# Searching all indexes without searching \_river index

**URL:** <https://discuss.elastic.co/t/searching-all-indexes-without-searching--river-index/9073>\
**Category:** Elasticsearch\
**Created:** [September 20, 2012, 9:52am UTC](https://discuss.elastic.co/t/searching-all-indexes-without-searching--river-index/9073 "2012-09-20T09:52:05Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Derry\_O\_Sullivan](https://avatars.discourse-cdn.com/v4/letter/d/7bcc69/32.png) [@Derry\_O\_Sullivan](https://discuss.elastic.co/u/Derry_O_Sullivan)\
**Post date:** [September 20, 2012, 9:52am UTC](https://discuss.elastic.co/t/searching-all-indexes-without-searching--river-index/9073/1 "2012-09-20T09:52:05Z")

</div>

Hi all,

Newbie user to ES here!

I'm loading in some data into ES using rivers so i'm getting an \_river  
index created along with the others (one per river).

When i do a search involving sorting (e.g. i have a count field in all my  
docs), i get the following error:

- failed: 1,
- 
## failures: [
{  
- index: "\_river",  
- shard: 0,  
- status: 400,  
- reason: "SearchParseException[[\_river][0]:  
query[link:test],from[-1],size[-1]: Parse Failure [Failed to parse source  
[{"query":{"query\_string":{"query":"link:test","lowercase\_expanded\_terms":true,"analyze\_wildcard":false}},"sort":[{"totalCount":{"order":"desc"}}]}]]];  
nested: SearchParseException[[\_river][0]:  
query[link:test],from[-1],size[-1]: Parse Failure [No mapping found for  
[totalCount] in order to sort on]]; "  
}  
]

Is there a way to do a search over all the indexes (without explicitly  
naming them) and exclude the \_river index?

Thanks,

--

---

<div class="post-metadata">

**Author:** ![Derry\_O\_Sullivan](https://avatars.discourse-cdn.com/v4/letter/d/7bcc69/32.png) [@Derry\_O\_Sullivan](https://discuss.elastic.co/u/Derry_O_Sullivan)\
**Post date:** [September 20, 2012, 9:59am UTC](https://discuss.elastic.co/t/searching-all-indexes-without-searching--river-index/9073/2 "2012-09-20T09:59:10Z")

</div>

The search still completes - this failure is just a warning but i was just  
wondering if there was some way to ignore that index.

On Thursday, 20 September 2012 10:52:05 UTC+1, Derry O' Sullivan wrote:

> Hi all,
> 
> Newbie user to ES here!
> 
> I'm loading in some data into ES using rivers so i'm getting an \_river  
> index created along with the others (one per river).
> 
> When i do a search involving sorting (e.g. i have a count field in all my  
> docs), i get the following error:
> 
> - failed: 1,
> - 
> ## failures: [
> {  
> - index: "\_river",  
> - shard: 0,  
> - status: 400,  
> - reason: "SearchParseException[[\_river][0]:  
> query[link:test],from[-1],size[-1]: Parse Failure [Failed to parse source  
> [{"query":{"query\_string":{"query":"link:test","lowercase\_expanded\_terms":true,"analyze\_wildcard":false}},"sort":[{"totalCount":{"order":"desc"}}]}]]];  
> nested: SearchParseException[[\_river][0]:  
> query[link:test],from[-1],size[-1]: Parse Failure [No mapping found for  
> [totalCount] in order to sort on]]; "  
> }  
> ]
> 
> Is there a way to do a search over all the indexes (without explicitly  
> naming them) and exclude the \_river index?
> 
> Thanks,

--

---

<div class="post-metadata">

**Author:** ![Derry\_O\_Sullivan](https://avatars.discourse-cdn.com/v4/letter/d/7bcc69/32.png) [@Derry\_O\_Sullivan](https://discuss.elastic.co/u/Derry_O_Sullivan)\
**Post date:** [September 21, 2012, 3:02pm UTC](https://discuss.elastic.co/t/searching-all-indexes-without-searching--river-index/9073/3 "2012-09-21T15:02:28Z")

</div>

I spotted that \_all is not working in 0.19.9. (  
[0.19.9 no longer supports /\_all/\_status · Issue #2205 · elastic/elasticsearch · GitHub](https://github.com/elasticsearch/elasticsearch/issues/2205)). Does \_all  
include \_river or is it only manually created indexes?

On Thursday, 20 September 2012 10:59:10 UTC+1, Derry O' Sullivan wrote:

> The search still completes - this failure is just a warning but i was just  
> wondering if there was some way to ignore that index.
> 
> On Thursday, 20 September 2012 10:52:05 UTC+1, Derry O' Sullivan wrote:
> 
> > Hi all,
> > 
> > Newbie user to ES here!
> > 
> > I'm loading in some data into ES using rivers so i'm getting an \_river  
> > index created along with the others (one per river).
> > 
> > When i do a search involving sorting (e.g. i have a count field in all my  
> > docs), i get the following error:
> > 
> > - failed: 1,
> > - 
> > ## failures: [
> > {  
> > - index: "\_river",  
> > - shard: 0,  
> > - status: 400,  
> > - reason: "SearchParseException[[\_river][0]:  
> > query[link:test],from[-1],size[-1]: Parse Failure [Failed to parse source  
> > [{"query":{"query\_string":{"query":"link:test","lowercase\_expanded\_terms":true,"analyze\_wildcard":false}},"sort":[{"totalCount":{"order":"desc"}}]}]]];  
> > nested: SearchParseException[[\_river][0]:  
> > query[link:test],from[-1],size[-1]: Parse Failure [No mapping found for  
> > [totalCount] in order to sort on]]; "  
> > }  
> > ]
> > 
> > Is there a way to do a search over all the indexes (without explicitly  
> > naming them) and exclude the \_river index?
> > 
> > Thanks,

--

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 3:11am UTC](https://discuss.elastic.co/t/searching-all-indexes-without-searching--river-index/9073/4 "2017-07-06T03:11:57Z")

</div>


