# \#docker

**URL:** https://discuss.elastic.co/tag/docker/15.md

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

---

## [Upgrade from 7.17.9 to 8.19.18 to 9.4.3](https://discuss.elastic.co/t/upgrade-from-7-17-9-to-8-19-18-to-9-4-3/390473)

<div class="topic-metadata">

**Author:** [@sundar.s](https://discuss.elastic.co/u/sundar.s)\
**Replies:** 4\
**Last updated:** [September 17, 2026, 10:17am UTC](https://discuss.elastic.co/t/upgrade-from-7-17-9-to-8-19-18-to-9-4-3/390473 "2026-09-17T10:17:24Z")

</div>

Hi Team, I am trying to run upgrades on a dockerized ES environment. With indices created in 7.17.9, I am able to successfuly migrate to 8.19.18, by just bringing up a new container of ES 8.19.18 pointing to the same v…

---

## [Kibana 8.17.3 – Malware Detection of security\_labs Knowledge Base File (TROJ\_FRS.VSNTIA26)](https://discuss.elastic.co/t/kibana-8-17-3-malware-detection-of-security-labs-knowledge-base-file-troj-frs-vsntia26/390482)

<div class="topic-metadata">

**Author:** [@shiva3](https://discuss.elastic.co/u/shiva3)\
**Replies:** 0\
**Last updated:** [September 16, 2026, 10:21pm UTC](https://discuss.elastic.co/t/kibana-8-17-3-malware-detection-of-security-labs-knowledge-base-file-troj-frs-vsntia26/390482 "2026-09-16T22:21:06Z")

</div>

Hello Elastic Team, We are investigating a security alert involving the Kibana 8.17.3 Docker image deployed in our OpenShift environment. Our endpoint security product detected the following file as: Detection: TROJ\_F…

---

## [Security labs documentation via API call - ignoreSecurityLabs](https://discuss.elastic.co/t/security-labs-documentation-via-api-call-ignoresecuritylabs/389948)

<div class="topic-metadata">

**Author:** [@novst](https://discuss.elastic.co/u/novst)\
**Replies:** 2\
**Last updated:** [September 3, 2026, 2:25pm UTC](https://discuss.elastic.co/t/security-labs-documentation-via-api-call-ignoresecuritylabs/389948 "2026-09-03T14:25:11Z")

</div>

Hello, I am trying to automate installation for the customer and I want to install "Elastic documentation" and "Security labs" under http://localhost:5601/app/management/ai/genAiSettings According to documentation Crea…

---

## [Intermittent metric registration error: worker\_millis\_per\_event](https://discuss.elastic.co/t/intermittent-metric-registration-error-worker-millis-per-event/383836)

<div class="topic-metadata">

**Author:** [@mariyabanatic](https://discuss.elastic.co/u/mariyabanatic)\
**Replies:** 8\
**Last updated:** [September 2, 2026, 6:02am UTC](https://discuss.elastic.co/t/intermittent-metric-registration-error-worker-millis-per-event/383836 "2026-09-02T06:02:11Z")

</div>

Issue Intermittent warning during pipeline startup. The worker\_millis\_per\_event metric fails to register but pipeline functions normally. \[org.logstash.execution.AbstractPipelineExt\] Metric registration error: \`worker\_m…

---

## [\[ANNOUNCEMENT\] - FSCrawler 3.0 released](https://discuss.elastic.co/t/announcement-fscrawler-3-0-released/389938)

<div class="topic-metadata">

**Author:** [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Replies:** 0\
**Last updated:** [August 26, 2026, 4:20pm UTC](https://discuss.elastic.co/t/announcement-fscrawler-3-0-released/389938 "2026-08-26T16:20:04Z")

</div>

The FSCrawler team is pleased to announce the FSCrawler 3.0 release! FSCrawler is a crawler for Elasticsearch that helps to index binary documents such as PDF, MS Office, and more. Usage Download FSCrawler 3.0: wge…

