# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=271

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 272

---

## [How to build dsl query in spring-data-elasticsearch 5 (ElasticsearchOperations , CriteriaQuery)](https://discuss.elastic.co/t/how-to-build-dsl-query-in-spring-data-elasticsearch-5-elasticsearchoperations-criteriaquery/347475)

<div class="topic-metadata">

**Author:** [@dan\_kim](https://discuss.elastic.co/u/dan_kim)\
**Replies:** 0\
**Last updated:** [November 19, 2023, 1:56pm UTC](https://discuss.elastic.co/t/how-to-build-dsl-query-in-spring-data-elasticsearch-5-elasticsearchoperations-criteriaquery/347475 "2023-11-19T13:56:31Z")

</div>

Im trying to write some query using spring data elasticsearch 5 and this is my environment elasticsearch 8 spring boot 3 spring-data-elasticsearch 5 and i can not make query like this so PLEASE help me with building …

---

## [Logstash is shutting down after connecting to Elastic Search due to One or more required cgroup files or directories not found](https://discuss.elastic.co/t/logstash-is-shutting-down-after-connecting-to-elastic-search-due-to-one-or-more-required-cgroup-files-or-directories-not-found/347448)

<div class="topic-metadata">

**Author:** [@sathishkumarD](https://discuss.elastic.co/u/sathishkumarD)\
**Replies:** 6\
**Last updated:** [November 19, 2023, 1:56pm UTC](https://discuss.elastic.co/t/logstash-is-shutting-down-after-connecting-to-elastic-search-due-to-one-or-more-required-cgroup-files-or-directories-not-found/347448 "2023-11-19T13:56:15Z")

</div>

\[2023-11-18T14:35:04,262\]\[DEBUG\]\[org.logstash.execution.PeriodicFlush\]\[main\] Pushing flush onto pipeline. \[2023-11-18T14:35:04,906\]\[DEBUG\]\[logstash.instrument.periodicpoller.cgroup\] One or more required cgroup files or …

---

## [Not able to parse completely with grok](https://discuss.elastic.co/t/not-able-to-parse-completely-with-grok/346870)

<div class="topic-metadata">

**Author:** [@sudhir\_singh](https://discuss.elastic.co/u/sudhir_singh)\
**Replies:** 2\
**Last updated:** [November 18, 2023, 10:56pm UTC](https://discuss.elastic.co/t/not-able-to-parse-completely-with-grok/346870 "2023-11-18T22:56:46Z")

</div>

"10/Nov/2023:12:59:05 +0530" 192.54.23.32 GET "GET /healthcheck HTTP/1.1" 178 200 453 2 "nginx/1.23.4 (health check server\_192.87.23.870\_Pool-1\_http\_ok)" 127.0.0.1:3000 200 0.001 0.002 0.000 0.002 apimumbcms.hydtimes…

---

## [How to create a script statically in Logstash 7.17](https://discuss.elastic.co/t/how-to-create-a-script-statically-in-logstash-7-17/347446)

<div class="topic-metadata">

**Author:** [@getsolaris](https://discuss.elastic.co/u/getsolaris)\
**Replies:** 18\
**Last updated:** [November 18, 2023, 5:42pm UTC](https://discuss.elastic.co/t/how-to-create-a-script-statically-in-logstash-7-17/347446 "2023-11-18T17:42:50Z")

</div>

How to statically generate a script in Logstash 7.17 Hi, I would like to add elements to nested in elasticsearch via script via Logstash. Currently, compilations, cache\_evisions are increasing. I also increased max\_co…

---

## [Different values in new runs of logstash with Aggregate filter](https://discuss.elastic.co/t/different-values-in-new-runs-of-logstash-with-aggregate-filter/347451)

<div class="topic-metadata">

**Author:** [@Ilia](https://discuss.elastic.co/u/Ilia)\
**Replies:** 1\
**Last updated:** [November 18, 2023, 5:40pm UTC](https://discuss.elastic.co/t/different-values-in-new-runs-of-logstash-with-aggregate-filter/347451 "2023-11-18T17:40:10Z")

