# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=259

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 260

---

## [Customize kibana image in ECK operator](https://discuss.elastic.co/t/customize-kibana-image-in-eck-operator/349130)

<div class="topic-metadata">

**Author:** [@expert1](https://discuss.elastic.co/u/expert1)\
**Replies:** 1\
**Last updated:** [December 12, 2023, 11:26am UTC](https://discuss.elastic.co/t/customize-kibana-image-in-eck-operator/349130 "2023-12-12T11:26:24Z")

</div>

Hi, How to Customize kibana image in ECK operator ? Here is my kibana yaml apiVersion: kibana.k8s.elastic.co/v1 kind: Kibana metadata: name: elasticsearch spec: version: 7.17.14 count: 1 elasticsearchRef: n…

---

## [Field not found message](https://discuss.elastic.co/t/field-not-found-message/349040)

<div class="topic-metadata">

**Author:** [@vils](https://discuss.elastic.co/u/vils)\
**Replies:** 1\
**Last updated:** [December 12, 2023, 11:17am UTC](https://discuss.elastic.co/t/field-not-found-message/349040 "2023-12-12T11:17:36Z")

</div>

Hi all, I received an error message for a metric, saying the field wasn't found. The field not being found is fine since it does not apply to all my users, but is there a way to remove the error message. Instead having …

---

## [Elastic Map Service : Unable to find EMS tile configuration for id:road\_map : Kibana 7.17.0](https://discuss.elastic.co/t/elastic-map-service-unable-to-find-ems-tile-configuration-for-id-road-map-kibana-7-17-0/349122)

<div class="topic-metadata">

**Author:** [@vikas.shirke](https://discuss.elastic.co/u/vikas.shirke)\
**Replies:** 4\
**Last updated:** [December 12, 2023, 9:59am UTC](https://discuss.elastic.co/t/elastic-map-service-unable-to-find-ems-tile-configuration-for-id-road-map-kibana-7-17-0/349122 "2023-12-12T09:59:05Z")

</div>

We have done on premise Kibana deployment at client location on Windows Server VM. VM does not have public internet access. We are getting below error while loading map. Unable to load layer Unable to find EMS tile con…

---

## [Allow multi-line breaking using \\n in Discover Datatable](https://discuss.elastic.co/t/allow-multi-line-breaking-using-n-in-discover-datatable/348975)

<div class="topic-metadata">

**Author:** [@Saar\_Tamir](https://discuss.elastic.co/u/Saar_Tamir)\
**Replies:** 3\
**Last updated:** [December 12, 2023, 8:29am UTC](https://discuss.elastic.co/t/allow-multi-line-breaking-using-n-in-discover-datatable/348975 "2023-12-12T08:29:34Z")

</div>

Hello, I'm sending strings with \\n so I can see logs in multi-line formatting, but all I see is the literal '\\n'. For example: I found this previous issue and PR: and I see that it added on 8.4.0 but only for Lens…

---

## [Elasticsearch throws error 503 Server Unavailable](https://discuss.elastic.co/t/elasticsearch-throws-error-503-server-unavailable/348896)

<div class="topic-metadata">

**Author:** [@Kalidastate](https://discuss.elastic.co/u/Kalidastate)\
**Replies:** 7\
**Last updated:** [December 12, 2023, 8:13am UTC](https://discuss.elastic.co/t/elasticsearch-throws-error-503-server-unavailable/348896 "2023-12-12T08:13:24Z")

</div>

I am facing one issue with the Elasticsearch in the production environment. Elasticsearch stops responding to the API calls and it needs to be restarted. Logs collected from Elasticsearch are as follows When the issue…

---

## [Dec 12th, 2023: \[EN\] Retrieval Augmented Generation (RAG) for Improving Support](https://discuss.elastic.co/t/dec-12th-2023-en-retrieval-augmented-generation-rag-for-improving-support/347291)

<div class="topic-metadata">

**Author:** [@corymangini](https://discuss.elastic.co/u/corymangini)\
**Replies:** 0\
**Last updated:** [December 12, 2023, 8:00am UTC](https://discuss.elastic.co/t/dec-12th-2023-en-retrieval-augmented-generation-rag-for-improving-support/347291 "2023-12-12T08:00:39Z")

</div>

In previous articles on the Elastic blog and the December 7th Advent calendar, you have seen how to set up a simple semantic search to find topics without using the exact keyword. Elastic runs its own Support Hub on t…

