://discuss.elastic.co/u/Christian_Dahlqvist)\
**Post date:** [August 17, 2017, 7:53am UTC](https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652/4 "2017-08-17T07:53:41Z")

</div>

What is the specification of the cluster with respect to node count, CPU, RAM and type of storage? Which version of Elasticsearch are you using?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 14, 2017, 7:53am UTC](https://discuss.elastic.co/t/only-search-index-for-results-in-a-selected-time-range/94652/5 "2017-09-14T07:53:49Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
