# Understanding DISK Space Overview Response

**URL:** <https://discuss.elastic.co/t/understanding-disk-space-overview-response/72267>\
**Category:** Kibana\
**Created:** [January 20, 2017, 5:58am UTC](https://discuss.elastic.co/t/understanding-disk-space-overview-response/72267 "2017-01-20T05:58:34Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![prakash1243](https://avatars.discourse-cdn.com/v4/letter/p/35a633/32.png) [@prakash1243](https://discuss.elastic.co/u/prakash1243)\
**Post date:** [January 20, 2017, 5:58am UTC](https://discuss.elastic.co/t/understanding-disk-space-overview-response/72267/1 "2017-01-20T05:58:34Z")

</div>

Hi -  
Am trying to create the DSL queries to verify the response at the API level using Elastic Search Gem.  
I got stuck in understanding the request sending to the the Elastic Search:  
Below is a example:

Here is the request sent from a DISK space over view dashlet for last 15 minutes:

{  
"size": 0,  
"aggs": {  
"1": {  
"avg": {  
"field": "system.fsstat.total\_size.total"  
}  
},  
"2": {  
"avg": {  
"field": "system.fsstat.total\_size.used"  
}  
},  
"3": {  
"max": {  
"field": "system.fsstat.total\_files"  
}  
}  
},  
"highlight": {  
"pre\_tags": [  
"@kibana-highlighted-field@"  
],  
"post\_tags": [  
"@/kibana-highlighted-field@"  
],  
"fields": {  
"_": {}  
},  
"require\_field\_match": false,  
"fragment\_size": 2147483647  
},  
"query": {  
"bool": {  
"must": [  
{  
"query\_string": {  
"query": "metricset.module: system AND [metricset.name](http://metricset.name): fsstat",  
"analyze\_wildcard": true  
}  
},  
{  
"query\_string": {  
"analyze\_wildcard": true,  
"query": "_"  
}  
},  
{  
"range": {  
"@timestamp": {  
"gte": 1484891255261,  
"lte": 1484892155262,  
"format": "epoch\_millis"  
}  
}  
}  
],  
"must\_not": []  
}  
},  
"\_source": {  
"excludes": []  
}  
}

I'd like to understand, how the range works here, how the time stamps has been sent ? what is "epoch\_millis" ? Please let me know. thanks !

---

<div class="post-metadata">

**Author:** ![tsullivan](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tsullivan/32/31077_2.png) [@tsullivan](https://discuss.elastic.co/u/tsullivan)\
**Post date:** [January 20, 2017, 9:57pm UTC](https://discuss.elastic.co/t/understanding-disk-space-overview-response/72267/2 "2017-01-20T21:57:51Z")

</div>

Looks like you grabbed this query from a Kibana visualization's Spy panel. When you select a date range in Kibana, it shows you human-readable dates to choose from, but internally converts those dates to `epoch_millis`, which is Elasticsearch's term for the number of milliseconds since the Unix epoch (Jan 01, 1970).

There are ways to do this date conversion in pretty much every programming language, I'm sure. If you want a quick check on how something converts, I recommend this tool: [https://currentmillis.com/](https://currentmillis.com/)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 17, 2017, 9:58pm UTC](https://discuss.elastic.co/t/understanding-disk-space-overview-response/72267/3 "2017-02-17T21:58:56Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