---

## [Server hangs due to high uses CPU and memory by elasticsearch or kibana](https://discuss.elastic.co/t/server-hangs-due-to-high-uses-cpu-and-memory-by-elasticsearch-or-kibana/389879)

<div class="topic-metadata">

**Author:** [@yogesh119905](https://discuss.elastic.co/u/yogesh119905)\
**Replies:** 7\
**Last updated:** [August 25, 2026, 4:02am UTC](https://discuss.elastic.co/t/server-hangs-due-to-high-uses-cpu-and-memory-by-elasticsearch-or-kibana/389879 "2026-08-25T04:02:57Z")

</div>

Kibana version: 9.5.0 Elasticsearch version: 9.5.0 Server OS version: 24.04.3 LTS (Noble Numbat) Original install method (e.g. download page, yum, from source, etc.): Docker Describe the bug: Kibana is consuming…

---

## [Inquiry schedule: Backport concurrent-ruby 1.3.7 to Logstash 8.19.x for CVE-2026-54904(High)](https://discuss.elastic.co/t/inquiry-schedule-backport-concurrent-ruby-1-3-7-to-logstash-8-19-x-for-cve-2026-54904-high/389887)

<div class="topic-metadata">

**Author:** [@Della](https://discuss.elastic.co/u/Della)\
**Replies:** 1\
**Last updated:** [August 24, 2026, 4:12pm UTC](https://discuss.elastic.co/t/inquiry-schedule-backport-concurrent-ruby-1-3-7-to-logstash-8-19-x-for-cve-2026-54904-high/389887 "2026-08-24T16:12:13Z")

</div>

Dear Elastic Security & Logstash Team, We are running Logstash 8.19.19 in production environment. Security scanning (Docker Scout/Trivy) detects high vulnerability CVE-2026-54904 in embedded concurrent-ruby gem 1.1.9. T…

---

## [Elastic/Kibana Excessive Memory Consumption in Docker Causes Tasks to Hang and OOM Kills](https://discuss.elastic.co/t/elastic-kibana-excessive-memory-consumption-in-docker-causes-tasks-to-hang-and-oom-kills/389876)

<div class="topic-metadata">

**Author:** [@yogesh119905](https://discuss.elastic.co/u/yogesh119905)\
**Replies:** 1\
**Last updated:** [August 23, 2026, 1:50pm UTC](https://discuss.elastic.co/t/elastic-kibana-excessive-memory-consumption-in-docker-causes-tasks-to-hang-and-oom-kills/389876 "2026-08-23T13:50:11Z")

</div>

Kibana version: 9.5.0 Elasticsearch version: 9.5.0 Server OS version: 24.04.3 LTS (Noble Numbat) Original install method (e.g. download page, yum, from source, etc.): Docker Describe the bug: Kibana is consuming…

---

## [ES, kibana both having ca.crt issues?](https://discuss.elastic.co/t/es-kibana-both-having-ca-crt-issues/389738)

<div class="topic-metadata">

**Author:** [@rik](https://discuss.elastic.co/u/rik)\
**Replies:** 12\
**Last updated:** [August 21, 2026, 10:13am UTC](https://discuss.elastic.co/t/es-kibana-both-having-ca-crt-issues/389738 "2026-08-21T10:13:56Z")

</div>

I'm not able to start up either the ES or kibana containers and I suspect the root cause has to do with ca-cert issues. i'm attaching my compose file below for reference with ES, the log shows this error: "@timestamp"…

---

## [High Filebeat Disk I/O After Reboot With Ubuntu 24.04](https://discuss.elastic.co/t/high-filebeat-disk-i-o-after-reboot-with-ubuntu-24-04/388881)

<div class="topic-metadata">

**Author:** [@harrelst](https://discuss.elastic.co/u/harrelst)\
**Replies:** 0\
**Last updated:** [July 30, 2026, 3:32am UTC](https://discuss.elastic.co/t/high-filebeat-disk-i-o-after-reboot-with-ubuntu-24-04/388881 "2026-07-30T03:32:40Z")

