# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=247

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 248

---

## [GeoIP Filter in ECS-Compatiblity mode requires a \`target\` when \`source\` is not an \`ip\` sub-field, eg. \[client\]\[ip\]](https://discuss.elastic.co/t/geoip-filter-in-ecs-compatiblity-mode-requires-a-target-when-source-is-not-an-ip-sub-field-eg-client-ip/350343)

<div class="topic-metadata">

**Author:** [@e-ferrari](https://discuss.elastic.co/u/e-ferrari)\
**Replies:** 3\
**Last updated:** [January 9, 2024, 5:19pm UTC](https://discuss.elastic.co/t/geoip-filter-in-ecs-compatiblity-mode-requires-a-target-when-source-is-not-an-ip-sub-field-eg-client-ip/350343 "2024-01-09T17:19:26Z")

</div>

Hi, i'm trying to setup Parsing Logs with Logstash | Logstash Reference \[8.11\] | Elastic. But i get errors: \[2024-01-04T00:06:45,246\]\[ERROR\]\[logstash.javapipeline \]\[main\] Pipeline error {:pipeline\_id=\>"main", :exc…

---

## [Output based on grok message](https://discuss.elastic.co/t/output-based-on-grok-message/350670)

<div class="topic-metadata">

**Author:** [@Brandon\_Kauffman](https://discuss.elastic.co/u/Brandon_Kauffman)\
**Replies:** 3\
**Last updated:** [January 9, 2024, 5:17pm UTC](https://discuss.elastic.co/t/output-based-on-grok-message/350670 "2024-01-09T17:17:40Z")

</div>

I am trying to output based on different sysloghosts input { udp { port =\> 5010 type =\> "obs\_test\_udp" } } filter { grok { match =\> {"message" =\> "\<%{POSINT:syslog\_priority}\>%{POSINT:syslog\_version} %{T…

---

## [co.elastic.clients.json.JsonpMappingException: Error deserializing co.elastic.clients.elasticsearch.\_types.query\_dsl.MatchQuery: Invalid enum 'NONE'](https://discuss.elastic.co/t/co-elastic-clients-json-jsonpmappingexception-error-deserializing-co-elastic-clients-elasticsearch-types-query-dsl-matchquery-invalid-enum-none/350660)

<div class="topic-metadata">

**Author:** [@MADHAV\_JHA\_Govind](https://discuss.elastic.co/u/MADHAV_JHA_Govind)\
**Replies:** 7\
**Last updated:** [January 9, 2024, 5:13pm UTC](https://discuss.elastic.co/t/co-elastic-clients-json-jsonpmappingexception-error-deserializing-co-elastic-clients-elasticsearch-types-query-dsl-matchquery-invalid-enum-none/350660 "2024-01-09T17:13:09Z")

</div>

Hi Team, I am facing issue while sending the query as json to Elasticsearch using latest client which is 8.11.1 please help me if i Iam trying anything wrong. StringReader queryJson = new StringReader(query); SearchRes…

---

## [Display current date in Canvas Workpad](https://discuss.elastic.co/t/display-current-date-in-canvas-workpad/350466)

<div class="topic-metadata">

**Author:** [@Matheus\_Rodrigues](https://discuss.elastic.co/u/Matheus_Rodrigues)\
**Replies:** 1\
**Last updated:** [January 9, 2024, 2:42pm UTC](https://discuss.elastic.co/t/display-current-date-in-canvas-workpad/350466 "2024-01-09T14:42:44Z")

</div>

Hello, I want to display the current day in text format on my Canvas Workpad, e.g.: 05th, December, or something like that. Do you have any ideas on how I can do it? FYI the date information is in the @timestamp field. …

---

## [ElasticAbout Elasticsearch & Kibana process persistence](https://discuss.elastic.co/t/elasticabout-elasticsearch-kibana-process-persistence/350622)

<div class="topic-metadata">

**Author:** [@YUUTA.INOUE-JPN](https://discuss.elastic.co/u/YUUTA.INOUE-JPN)\
**Replies:** 1\
**Last updated:** [January 9, 2024, 2:39pm UTC](https://discuss.elastic.co/t/elasticabout-elasticsearch-kibana-process-persistence/350622 "2024-01-09T14:39:41Z")

</div>

Hello from Japan I have a question for you respected engineers. I am an inexperienced Japanese engineer with Elasticsearch. I have a question about how to make Elasticsearch & Kibana version 8.11 process persistent us…

