# Rollup indexes - pattern definition and visualization

**URL:** <https://discuss.elastic.co/t/rollup-indexes-pattern-definition-and-visualization/237295>\
**Category:** Kibana\
**Created:** [June 16, 2020, 12:19pm UTC](https://discuss.elastic.co/t/rollup-indexes-pattern-definition-and-visualization/237295 "2020-06-16T12:19:32Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![parosio](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/parosio/32/27367_2.png) [@parosio](https://discuss.elastic.co/u/parosio)\
**Post date:** [June 16, 2020, 12:19pm UTC](https://discuss.elastic.co/t/rollup-indexes-pattern-definition-and-visualization/237295/1 "2020-06-16T12:19:32Z")

</div>

Hello,  
I'm using a rather old version (6.8), but have some problems/questions that hope had been addressed and solved in 7.x.

(because, as it is in 6.8, rollup isn't that much useful (for visualization purposes, at least))

About **kibana index pattern** definition:  
is it OK to define an alias for the rollup index to match the current live-data index name?  
For example:

- live-data-index: `nagios-perfdata`
- rollup: `rup-nagios` ==\> aliased to `nagios-perfdata-rollup`

I created a pattern `nagios-perfdata*` that matches both.  
Apparently, it works... But do you see any undesired side effect?

**Visualization** :  
I create a pie splitting on nagios status strings (OK, WARNING, CRITICAL, UNKNOWN).  
When I click on a pie slice to create a filter I get the error: `Rollup search error: [illegal_argument_exception] Unsupported Query in search request: [match_phrase]`

Is there any workaround for this? Has it been fixed in 7.x?

**Discover** / Saved search:  
seems like the index pattern is not time-based: it's impossible to choose the time frame.  
Besides, is it possible to have rolled-up field names mapped to original ones as in standard views?

Is rollup more supported within discover / saved search in 7.x?

Any positive experience is welcome,  
Thank you  
Paolo

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 14, 2020, 12:24pm UTC](https://discuss.elastic.co/t/rollup-indexes-pattern-definition-and-visualization/237295/2 "2020-07-14T12:24:46Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