</div>

I've used jdbc input plugin to extract financial transactions from database. But each logical transaction is composed from multiple transactions so I used aggregate filter to merge them in one event. Here is the code of …

---

## [Elasticsearch to DB](https://discuss.elastic.co/t/elasticsearch-to-db/347381)

<div class="topic-metadata">

**Author:** [@dms6978](https://discuss.elastic.co/u/dms6978)\
**Replies:** 4\
**Last updated:** [November 18, 2023, 12:52pm UTC](https://discuss.elastic.co/t/elasticsearch-to-db/347381 "2023-11-18T12:52:03Z")

</div>

Is there a way to move Elasticsearch data into RDBMS?

---

## [Kibana plug-in as a option on space selection menu](https://discuss.elastic.co/t/kibana-plug-in-as-a-option-on-space-selection-menu/347440)

<div class="topic-metadata">

**Author:** [@Chicken\_Bake](https://discuss.elastic.co/u/Chicken_Bake)\
**Replies:** 0\
**Last updated:** [November 18, 2023, 2:06am UTC](https://discuss.elastic.co/t/kibana-plug-in-as-a-option-on-space-selection-menu/347440 "2023-11-18T02:06:23Z")

</div>

I am creating a custom plug-in at this time with the kibana plug-in generator. Is there a way to set the plug-in as an option on the space selection menu rather than on a spaces navigation slide out?

---

## [Can I Ingest Excel (.xlsx) Files Of Multiple Sheets Into Elasticsearch?](https://discuss.elastic.co/t/can-i-ingest-excel-xlsx-files-of-multiple-sheets-into-elasticsearch/347427)

<div class="topic-metadata">

**Author:** [@Ethan777100](https://discuss.elastic.co/u/Ethan777100)\
**Replies:** 1\
**Last updated:** [November 17, 2023, 11:37pm UTC](https://discuss.elastic.co/t/can-i-ingest-excel-xlsx-files-of-multiple-sheets-into-elasticsearch/347427 "2023-11-17T23:37:39Z")

</div>

I have a year's worth of Excel .xlsx files that are basically tabular reports manually updated by people. 1 file = 1 day worth of Occurrence Reports. The data in here is not in typical csv format. But its manually pop…

---

## [How to store sparse index in Elasticsearch](https://discuss.elastic.co/t/how-to-store-sparse-index-in-elasticsearch/347434)

<div class="topic-metadata">

**Author:** [@DavidAdamczyk](https://discuss.elastic.co/u/DavidAdamczyk)\
**Replies:** 0\
**Last updated:** [November 17, 2023, 9:13pm UTC](https://discuss.elastic.co/t/how-to-store-sparse-index-in-elasticsearch/347434 "2023-11-17T21:13:49Z")

</div>

I would like to store sparse vectors from my models, but I don't want to use ELSER because I need control over the entire process. How can I store sparse vectors, and how can I execute queries without relying on ELSER?

---

## [Guidelines with elastic/kibana update](https://discuss.elastic.co/t/guidelines-with-elastic-kibana-update/347131)

<div class="topic-metadata">

**Author:** [@bobmatheus](https://discuss.elastic.co/u/bobmatheus)\
**Replies:** 2\
**Last updated:** [November 17, 2023, 8:07pm UTC](https://discuss.elastic.co/t/guidelines-with-elastic-kibana-update/347131 "2023-11-17T20:07:57Z")

</div>

Hi All! I will need to update my elastic/kibana. I'm on version 6.8.11 and will need to migrate to version 7.17.4 due to a java update/security (from 8.201 to 11.0.12, log4j). Do you have any guidance or good practices…

---

## [Discover vertical grid lines gone - new "feature"?](https://discuss.elastic.co/t/discover-vertical-grid-lines-gone-new-feature/347378)