---

## [I want to Install Logstash in EC2 Linux UBUNTU 22.04 and want to run Syslog input Configuration but facing ERROR](https://discuss.elastic.co/t/i-want-to-install-logstash-in-ec2-linux-ubuntu-22-04-and-want-to-run-syslog-input-configuration-but-facing-error/350571)

<div class="topic-metadata">

**Author:** [@Subrato1](https://discuss.elastic.co/u/Subrato1)\
**Replies:** 3\
**Last updated:** [January 9, 2024, 12:41pm UTC](https://discuss.elastic.co/t/i-want-to-install-logstash-in-ec2-linux-ubuntu-22-04-and-want-to-run-syslog-input-configuration-but-facing-error/350571 "2024-01-09T12:41:04Z")

</div>

I Followed this URL: Installing Logstash | Logstash Reference \[7.14\] | Elastic APT one I followed. Then after the Installation I set the path of bin in Environment variable using below command. 1- Location of logstas…

---

## [Is it possible to do Load balancing using Kafka Input Plugin](https://discuss.elastic.co/t/is-it-possible-to-do-load-balancing-using-kafka-input-plugin/350447)

<div class="topic-metadata">

**Author:** [@Subrato1](https://discuss.elastic.co/u/Subrato1)\
**Replies:** 5\
**Last updated:** [January 9, 2024, 12:22pm UTC](https://discuss.elastic.co/t/is-it-possible-to-do-load-balancing-using-kafka-input-plugin/350447 "2024-01-09T12:22:26Z")

</div>

This is Configuartion I am Using. input { kafka{ #Insert any one string from the kafka\_brokers\_sasl from the service credential in the Event stream. bootstrap\_servers =\> "\<kafka\_brokers\_sasl\>" #Insert the …

---

## [How many users can access Elasticsearch and Kibana at the same time?](https://discuss.elastic.co/t/how-many-users-can-access-elasticsearch-and-kibana-at-the-same-time/350375)

<div class="topic-metadata">

**Author:** [@stramzik](https://discuss.elastic.co/u/stramzik)\
**Replies:** 2\
**Last updated:** [January 9, 2024, 11:08am UTC](https://discuss.elastic.co/t/how-many-users-can-access-elasticsearch-and-kibana-at-the-same-time/350375 "2024-01-09T11:08:26Z")

</div>

Hi, I am running a Elasticsearch and Kibana(V8.10) instance on a single windows server which has 8vCPU and 32gb of RAM. I would like to get a rough idea on how much load can the Elastic and Kibana instance can handle a…

---

## [Issues with complex range query](https://discuss.elastic.co/t/issues-with-complex-range-query/350643)

<div class="topic-metadata">

**Author:** [@teemukarvinen](https://discuss.elastic.co/u/teemukarvinen)\
**Replies:** 0\
**Last updated:** [January 9, 2024, 10:46am UTC](https://discuss.elastic.co/t/issues-with-complex-range-query/350643 "2024-01-09T10:46:16Z")

</div>

Hi, I have documents that contain array of allocation for person. Mapping: "Allocations": { "properties": { "endDate": { "type": "date" }, "startDate": { "type": "date" }, "state": { …

---

## [Onprem Elastic Kibana - Fleet - Kubernetes integration -No POD logs or metrics](https://discuss.elastic.co/t/onprem-elastic-kibana-fleet-kubernetes-integration-no-pod-logs-or-metrics/350642)

<div class="topic-metadata">

**Author:** [@chadleywilson](https://discuss.elastic.co/u/chadleywilson)\
**Replies:** 0\
**Last updated:** [January 9, 2024, 10:17am UTC](https://discuss.elastic.co/t/onprem-elastic-kibana-fleet-kubernetes-integration-no-pod-logs-or-metrics/350642 "2024-01-09T10:17:25Z")

</div>

Hi I have setup Elastic with Kibana on an onprem standalone server. I setup using the deb packages. I was pestered by the GUI to use Fleet Server, so after a lot of frustrating fiddling I managed to get it to work and…

---

## [Strigo Lab Access](https://discuss.elastic.co/t/strigo-lab-access/350576)

<div class="topic-metadata">

**Author:** [@PARAS\_PAUL1](https://discuss.elastic.co/u/PARAS_PAUL1)\
**Replies:** 4\
**Last updated:** [January 9, 2024, 9:44am UTC](https://discuss.elastic.co/t/strigo-lab-access/350576 "2024-01-09T09:44:32Z")

</div>

Course: Elasticsearch Engineer Version: On-demand Question: When I try to connect to the strigo lab environment for the first time, I get the following error: "Unfortunately, we cannot connect you to this training envi…

