# Produce report on latest timestamp summarised by hostname

**URL:** <https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123>\
**Category:** Kibana\
**Created:** [December 2, 2019, 7:03am UTC](https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123 "2019-12-02T07:03:11Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![fredden68](https://avatars.discourse-cdn.com/v4/letter/f/a587f6/32.png) [@fredden68](https://discuss.elastic.co/u/fredden68)\
**Post date:** [December 2, 2019, 7:03am UTC](https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123/1 "2019-12-02T07:03:11Z")

</div>

I had this working under Kibana 6.x, reporting on all nodes with the latest timestamp older than a set period (like 15 mins). But I reinstalled with 7.x and no longer can generate the queries / visuals for this.

How do I structure this? Regards, Fred

---

<div class="post-metadata">

**Author:** ![Liza\_Katz](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/liza_katz/32/52358_2.png) [@Liza\_Katz](https://discuss.elastic.co/u/Liza_Katz)\
**Post date:** [December 2, 2019, 8:30am UTC](https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123/2 "2019-12-02T08:30:52Z")

</div>

Hey Fred,

Would you mind elaborating a little more on what the behavior that you're trying to achieve, so I can look into the difference between 6.x and 7.x?

Thanks,  
Liza

---

<div class="post-metadata">

**Author:** ![fredden68](https://avatars.discourse-cdn.com/v4/letter/f/a587f6/32.png) [@fredden68](https://discuss.elastic.co/u/fredden68)\
**Post date:** [December 2, 2019, 12:41pm UTC](https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123/3 "2019-12-02T12:41:20Z")

</div>

@Lisa\_Katz. Not even sure it is a difference in version or in the method (I can't remember how I actually did it). I am trying to create a query that shows the most recent timestamp for each node (which I can do now) but then show only those nodes where the most recent timestamp is more than a certain period from current time. (Essentially a heart beat check).

I know that this will require other setups to be effective and which I can do already (regular jobs on the nodes themselves to force a generate of a message, pre-populating nodes that have had their documents archived off, etc), but I want to be able to show a list of nodes who are "silent" and who should not be.

I know I had this working on 6, but failed to document it and now I have upgraded to 7 I cannot reproduce.

Regards, Fred

---

<div class="post-metadata">

**Author:** ![fredden68](https://avatars.discourse-cdn.com/v4/letter/f/a587f6/32.png) [@fredden68](https://discuss.elastic.co/u/fredden68)\
**Post date:** [December 4, 2019, 8:28am UTC](https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123/4 "2019-12-04T08:28:54Z")

</div>

Anyone? Bueller? Bueller?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 1, 2020, 8:28am UTC](https://discuss.elastic.co/t/produce-report-on-latest-timestamp-summarised-by-hostname/210123/5 "2020-01-01T08:28:57Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