</div>

We use a Filebeat DaemonSet to collect container logs from nodes in our Kubernetes cluster. I recently added some Ubuntu 24.04 nodes to the cluster, and when Filebeat restarts after a reboot generates around 150 MB/s of …

---

## [Defend for Containers (D4C) integration with OPENSHIFT](https://discuss.elastic.co/t/defend-for-containers-d4c-integration-with-openshift/387268)

<div class="topic-metadata">

**Author:** [@Mohamed\_Nada](https://discuss.elastic.co/u/Mohamed_Nada)\
**Replies:** 1\
**Last updated:** [June 30, 2026, 1:31pm UTC](https://discuss.elastic.co/t/defend-for-containers-d4c-integration-with-openshift/387268 "2026-06-30T13:31:40Z")

</div>

I am looking for some insight into a hard kernel verifier rejection we are hitting with the Defend for Containers (D4C) integration. The Activity & Purpose We are deploying Elastic Agent (9.4.2) via Fleet on an OpenShif…

---

## [WARN Failed to revoke access to default inference endpoint IDs: \[rainbow-sprinkles\]](https://discuss.elastic.co/t/warn-failed-to-revoke-access-to-default-inference-endpoint-ids-rainbow-sprinkles/377741)

<div class="topic-metadata">

**Author:** [@fgjensen](https://discuss.elastic.co/u/fgjensen)\
**Replies:** 8\
**Last updated:** [June 25, 2026, 1:35pm UTC](https://discuss.elastic.co/t/warn-failed-to-revoke-access-to-default-inference-endpoint-ids-rainbow-sprinkles/377741 "2026-06-25T13:35:53Z")

</div>

Hi all; I have a single node Elasticsearch running in Docker which I have upgrade from version 8.17 to 8.18. I have noticed this warning in the logs at startup time.: \[WARN \]\[o.e.x.i.s.e.a.ElasticInferenceServiceAutho…

---

## [Autodiscovery Strategy for Transitioning from Heartbeat to Synthetics](https://discuss.elastic.co/t/autodiscovery-strategy-for-transitioning-from-heartbeat-to-synthetics/387228)

<div class="topic-metadata">

**Author:** [@Cristian\_Pereyra](https://discuss.elastic.co/u/Cristian_Pereyra)\
**Replies:** 1\
**Last updated:** [June 24, 2026, 2:10am UTC](https://discuss.elastic.co/t/autodiscovery-strategy-for-transitioning-from-heartbeat-to-synthetics/387228 "2026-06-24T02:10:57Z")

</div>

Hello everyone. The topic that brings us here is Heartbeat autodiscover. We have many deployments that are going to be modified and we need to automate the detection and creation of monitors. The problem that is added …

---

## [Autodiscover with synthetics](https://discuss.elastic.co/t/autodiscover-with-synthetics/387229)

<div class="topic-metadata">

**Author:** [@Cristian\_Pereyra](https://discuss.elastic.co/u/Cristian_Pereyra)\
**Replies:** 1\
**Last updated:** [June 24, 2026, 1:38am UTC](https://discuss.elastic.co/t/autodiscover-with-synthetics/387229 "2026-06-24T01:38:05Z")

</div>

Hello everyone. The topic that brings us here is Heartbeat autodiscover. We have many deployments that are going to be modified and we need to automate the detection and creation of monitors. The problem that is added …

---

## [X-pack-security warnings after upgrading to 9.3.3](https://discuss.elastic.co/t/x-pack-security-warnings-after-upgrading-to-9-3-3/385852)

<div class="topic-metadata">

**Author:** [@Koirin](https://discuss.elastic.co/u/Koirin)\
**Replies:** 9\
**Last updated:** [June 23, 2026, 8:48am UTC](https://discuss.elastic.co/t/x-pack-security-warnings-after-upgrading-to-9-3-3/385852 "2026-06-23T08:48:42Z")