---

## [Productionising ELK](https://discuss.elastic.co/t/productionising-elk/350634)

<div class="topic-metadata">

**Author:** [@anik-27](https://discuss.elastic.co/u/anik-27)\
**Replies:** 0\
**Last updated:** [January 9, 2024, 8:27am UTC](https://discuss.elastic.co/t/productionising-elk/350634 "2024-01-09T08:27:20Z")

</div>

Hello, I have done POC for following use cases using the ELK and metricbeat - a) Monitoring 5-10 servers using metric beats b) stashed data into elasticsearch from an excel files every 15 minutes and created a dashboa…

---

## [Elastic Agents in K8S ECK with ingest port for Cloudflare HTTP](https://discuss.elastic.co/t/elastic-agents-in-k8s-eck-with-ingest-port-for-cloudflare-http/350618)

<div class="topic-metadata">

**Author:** [@Dallas\_Toth](https://discuss.elastic.co/u/Dallas_Toth)\
**Replies:** 0\
**Last updated:** [January 9, 2024, 2:33am UTC](https://discuss.elastic.co/t/elastic-agents-in-k8s-eck-with-ingest-port-for-cloudflare-http/350618 "2024-01-09T02:33:59Z")

</div>

I have my stack running with ECK and healthy Agents being ran with integrations for kubernetes system elasticsearch and kibana. I have hit an issue with the Cloudflare HTTP integration which now requires a open port of 9…

---

## [Visualize test resutls](https://discuss.elastic.co/t/visualize-test-resutls/343573)

<div class="topic-metadata">

**Author:** [@matti\_gottlieb](https://discuss.elastic.co/u/matti_gottlieb)\
**Replies:** 1\
**Last updated:** [January 8, 2024, 9:35pm UTC](https://discuss.elastic.co/t/visualize-test-resutls/343573 "2024-01-08T21:35:41Z")

</div>

hey I am new to ELK. i am struggling with basic visualizations i want to create. i have an index that contains test results. Every night i run X cycles, each cycle contains a many tests. each document has 5 fields: …

---

## [Logstash is not printing the whole exception log in a single message](https://discuss.elastic.co/t/logstash-is-not-printing-the-whole-exception-log-in-a-single-message/350556)

<div class="topic-metadata">

**Author:** [@sudhir\_singh](https://discuss.elastic.co/u/sudhir_singh)\
**Replies:** 4\
**Last updated:** [January 8, 2024, 6:50pm UTC](https://discuss.elastic.co/t/logstash-is-not-printing-the-whole-exception-log-in-a-single-message/350556 "2024-01-08T18:50:46Z")

</div>

Below is my exception log which I'm sending to logstash through filebeat but it only prints the single line of it. It is not considering the whole message: Failed to complete request: org.springframework.web.multipart.M…

---

## [Strigo Access](https://discuss.elastic.co/t/strigo-access/350592)

<div class="topic-metadata">

**Author:** [@msaunders](https://discuss.elastic.co/u/msaunders)\
**Replies:** 1\
**Last updated:** [January 8, 2024, 6:10pm UTC](https://discuss.elastic.co/t/strigo-access/350592 "2024-01-08T18:10:42Z")

</div>

Course: Data Analysis with Kibana Version: On-demand Question: When I try to connect to the strigo lab environment for the first time, I get the following error: "Unfortunately, we cannot connect you to this training e…

---

## [DataStream Over Index with ILM](https://discuss.elastic.co/t/datastream-over-index-with-ilm/350078)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 4\
**Last updated:** [January 8, 2024, 4:26pm UTC](https://discuss.elastic.co/t/datastream-over-index-with-ilm/350078 "2024-01-08T16:26:50Z")

</div>

Hi Team, Could you please help me to understand the use of data stream over normal index on which we can apply template and ILM policy to rollover to a new Index once it meets the policy defined in ILM. Because while c…

---

## [Bug: The vertical axis naming in the dashboard panel looks incorrect](https://discuss.elastic.co/t/bug-the-vertical-axis-naming-in-the-dashboard-panel-looks-incorrect/350494)

<div class="topic-metadata">

**Author:** [@tara](https://discuss.elastic.co/u/tara)\
**Replies:** 1\
**Last updated:** [January 8, 2024, 3:58pm UTC](https://discuss.elastic.co/t/bug-the-vertical-axis-naming-in-the-dashboard-panel-looks-incorrect/350494 "2024-01-08T15:58:41Z")