<div class="topic-metadata">

**Author:** [@qd-danh](https://discuss.elastic.co/u/qd-danh)\
**Replies:** 2\
**Last updated:** [November 17, 2023, 8:00pm UTC](https://discuss.elastic.co/t/discover-vertical-grid-lines-gone-new-feature/347378 "2023-11-17T20:00:00Z")

</div>

We just upgraded our cluster to 8.11.1 (previously 8.10.3). I'm seeing that the vertical grid lines in the discover results grid are gone. Is that a new "feature"? Changeable somewhere? I've looked through release not…

---

## [Not able to find logstash plain log in the var/log/logstash directory](https://discuss.elastic.co/t/not-able-to-find-logstash-plain-log-in-the-var-log-logstash-directory/347296)

<div class="topic-metadata">

**Author:** [@Domnic\_Raj\_D](https://discuss.elastic.co/u/Domnic_Raj_D)\
**Replies:** 5\
**Last updated:** [November 17, 2023, 6:44pm UTC](https://discuss.elastic.co/t/not-able-to-find-logstash-plain-log-in-the-var-log-logstash-directory/347296 "2023-11-17T18:44:50Z")

</div>

I am not able to find logstash-plain.log in the var/log/logstash directory. Configurations are set to write logs in /var/log/logstash directory. please advise.

---

## [How a user can favorite a item in a search ( many to many ) - product - user](https://discuss.elastic.co/t/how-a-user-can-favorite-a-item-in-a-search-many-to-many-product-user/347424)

<div class="topic-metadata">

**Author:** [@Murilo\_Livorato](https://discuss.elastic.co/u/Murilo_Livorato)\
**Replies:** 0\
**Last updated:** [November 17, 2023, 4:33pm UTC](https://discuss.elastic.co/t/how-a-user-can-favorite-a-item-in-a-search-many-to-many-product-user/347424 "2023-11-17T16:33:15Z")

</div>

hello , I wonder to know how a user could to save favorites , like this image . if I use a relational database , I could make a many to many relational . but with Elasticsearch . how could I do it ? I know that I c…

---

## [Production deployment with dedicated masters](https://discuss.elastic.co/t/production-deployment-with-dedicated-masters/346965)

<div class="topic-metadata">

**Author:** [@DaddyYusk](https://discuss.elastic.co/u/DaddyYusk)\
**Replies:** 9\
**Last updated:** [November 17, 2023, 3:20pm UTC](https://discuss.elastic.co/t/production-deployment-with-dedicated-masters/346965 "2023-11-17T15:20:00Z")

</div>

Hi, I plan to deploy Elasticsearch for a production environment following this architecture : 3 x dedicated Master node (node.roles: \[ master \]) 1 x Hot Data node (node.roles: \[ data\_hot \]) 1 x Warm Data node (node.ro…

---

## [Elasticsearch not working post migration of OS](https://discuss.elastic.co/t/elasticsearch-not-working-post-migration-of-os/347375)

<div class="topic-metadata">

**Author:** [@Techiebee](https://discuss.elastic.co/u/Techiebee)\
**Replies:** 1\
**Last updated:** [November 17, 2023, 2:33pm UTC](https://discuss.elastic.co/t/elasticsearch-not-working-post-migration-of-os/347375 "2023-11-17T14:33:05Z")

</div>

I have migrated my Elasticsearch cluster servers from centos7 to RHEL8 , post migration my cluster isn’t picking the hostname, for every server re-build I have to manually edit the hostname and restart the Elasticsearch …

---

## [Custom Elasticsearch queries without using script](https://discuss.elastic.co/t/custom-elasticsearch-queries-without-using-script/347404)

<div class="topic-metadata">

**Author:** [@vickram](https://discuss.elastic.co/u/vickram)\
**Replies:** 0\
**Last updated:** [November 17, 2023, 12:39pm UTC](https://discuss.elastic.co/t/custom-elasticsearch-queries-without-using-script/347404 "2023-11-17T12:39:40Z")