</div>

Hello - I just upgraded our node in our monitoring-cluster (single-node) from 9.2.4 to 9.3.3 and have started receiving warnings regarding the x-pack-security getting denied reading some internal files in the docker-cont…

---

## [Eland-imported naver/splade-v3 text\_expansion produces much smaller sparse vectors and worse ranking than local SentenceTransformers SparseEncoder](https://discuss.elastic.co/t/eland-imported-naver-splade-v3-text-expansion-produces-much-smaller-sparse-vectors-and-worse-ranking-than-local-sentencetransformers-sparseencoder/386819)

<div class="topic-metadata">

**Author:** [@alrolo3](https://discuss.elastic.co/u/alrolo3)\
**Replies:** 0\
**Last updated:** [June 11, 2026, 9:39pm UTC](https://discuss.elastic.co/t/eland-imported-naver-splade-v3-text-expansion-produces-much-smaller-sparse-vectors-and-worse-ranking-than-local-sentencetransformers-sparseencoder/386819 "2026-06-11T21:39:41Z")

</div>

Eland-imported naver/splade-v3 text\_expansion produces much smaller sparse vectors and worse ranking than local SentenceTransformers SparseEncoder Environment Elasticsearch version: 9.4.2 Eland Docker image used: docke…

---

## [High CPU Usage on Elastic Defend and Kibana Processes](https://discuss.elastic.co/t/high-cpu-usage-on-elastic-defend-and-kibana-processes/386663)

<div class="topic-metadata">

**Author:** [@YousefNein](https://discuss.elastic.co/u/YousefNein)\
**Replies:** 0\
**Last updated:** [June 2, 2026, 11:35pm UTC](https://discuss.elastic.co/t/high-cpu-usage-on-elastic-defend-and-kibana-processes/386663 "2026-06-02T23:35:40Z")

</div>

Hello, I have two problems related to CPU usage being very high with two ES related processes. I'm currently using 3 ES nodes on the same machine using Docker. 1 Master hot/content, 1 warm, and 1 cold. The machine has …

---

## [Eck-stack master, hot, warm and cold architecture](https://discuss.elastic.co/t/eck-stack-master-hot-warm-and-cold-architecture/386443)

<div class="topic-metadata">

**Author:** [@khteh](https://discuss.elastic.co/u/khteh)\
**Replies:** 0\
**Last updated:** [May 21, 2026, 12:21pm UTC](https://discuss.elastic.co/t/eck-stack-master-hot-warm-and-cold-architecture/386443 "2026-05-21T12:21:37Z")

</div>

Is there any documentation on the eck-stack example chart cloud-on-k8s/deploy/eck-stack/examples/elasticsearch/hot-warm-cold.yaml at main · elastic/cloud-on-k8s · GitHub ? In particular, what are the master, hot, warm an…

---

## [Hot and warm STS stuck and no pods created & helmfile apply or sync doesn't update STS replicas count](https://discuss.elastic.co/t/hot-and-warm-sts-stuck-and-no-pods-created-helmfile-apply-or-sync-doesnt-update-sts-replicas-count/386441)

<div class="topic-metadata">

**Author:** [@khteh](https://discuss.elastic.co/u/khteh)\
**Replies:** 0\
**Last updated:** [May 21, 2026, 11:55am UTC](https://discuss.elastic.co/t/hot-and-warm-sts-stuck-and-no-pods-created-helmfile-apply-or-sync-doesnt-update-sts-replicas-count/386441 "2026-05-21T11:55:09Z")

</div>

$ k logs -n elastic-system -l control-plane=elastic-operator No resources found in elastic-system namespace. $ k get all -n elastic-system NAME READY STATUS RESTARTS AGE pod/elastic-operato…

---

## [ECK AWS Pod Identity instead of iam user/secret key pair](https://discuss.elastic.co/t/eck-aws-pod-identity-instead-of-iam-user-secret-key-pair/386418)

