# Strange request for logstash index in Elasticsearch

**URL:** <https://discuss.elastic.co/t/strange-request-for-logstash-index-in-elasticsearch/43304>\
**Category:** Kibana\
**Created:** [March 2, 2016, 8:21pm UTC](https://discuss.elastic.co/t/strange-request-for-logstash-index-in-elasticsearch/43304 "2016-03-02T20:21:18Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![yahoo](https://avatars.discourse-cdn.com/v4/letter/y/898d66/32.png) [@yahoo](https://discuss.elastic.co/u/yahoo)\
**Post date:** [March 2, 2016, 8:21pm UTC](https://discuss.elastic.co/t/strange-request-for-logstash-index-in-elasticsearch/43304/1 "2016-03-02T20:21:18Z")

</div>

Hi

I am getting this strange error at the Elasticsearch Console.  
in my set up: (LS: 2.1.1 , ES: 2.1.1, KB: 4.3.1)  
Logstash does not create an index called logstash  
Elasticsearch does not have an index called logstash  
as verified by \_cat/indices?v  
Kibana does not have an index called logstash and the default index is set to something else in the defaultIndex in Advanced Setting.

Why is this happening?

```
[2016-03-02 15:03:43,034][INFO][node] [_node_1] started
[2016-03-02 15:03:43,175][INFO][gateway] [_node_1] recovered [3] indices into cluster_state

[2016-03-02 15:04:30,316][INFO][rest.suppressed] /logstash-*/_mapping/field/* Params: {ignore_unavailable=false, allow_no_indice
s=false, index=logstash-*, include_defaults=true, fields=*, _=1456949070306}
[logstash-*] IndexNotFoundException[no such index]
```

---

<div class="post-metadata">

**Author:** ![spalger](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/spalger/32/14092_2.png) [@spalger](https://discuss.elastic.co/u/spalger)\
**Post date:** [March 2, 2016, 9:35pm UTC](https://discuss.elastic.co/t/strange-request-for-logstash-index-in-elasticsearch/43304/2 "2016-03-02T21:35:13Z")

</div>

This is probably happening because loading up kibana's settings page opens the "create new index pattern" screen by default. This page defaults the pattern text to `logstash-*` and executes a request to load the mapping for index if it exists. In your case, the index doesn't exist and elasticsearch is letting you know. It's probably as simple as that 🙂

 ![](https://us1.discourse-cdn.com/elastic/original/2X/f/f1f322522ede4954b1c0bf465a53babaa1f52ebc.png)

---

<div class="post-metadata">

**Author:** ![yahoo](https://avatars.discourse-cdn.com/v4/letter/y/898d66/32.png) [@yahoo](https://discuss.elastic.co/u/yahoo)\
**Post date:** [March 2, 2016, 10:09pm UTC](https://discuss.elastic.co/t/strange-request-for-logstash-index-in-elasticsearch/43304/3 "2016-03-02T22:09:44Z")

</div>

Hi @spalger  
Yes. It happens when clicking on settings, as you described.  
I would not worry about it then.  
Thank you for the quick reply.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 2:00pm UTC](https://discuss.elastic.co/t/strange-request-for-logstash-index-in-elasticsearch/43304/4 "2017-07-06T14:00:27Z")

</div>


