# Remove kibana exported fields from "Add Filter"

**URL:** <https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230>\
**Category:** Kibana\
**Created:** [August 17, 2020, 12:09pm UTC](https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230 "2020-08-17T12:09:10Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![gizem](https://avatars.discourse-cdn.com/v4/letter/g/7ea924/32.png) [@gizem](https://discuss.elastic.co/u/gizem)\
**Post date:** [August 17, 2020, 12:09pm UTC](https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230/1 "2020-08-17T12:09:10Z")

</div>

I use kibana 7.0.1 and filebeat 7.0.1. There is always "exported fields" in my indexes even if they are empty. And these exported fields are always shown in "Add Filter" part. Why exported fields are always in my indexes? Is there any way to remove these fields or just unvisible in "Add Filter" part?

Thank you.

---

<div class="post-metadata">

**Author:** ![joshdover](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/joshdover/32/42020_2.png) [@joshdover](https://discuss.elastic.co/u/joshdover)\
**Post date:** [August 17, 2020, 9:53pm UTC](https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230/2 "2020-08-17T21:53:56Z")

</div>

Unfortunately, there is no way to do this from within Kibana.

What you will need to do is to modify the fields that Metricbeat uses to create the index template and mappings for metricbeat indices, and then reload the index pattern in Kibana.

To do this, you will need to modify the default `fields.yml` file that is shipped with Metricbeat. You can then configure metricbeat to use this file instead when creating the index template:

```auto
setup.template.fields: "path/to/fields.yml"

```

You can then follow the [instructions from the Metricbeat documentation](https://www.elastic.co/guide/en/beats/metricbeat/current/metricbeat-template.html) to overwrite the existing template.

Keep in mind, this will only apply to new metricbeat indices that are created, so you may want to pick a new naming scheme for these indices, reindex your old indices, or delete them. Once all of this is done you can either create a new index pattern in Kibana for the new naming scheme or reload the existing one.

---

<div class="post-metadata">

**Author:** ![gizem](https://avatars.discourse-cdn.com/v4/letter/g/7ea924/32.png) [@gizem](https://discuss.elastic.co/u/gizem)\
**Post date:** [August 18, 2020, 2:03pm UTC](https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230/3 "2020-08-18T14:03:36Z")

</div>

Thank you @joshdover.  
It probably works for me. But what if i dont change the naming scheme, is it does not work? is deleting old indices which starts with scheme name enough?

---

<div class="post-metadata">

**Author:** ![joshdover](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/joshdover/32/42020_2.png) [@joshdover](https://discuss.elastic.co/u/joshdover)\
**Post date:** [August 19, 2020, 4:04pm UTC](https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230/4 "2020-08-19T16:04:23Z")

</div>

Yes deleting the old indices before you recreate the index pattern should work fine.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 16, 2020, 4:04pm UTC](https://discuss.elastic.co/t/remove-kibana-exported-fields-from-add-filter/245230/5 "2020-09-16T16:04:26Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