<div class="topic-metadata">

**Author:** [@khteh](https://discuss.elastic.co/u/khteh)\
**Replies:** 0\
**Last updated:** [May 20, 2026, 5:21am UTC](https://discuss.elastic.co/t/eck-aws-pod-identity-instead-of-iam-user-secret-key-pair/386418 "2026-05-20T05:21:57Z")

</div>

I used to add the AWS credentials into elasticsearch (ECK) keystore to backup to AWS S3. And then I was told that this is not a recommended good practice but should use pod identity or environment variables injected by i…

---

## [Stable analysis plugin with native library fails entitlements in Elasticsearch 8.19.12](https://discuss.elastic.co/t/stable-analysis-plugin-with-native-library-fails-entitlements-in-elasticsearch-8-19-12/386411)

<div class="topic-metadata">

**Author:** [@dbenito](https://discuss.elastic.co/u/dbenito)\
**Replies:** 0\
**Last updated:** [May 19, 2026, 3:34pm UTC](https://discuss.elastic.co/t/stable-analysis-plugin-with-native-library-fails-entitlements-in-elasticsearch-8-19-12/386411 "2026-05-19T15:34:36Z")

</div>

Stable analysis plugin with native library fails entitlements in Elasticsearch 8.19.12 We are building a stable-analysis plugin that registers a custom TokenFilter via the stable plugin API. The plugin needs to load a bu…

---

## [Elastic Security is missing in kibana \[9.0.2\]](https://discuss.elastic.co/t/elastic-security-is-missing-in-kibana-9-0-2/379228)

<div class="topic-metadata">

**Author:** [@Anacleto\_Barzetti](https://discuss.elastic.co/u/Anacleto_Barzetti)\
**Replies:** 5\
**Last updated:** [April 28, 2026, 2:14pm UTC](https://discuss.elastic.co/t/elastic-security-is-missing-in-kibana-9-0-2/379228 "2026-04-28T14:14:37Z")

</div>

Elastic Security is not showing up, I installed via docker compose. kibana.yml server.host: "0.0.0.0" telemetry.enabled: "false" xpack.fleet.packages: - name: fleet\_server version: latest - name: system …

---

## [OSI approved Docker image for ES 8+](https://discuss.elastic.co/t/osi-approved-docker-image-for-es-8/386055)

<div class="topic-metadata">

**Author:** [@stitchart](https://discuss.elastic.co/u/stitchart)\
**Replies:** 0\
**Last updated:** [April 27, 2026, 7:24pm UTC](https://discuss.elastic.co/t/osi-approved-docker-image-for-es-8/386055 "2026-04-27T19:24:39Z")

</div>

Hi, we're looking to build our own OSS Docker image since Elasticsearch v8+ onward, Elastic has discontinued the elasticsearch-oss Docker images that were previously available for those of us who needed to use an Apache …

---

## [Scale ES from Single-node to Multi-node](https://discuss.elastic.co/t/scale-es-from-single-node-to-multi-node/386006)

<div class="topic-metadata">

**Author:** [@Raghava\_Yerubandi](https://discuss.elastic.co/u/Raghava_Yerubandi)\
**Replies:** 1\
**Last updated:** [April 24, 2026, 3:16am UTC](https://discuss.elastic.co/t/scale-es-from-single-node-to-multi-node/386006 "2026-04-24T03:16:53Z")

</div>

Hello guys, We have an Elasticsearch 8.18.4, which is running as a Docker container as a single-node. Now I want to add two or more nodes to it, and also I want to make them a multi-node cluster. Is there any way to sca…

---

## [Elastic Open Crawler - Recent Container CVEs](https://discuss.elastic.co/t/elastic-open-crawler-recent-container-cves/385828)

<div class="topic-metadata">

**Author:** [@alongaks](https://discuss.elastic.co/u/alongaks)\
**Replies:** 1\
**Last updated:** [April 14, 2026, 5:59pm UTC](https://discuss.elastic.co/t/elastic-open-crawler-recent-container-cves/385828 "2026-04-14T17:59:55Z")