---

## [Suggestion on elastic cluster requirement](https://discuss.elastic.co/t/suggestion-on-elastic-cluster-requirement/349109)

<div class="topic-metadata">

**Author:** [@Ishaque\_Mohammed](https://discuss.elastic.co/u/Ishaque_Mohammed)\
**Replies:** 0\
**Last updated:** [December 12, 2023, 6:25am UTC](https://discuss.elastic.co/t/suggestion-on-elastic-cluster-requirement/349109 "2023-12-12T06:25:07Z")

</div>

I have GKE clusters in that I am getting total 50MB logs /second to elastic and for this I have setup a 6 node elastic cluster with 4core and 16GB RAM configuration still I am facing issue when a surge occurs however my…

---

## [Kibana visualization bar chart not as expected](https://discuss.elastic.co/t/kibana-visualization-bar-chart-not-as-expected/349099)

<div class="topic-metadata">

**Author:** [@Liam619](https://discuss.elastic.co/u/Liam619)\
**Replies:** 1\
**Last updated:** [December 12, 2023, 4:05am UTC](https://discuss.elastic.co/t/kibana-visualization-bar-chart-not-as-expected/349099 "2023-12-12T04:05:31Z")

</div>

Hi, I'm new to Kibana / Elastic service and trying to create a bar chart. I have 2 fields that store the number of storage capacity. What I'm trying to achieve here is that I wanted to display the bar separately. But s…

---

## [Seeking advice on setting up the ELK Stack](https://discuss.elastic.co/t/seeking-advice-on-setting-up-the-elk-stack/348968)

<div class="topic-metadata">

**Author:** [@Carrier99](https://discuss.elastic.co/u/Carrier99)\
**Replies:** 1\
**Last updated:** [December 12, 2023, 12:30am UTC](https://discuss.elastic.co/t/seeking-advice-on-setting-up-the-elk-stack/348968 "2023-12-12T00:30:36Z")

</div>

Hey there. I want to set up the ELK stack, and I'm wondering about a good way to set it up. I'm running Proxmox so I have the options of either VMs or LXCs (was thinking of going with LXCs). My main question is should…

---

## [Disk space measure for Elasticsearch service](https://discuss.elastic.co/t/disk-space-measure-for-elasticsearch-service/349076)

<div class="topic-metadata">

**Author:** [@kaushalshriyan](https://discuss.elastic.co/u/kaushalshriyan)\
**Replies:** 1\
**Last updated:** [December 12, 2023, 12:11am UTC](https://discuss.elastic.co/t/disk-space-measure-for-elasticsearch-service/349076 "2023-12-12T00:11:07Z")

</div>

Hi, I have provisioned 300 GB of Hard disk storage to Elastic search stack. Is there a way to measure how much storage is consumed by ES service, as I need to work on Capacity planning. For example, how much memory and …

---

## [Migrate shards from one node set to another](https://discuss.elastic.co/t/migrate-shards-from-one-node-set-to-another/349065)

<div class="topic-metadata">

**Author:** [@hashworks](https://discuss.elastic.co/u/hashworks)\
**Replies:** 1\
**Last updated:** [December 11, 2023, 5:33pm UTC](https://discuss.elastic.co/t/migrate-shards-from-one-node-set-to-another/349065 "2023-12-11T17:33:54Z")

</div>

Hi, I have three sets of nodes: A, B and C. Over time, I want to migrate all shards on A and B to C (and remove A and B from the cluster). I could do that all at once by setting the cluster routing allocation setting: …

---

## [Splitting an array of objects using Logstash](https://discuss.elastic.co/t/splitting-an-array-of-objects-using-logstash/349066)

<div class="topic-metadata">

**Author:** [@M0hsen](https://discuss.elastic.co/u/M0hsen)\
**Replies:** 2\
**Last updated:** [December 11, 2023, 4:21pm UTC](https://discuss.elastic.co/t/splitting-an-array-of-objects-using-logstash/349066 "2023-12-11T16:21:38Z")

</div>

Hello everyone, I'm trying to split the following array of objects into multiple log events: \[ { "time": "\*", "twkMessageId": "\*", "environmentName": "\*", "virtualhostName": "default", "apiproxyNa…

---

## [TLS and Metricbeat](https://discuss.elastic.co/t/tls-and-metricbeat/349064)

<div class="topic-metadata">

**Author:** [@Jame\_M](https://discuss.elastic.co/u/Jame_M)\
**Replies:** 0\
**Last updated:** [December 11, 2023, 3:53pm UTC](https://discuss.elastic.co/t/tls-and-metricbeat/349064 "2023-12-11T15:53:12Z")