</div>

Hello Elastic Team, The vertical axis has more than 5 different metrics graphed against time on horizontal axis. But the name on the vertical axis always happens to the the last updated metric on the Vertical Axis, this…

---

## [Two node cluster - master assign](https://discuss.elastic.co/t/two-node-cluster-master-assign/350587)

<div class="topic-metadata">

**Author:** [@Oscar\_Yerpes](https://discuss.elastic.co/u/Oscar_Yerpes)\
**Replies:** 5\
**Last updated:** [January 8, 2024, 3:36pm UTC](https://discuss.elastic.co/t/two-node-cluster-master-assign/350587 "2024-01-08T15:36:02Z")

</div>

Hello all, I have a two-node cluster, with node01 designated as master: node.roles: \[ master, data, ingest \] node02 only has node.roles: \[ data, ingest \] In order to switch the master node, can I just simply move th…

---

## [RPM for Kibana 7.17.16 missing](https://discuss.elastic.co/t/rpm-for-kibana-7-17-16-missing/350438)

<div class="topic-metadata">

**Author:** [@anon90868141](https://discuss.elastic.co/u/anon90868141)\
**Replies:** 7\
**Last updated:** [January 8, 2024, 3:03pm UTC](https://discuss.elastic.co/t/rpm-for-kibana-7-17-16-missing/350438 "2024-01-08T15:03:15Z")

</div>

Hello, it seems like that the RPM for Kibana 7.17.16. is missing in the official https://artifacts.elastic.co/packages/7.x/yum. Why is that and is the version going to be downloadable soon? Thanks in advance

---

## [Elastic repository problem?](https://discuss.elastic.co/t/elastic-repository-problem/350370)

<div class="topic-metadata">

**Author:** [@ramiwashere](https://discuss.elastic.co/u/ramiwashere)\
**Replies:** 6\
**Last updated:** [January 8, 2024, 2:05pm UTC](https://discuss.elastic.co/t/elastic-repository-problem/350370 "2024-01-08T14:05:22Z")

</div>

Hi, I'm currently upgrade ELK stack tot the lastest version. Yesterday I started with data nodes and master. I notice the link was very slow and at the end of the day, I had to relaunch the download few times to end it…

---

## [I am trying to Install SYSLOG input plugin in Logstash which I installed in EC2 Ubuntu Linux but nto able to do this](https://discuss.elastic.co/t/i-am-trying-to-install-syslog-input-plugin-in-logstash-which-i-installed-in-ec2-ubuntu-linux-but-nto-able-to-do-this/350443)

<div class="topic-metadata">

**Author:** [@Subrato1](https://discuss.elastic.co/u/Subrato1)\
**Replies:** 3\
**Last updated:** [January 8, 2024, 12:35pm UTC](https://discuss.elastic.co/t/i-am-trying-to-install-syslog-input-plugin-in-logstash-which-i-installed-in-ec2-ubuntu-linux-but-nto-able-to-do-this/350443 "2024-01-08T12:35:55Z")

</div>

Setup I followed for Installation: Step to install : 1- Go to root : sudo su - 2- Download and install the Public Signing Key: wget -qO - https://artifacts.elastic.co/GPG-KEY-elasticsearch | sudo gpg --dearmor -o /…

---

## [Need help in how to show popup in elastic dashboard and also is it possible to call external api's](https://discuss.elastic.co/t/need-help-in-how-to-show-popup-in-elastic-dashboard-and-also-is-it-possible-to-call-external-apis/350432)

<div class="topic-metadata">

**Author:** [@Ashigha\_JR](https://discuss.elastic.co/u/Ashigha_JR)\
**Replies:** 7\
**Last updated:** [January 8, 2024, 11:20am UTC](https://discuss.elastic.co/t/need-help-in-how-to-show-popup-in-elastic-dashboard-and-also-is-it-possible-to-call-external-apis/350432 "2024-01-08T11:20:40Z")

</div>

Hi, Need to show popup in the elastic dashboard while clicking on any link/button. While clicking on link/button we need to call one external api to show the information in the popup. Is any feature available in elastic …

---

## [LogStash filter for matching timestamp example: \[2024-01-04 23:00:00,931\]](https://discuss.elastic.co/t/logstash-filter-for-matching-timestamp-example-2024-01-04-2300-931/350549)

<div class="topic-metadata">

**Author:** [@criss79](https://discuss.elastic.co/u/criss79)\
**Replies:** 2\
**Last updated:** [January 8, 2024, 10:07am UTC](https://discuss.elastic.co/t/logstash-filter-for-matching-timestamp-example-2024-01-04-2300-931/350549 "2024-01-08T10:07:02Z")