</div>

Hello, I have been using the Elastic Open Crawler for some time now. In general, it has been a nice, functional replacement for the deprecated Enterprise Search Crawler. When my Elastic Open Crawler container(s) launch…

---

## [Virtual Machines or Containers?](https://discuss.elastic.co/t/virtual-machines-or-containers/385765)

<div class="topic-metadata">

**Author:** [@saba\_kallel](https://discuss.elastic.co/u/saba_kallel)\
**Replies:** 4\
**Last updated:** [April 10, 2026, 1:13pm UTC](https://discuss.elastic.co/t/virtual-machines-or-containers/385765 "2026-04-10T13:13:29Z")

</div>

Hello everyone, I am currently working on my final-year project, which focuses on designing and automating the deployment of a highly available and fault-tolerant ELK stack (Elasticsearch, Logstash, Kibana). The goal o…

---

## [Best practice for re-routed datastream and index template mappings](https://discuss.elastic.co/t/best-practice-for-re-routed-datastream-and-index-template-mappings/385729)

<div class="topic-metadata">

**Author:** [@dot-mike](https://discuss.elastic.co/u/dot-mike)\
**Replies:** 2\
**Last updated:** [April 1, 2026, 5:26pm UTC](https://discuss.elastic.co/t/best-practice-for-re-routed-datastream-and-index-template-mappings/385729 "2026-04-01T17:26:03Z")

</div>

Hi community, I'm wondering what is the best practice when it comes to rerouted datastreams from log integrations using fleet. For example default datastream is logs-docker.container\_logs-default and it's rerouted to lo…

---

## [Run Elasticsearch Docker 9.x on CPU without x86-64-v2 support?](https://discuss.elastic.co/t/run-elasticsearch-docker-9-x-on-cpu-without-x86-64-v2-support/385212)

<div class="topic-metadata">

**Author:** [@greenwoodma](https://discuss.elastic.co/u/greenwoodma)\
**Replies:** 1\
**Last updated:** [March 27, 2026, 2:32pm UTC](https://discuss.elastic.co/t/run-elasticsearch-docker-9-x-on-cpu-without-x86-64-v2-support/385212 "2026-03-27T14:32:01Z")

</div>

Is it at all possible to run the Elasticsearch 9.x docker containers on a machine with a CPU which doesn’t support x86-64-v2? The 8.x releases all ran fine on the machine but the new ones don’t start up as they just repo…

---

## [EDOT pushing to elastic fails with HTTP status message: Bad Request](https://discuss.elastic.co/t/edot-pushing-to-elastic-fails-with-http-status-message-bad-request/375661)

<div class="topic-metadata">

**Author:** [@yev](https://discuss.elastic.co/u/yev)\
**Replies:** 12\
**Last updated:** [March 26, 2026, 2:32pm UTC](https://discuss.elastic.co/t/edot-pushing-to-elastic-fails-with-http-status-message-bad-request/375661 "2026-03-26T14:32:46Z")

</div>

Hi there, I'm exploring the capabilities of EDOT and I have an issue: Logs from my spring-boot app \[otel.javaagent 2025-03-10 16:31:10:565 +0100\] \[OkHttp http://localhost:9200/...\] WARN io.opentelemetry.exporter.inter…

---

## [Elastic Feedback: Hire Dashboard Designer](https://discuss.elastic.co/t/elastic-feedback-hire-dashboard-designer/385513)

<div class="topic-metadata">

**Author:** [@erikg](https://discuss.elastic.co/u/erikg)\
**Replies:** 1\
**Last updated:** [March 25, 2026, 12:21pm UTC](https://discuss.elastic.co/t/elastic-feedback-hire-dashboard-designer/385513 "2026-03-25T12:21:21Z")

</div>

Hey, I mean well when I say this, but could Elastic improve its out-of-the-box managed dashboards I did OpenTelemetry Docker, and this was the dashboard that came with it: I understand people have different tastes …

[Next page](https://discuss.elastic.co/tag/docker/15.md?match_all_tags=true&page=1&tags%5B%5D=docker)