</div>

Hello, mostly new to the Elastic Search framework, but I have a question. I have successfully deployed Metricbeat onto a set of remote servers pointing back to our Elastic Search via a IP address, and those work perfectl…

---

## [Kibana Server is not ready yet](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/349026)

<div class="topic-metadata">

**Author:** [@AbcDE](https://discuss.elastic.co/u/AbcDE)\
**Replies:** 1\
**Last updated:** [December 11, 2023, 3:55pm UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet/349026 "2023-12-11T15:55:50Z")

</div>

Hi I'm a new user of Kibana&Ubuntu(and forum) and i'm trying to start Kibana service for view the log of Suricata with a graphical interface, so please if you give me help be clear and precise Thanks. ok so i'm on Ubun…

---

## [Grok with custom pattern works in debugger but not in pipline](https://discuss.elastic.co/t/grok-with-custom-pattern-works-in-debugger-but-not-in-pipline/348957)

<div class="topic-metadata">

**Author:** [@helldunkel](https://discuss.elastic.co/u/helldunkel)\
**Replies:** 5\
**Last updated:** [December 11, 2023, 3:48pm UTC](https://discuss.elastic.co/t/grok-with-custom-pattern-works-in-debugger-but-not-in-pipline/348957 "2023-12-11T15:48:22Z")

</div>

Hi, I´m have a lot of problems to get a dataset in elastic. In Debugger it works. Log \<30\>2023:12:08-12:59:39 fw-swr-2 ulogd\[32373\]: grock .\*\>%{SOPHOS\_TIMESTAMP:\_tmp.timestamp} %{TEST:firewall.name} custom pattern …

---

## [Expose Elasticsearch on GKE to Dataproc (Performantly )](https://discuss.elastic.co/t/expose-elasticsearch-on-gke-to-dataproc-performantly/349056)

<div class="topic-metadata">

**Author:** [@Pat\_Humphreys](https://discuss.elastic.co/u/Pat_Humphreys)\
**Replies:** 0\
**Last updated:** [December 11, 2023, 2:42pm UTC](https://discuss.elastic.co/t/expose-elasticsearch-on-gke-to-dataproc-performantly/349056 "2023-12-11T14:42:19Z")

</div>

What is the recomended way of exposing an elasticsearch cluster outside of the GKE cluster e.g. to use by a spark job running in dataproc (Using ES Hadoop libary) within the same VPC, without enabling the wan.only option…

---

## [Uprading Elastic search upgrade from 6.6.1 to 7.16.3](https://discuss.elastic.co/t/uprading-elastic-search-upgrade-from-6-6-1-to-7-16-3/348851)

<div class="topic-metadata">

**Author:** [@Abhishek\_Gangadharai](https://discuss.elastic.co/u/Abhishek_Gangadharai)\
**Replies:** 3\
**Last updated:** [December 11, 2023, 1:20pm UTC](https://discuss.elastic.co/t/uprading-elastic-search-upgrade-from-6-6-1-to-7-16-3/348851 "2023-12-11T13:20:36Z")

</div>

Uprading Elastic search upgrade from 6.6.1 to 7.16.3 in Bitbucket datacenter cluster nodes we are facing challenges can please help for proper documentation for Upgrading Elastic search Instructions, It will help us fo…

---

## [Write structured log but field is never recognized as 'date'](https://discuss.elastic.co/t/write-structured-log-but-field-is-never-recognized-as-date/348920)

<div class="topic-metadata">

**Author:** [@Heija](https://discuss.elastic.co/u/Heija)\
**Replies:** 2\
**Last updated:** [December 11, 2023, 12:01pm UTC](https://discuss.elastic.co/t/write-structured-log-but-field-is-never-recognized-as-date/348920 "2023-12-11T12:01:29Z")

</div>

Hi! I have a .net application which write log entries per nlog direct to Elasticsearch. It works with strings, numbers and booleans. Now I need to transfer a 'date' as structured log entry to Elasticsearch, but it wil…

---

## [I am facing issue with apm related indices "illegal\_argument\_exception: index.lifecycle.rollover\_alias \[apm-7.9.1-transaction\] does not point to index \[apm-7.9.1-transaction-000087\]"](https://discuss.elastic.co/t/i-am-facing-issue-with-apm-related-indices-illegal-argument-exception-index-lifecycle-rollover-alias-apm-7-9-1-transaction-does-not-point-to-index-apm-7-9-1-transaction-000087/349039)