</div>

Hi guys, I am having difficulties to match this timestamp format for a log entry that looks like this: \[timestamp\] \[Loglevel\] message Log entry example: \[2024-01-04 23:00:00,931\] \[INFO\] Multi\_Language.UserInfoContain…

---

## [Delete by query deletes only 1000 documents, then quits](https://discuss.elastic.co/t/delete-by-query-deletes-only-1000-documents-then-quits/350529)

<div class="topic-metadata">

**Author:** [@d8d4a522fb1d394d9705](https://discuss.elastic.co/u/d8d4a522fb1d394d9705)\
**Replies:** 7\
**Last updated:** [January 8, 2024, 9:14am UTC](https://discuss.elastic.co/t/delete-by-query-deletes-only-1000-documents-then-quits/350529 "2024-01-08T09:14:41Z")

</div>

I am using the following the api to delete documents older than 60 days: POST /index\_name/\_delete\_by\_query?conflicts=proceed { "query": { "range": { "@timestamp": {"lte": "now-60d/d"} } } } My inde…

---

## [Partial ELK component upgrade](https://discuss.elastic.co/t/partial-elk-component-upgrade/350559)

<div class="topic-metadata">

**Author:** [@Septianingrum.17](https://discuss.elastic.co/u/Septianingrum.17)\
**Replies:** 1\
**Last updated:** [January 8, 2024, 8:52am UTC](https://discuss.elastic.co/t/partial-elk-component-upgrade/350559 "2024-01-08T08:52:53Z")

</div>

Hi All, Currently I have run a vulnerability scan and it produces the following information: Users should upgrade to Kibana version 8.11.1 If the Elasticsearch, Logstash and Kibana that I currently use use version 8.…

---

## [Synthetics alerts and rules error](https://discuss.elastic.co/t/synthetics-alerts-and-rules-error/350108)

<div class="topic-metadata">

**Author:** [@jevonsnotes](https://discuss.elastic.co/u/jevonsnotes)\
**Replies:** 3\
**Last updated:** [January 8, 2024, 8:04am UTC](https://discuss.elastic.co/t/synthetics-alerts-and-rules-error/350108 "2024-01-08T08:04:05Z")

</div>

it occur an error when i click this Error Error: Cannot read properties of undefined (reading 'ui') at p (http://192.168.10.20:5601/68312/bundles/plugin/triggersActionsUi/1.0.0/triggersActionsUi.chunk.12.js:3:89…

---

## [Which installation is better for production](https://discuss.elastic.co/t/which-installation-is-better-for-production/350500)

<div class="topic-metadata">

**Author:** [@sahere37](https://discuss.elastic.co/u/sahere37)\
**Replies:** 5\
**Last updated:** [January 8, 2024, 5:30am UTC](https://discuss.elastic.co/t/which-installation-is-better-for-production/350500 "2024-01-08T05:30:20Z")

</div>

hi, I want to run ELK 8.11 on production environment on oracle linux VMs, Which type of installation is preferred for production environment? RPM based or Archive based? Also, can we use another user apart from "root" …

---

## [Use index to judge data,but not found](https://discuss.elastic.co/t/use-index-to-judge-data-but-not-found/350446)

<div class="topic-metadata">

**Author:** [@yunke\_yin](https://discuss.elastic.co/u/yunke_yin)\
**Replies:** 4\
**Last updated:** [January 8, 2024, 1:45am UTC](https://discuss.elastic.co/t/use-index-to-judge-data-but-not-found/350446 "2024-01-08T01:45:23Z")

</div>

please help me. I got many data of the same type. In some cases, the known data must exist, but I need to further confirm which index the data is under. I chose to judge in the following way, but cannot found then throw…

---

## [Elasticsearch shows float types as string in output](https://discuss.elastic.co/t/elasticsearch-shows-float-types-as-string-in-output/350535)

<div class="topic-metadata">

**Author:** [@Ata\_Zangene](https://discuss.elastic.co/u/Ata_Zangene)\
**Replies:** 2\
**Last updated:** [January 7, 2024, 6:08pm UTC](https://discuss.elastic.co/t/elasticsearch-shows-float-types-as-string-in-output/350535 "2024-01-07T18:08:53Z")

</div>

I have a sample schema like this "coordinate": { "properties": { "geo": { "type": "geo\_point" }, "latitude": { "type": "float" }, "longitude": { "type": "float" …

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=246)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=248)