<div class="topic-metadata">

**Author:** [@vaiagr](https://discuss.elastic.co/u/vaiagr)\
**Replies:** 0\
**Last updated:** [December 11, 2023, 11:53am UTC](https://discuss.elastic.co/t/i-am-facing-issue-with-apm-related-indices-illegal-argument-exception-index-lifecycle-rollover-alias-apm-7-9-1-transaction-does-not-point-to-index-apm-7-9-1-transaction-000087/349039 "2023-12-11T11:53:28Z")

</div>

illegal\_argument\_exception: index.lifecycle.rollover\_alias \[apm-7.9.1-transaction\] does not point to index \[apm-7.9.1-transaction-000087\]

---

## [One of our nodes is constantly leaving with "master not discovered yet"](https://discuss.elastic.co/t/one-of-our-nodes-is-constantly-leaving-with-master-not-discovered-yet/349031)

<div class="topic-metadata">

**Author:** [@coudenysj](https://discuss.elastic.co/u/coudenysj)\
**Replies:** 1\
**Last updated:** [December 11, 2023, 10:58am UTC](https://discuss.elastic.co/t/one-of-our-nodes-is-constantly-leaving-with-master-not-discovered-yet/349031 "2023-12-11T10:58:22Z")

</div>

We have a cluster with 33 nodes, and one server (always the same one) is leaving the cluster quite often. After restarting the service, it joins immediately. The exact error is: \[2023-12-11T11:23:29,293\]\[WARN \]\[o.e.c.…

---

## [Is there any way to update the \`last\_run\_metadata\_file\` in the output plugin?](https://discuss.elastic.co/t/is-there-any-way-to-update-the-last-run-metadata-file-in-the-output-plugin/348919)

<div class="topic-metadata">

**Author:** [@gayatri\_SN](https://discuss.elastic.co/u/gayatri_SN)\
**Replies:** 2\
**Last updated:** [December 11, 2023, 10:02am UTC](https://discuss.elastic.co/t/is-there-any-way-to-update-the-last-run-metadata-file-in-the-output-plugin/348919 "2023-12-11T10:02:30Z")

</div>

My scenario is as follows: I am using the JDBC input plugin with a tracking column and last\_run\_metadata\_file, and it is working as expected. However, when the ETL host is down or unreachable, the filter API throws an er…

---

## [Dec 10th, 2023: \[EN\] Ensuring compatibility with two Elasticsearch versions (or more) in automated tests](https://discuss.elastic.co/t/dec-10th-2023-en-ensuring-compatibility-with-two-elasticsearch-versions-or-more-in-automated-tests/348229)

<div class="topic-metadata">

**Author:** [@piotrprz](https://discuss.elastic.co/u/piotrprz)\
**Replies:** 0\
**Last updated:** [December 10, 2023, 8:00am UTC](https://discuss.elastic.co/t/dec-10th-2023-en-ensuring-compatibility-with-two-elasticsearch-versions-or-more-in-automated-tests/348229 "2023-12-10T08:00:11Z")

</div>

Upgrades of key dependencies can be tedious and scary. What if your system won’t work, because we haven’t tested one of the key flows? To avoid that we test our systems in staging, but that takes time and effort. Resu…

---

## [Elasticsearch node disconnect](https://discuss.elastic.co/t/elasticsearch-node-disconnect/349010)

<div class="topic-metadata">

**Author:** [@Farid\_Niasti](https://discuss.elastic.co/u/Farid_Niasti)\
**Replies:** 1\
**Last updated:** [December 11, 2023, 8:48am UTC](https://discuss.elastic.co/t/elasticsearch-node-disconnect/349010 "2023-12-11T08:48:47Z")

</div>

I have 3 nodes of Elasticsearch, sometimes one of my node leave cluster with bellow log: org.elasticsearch.cluster.block.ClusterBlockException: blocked by: \[SERVICE\_UNAVAILABLE/1/state not recovered / initialized\]; …

---

## [Lets Encrypt not working from console but does from firefox](https://discuss.elastic.co/t/lets-encrypt-not-working-from-console-but-does-from-firefox/349000)

<div class="topic-metadata">

**Author:** [@Donovan\_Hoare](https://discuss.elastic.co/u/Donovan_Hoare)\
**Replies:** 3\
**Last updated:** [December 11, 2023, 8:04am UTC](https://discuss.elastic.co/t/lets-encrypt-not-working-from-console-but-does-from-firefox/349000 "2023-12-11T08:04:42Z")

</div>

Good Day All. I have setup a 2-node cluster ith Elasticsearch and kibana. I took me quite some time on how to get lets-encrypt real certs to work. The cert now seems to be ok with kibana and Elasticsearch communicatio…

---

## [Dec 11th, 2023: \[EN\] Relevant Search Combining ELSER and BM25 Text Queries](https://discuss.elastic.co/t/dec-11th-2023-en-relevant-search-combining-elser-and-bm25-text-queries/348153)

<div class="topic-metadata">

**Author:** [@Kathleen\_DeRusso](https://discuss.elastic.co/u/Kathleen_DeRusso)\
**Replies:** 0\
**Last updated:** [December 11, 2023, 8:00am UTC](https://discuss.elastic.co/t/dec-11th-2023-en-relevant-search-combining-elser-and-bm25-text-queries/348153 "2023-12-11T08:00:21Z")

</div>

The Elastic Learned Spare EncodeR (ELSER) allows you to perform semantic search for more relevant search results. Sometimes, however, it’s more useful to combine semantic search results with regular keyword search res…

---

## [Tenable.sc integration not visible on the intergations tab](https://discuss.elastic.co/t/tenable-sc-integration-not-visible-on-the-intergations-tab/349019)

<div class="topic-metadata">

**Author:** [@Kotsos](https://discuss.elastic.co/u/Kotsos)\
**Replies:** 0\
**Last updated:** [December 11, 2023, 7:48am UTC](https://discuss.elastic.co/t/tenable-sc-integration-not-visible-on-the-intergations-tab/349019 "2023-12-11T07:48:42Z")

</div>

Hello, I am trying to install the Tenable.sc integration with the ELK stack, which according to the documentation collects and parses data from the Tenable.sc APIs. However it is nowhere to be found on the "Browse inter…

---

## [Kibana Log In Error](https://discuss.elastic.co/t/kibana-log-in-error/348861)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 2\
**Last updated:** [December 11, 2023, 5:31am UTC](https://discuss.elastic.co/t/kibana-log-in-error/348861 "2023-12-11T05:31:12Z")

</div>

Hi Team, When my mount point in Elasticsearch server reaches between 85-90 percent , we are not able to login the Kibana UI as per screenshot. While checking log in Kibana show disk usage issue and after adding space a…

---

## [Custom Index Creation Issue](https://discuss.elastic.co/t/custom-index-creation-issue/348979)

<div class="topic-metadata">

**Author:** [@Mani\_Manikanta](https://discuss.elastic.co/u/Mani_Manikanta)\
**Replies:** 4\
**Last updated:** [December 11, 2023, 4:01am UTC](https://discuss.elastic.co/t/custom-index-creation-issue/348979 "2023-12-11T04:01:57Z")

</div>

Hello, I am New to ELK Stack, Trying to Setup ELK Stack in Single Server following Elastic Documentation and I am Stuck here now Can Anyone Please Look into this and help me out Unable to Create a Custom Index from Lo…

---

## [Gave up on setting up ELK](https://discuss.elastic.co/t/gave-up-on-setting-up-elk/348984)

<div class="topic-metadata">

**Author:** [@Aamira](https://discuss.elastic.co/u/Aamira)\
**Replies:** 2\
**Last updated:** [December 10, 2023, 10:38pm UTC](https://discuss.elastic.co/t/gave-up-on-setting-up-elk/348984 "2023-12-10T22:38:45Z")

</div>

After 12 years of Linux background and infrastructure management, I accepted defeat setting up ELK for monitoring. I struggled for over 2 weeks trying every guide. but it seems that ELK is not worth the headache. The g…

---

## [Beats\_input\_raw\_event](https://discuss.elastic.co/t/beats-input-raw-event/348575)

<div class="topic-metadata">

**Author:** [@Yuval\_Algresi](https://discuss.elastic.co/u/Yuval_Algresi)\
**Replies:** 3\
**Last updated:** [December 10, 2023, 10:28pm UTC](https://discuss.elastic.co/t/beats-input-raw-event/348575 "2023-12-10T22:28:42Z")

</div>

Hello, I use winlogbeat to ship event viewer logs to my elastic stack. It first goes to logstash and from there to elastic - I use beats input plugin. Usually there is an event.original field that contains the raw eve…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=258)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=260)