</div>

{"publishDate":"2023-08-06T10:34:00Z","data":{"evalFrequency":"3"}} Above is the sample data that I have in Elasticsearch, where I am struggling to find the right query to get results on the basis of the below condition…

---

## [How to configure the anonymous login to kibana](https://discuss.elastic.co/t/how-to-configure-the-anonymous-login-to-kibana/347208)

<div class="topic-metadata">

**Author:** [@MahithaSarala](https://discuss.elastic.co/u/MahithaSarala)\
**Replies:** 6\
**Last updated:** [November 17, 2023, 10:15am UTC](https://discuss.elastic.co/t/how-to-configure-the-anonymous-login-to-kibana/347208 "2023-11-17T10:15:52Z")

</div>

Hi Team, After deploying elasticsearch and kibana throgh eck, how to configure anonymous login to kibana 8.5.3 Thanks, SM

---

## [Elastic SIEM enterprise SOC use cases](https://discuss.elastic.co/t/elastic-siem-enterprise-soc-use-cases/347031)

<div class="topic-metadata">

**Author:** [@ksrawat88](https://discuss.elastic.co/u/ksrawat88)\
**Replies:** 1\
**Last updated:** [November 17, 2023, 6:20am UTC](https://discuss.elastic.co/t/elastic-siem-enterprise-soc-use-cases/347031 "2023-11-17T06:20:09Z")

</div>

Is anyone using Elastic SIEM enterprise version.? how do you find it day to day SOC uses comparing with splunk and qradar .? also is there any common security use case you were not able to achieve by elastic SIEM .?

---

## [Migrating Elastic Cluster to another cluster](https://discuss.elastic.co/t/migrating-elastic-cluster-to-another-cluster/347221)

<div class="topic-metadata">

**Author:** [@Putri\_Arsyi](https://discuss.elastic.co/u/Putri_Arsyi)\
**Replies:** 2\
**Last updated:** [November 17, 2023, 2:04am UTC](https://discuss.elastic.co/t/migrating-elastic-cluster-to-another-cluster/347221 "2023-11-17T02:04:34Z")

</div>

Hi, I would like to upgrade elastic to latest version. I'm going to create new cluster with latest version then migrate the data from existing cluster (version 8.6) to new cluster. I'm going to migrate the data also th…

---

## [Why plugin needed instead of SDK](https://discuss.elastic.co/t/why-plugin-needed-instead-of-sdk/347370)

<div class="topic-metadata">

**Author:** [@Prabhu\_shanmughapriy](https://discuss.elastic.co/u/Prabhu_shanmughapriy)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 9:28pm UTC](https://discuss.elastic.co/t/why-plugin-needed-instead-of-sdk/347370 "2023-11-16T21:28:15Z")

</div>

Hi, I would like to understand why should we write an Elasticsearch plugin vs Elasticsearch SDK.. This for fuzzy search for indices. Is there any performance reasons with plugins?

---

## [Parsing multiline java execption](https://discuss.elastic.co/t/parsing-multiline-java-execption/347262)

<div class="topic-metadata">

**Author:** [@apsh](https://discuss.elastic.co/u/apsh)\
**Replies:** 3\
**Last updated:** [November 16, 2023, 7:20pm UTC](https://discuss.elastic.co/t/parsing-multiline-java-execption/347262 "2023-11-16T19:20:29Z")

</div>

Hello, I am trying to add multiline to handle javaexception in our logs but still having issue : This is my pattern : paths: - /var/log/tomcat10/\* multiline.type: pattern multiline.pattern: '^\\d{2}-\\w{3}-\\d{4…

---

## [Logstash re-ingests files](https://discuss.elastic.co/t/logstash-re-ingests-files/347358)

<div class="topic-metadata">

**Author:** [@hjsroldan](https://discuss.elastic.co/u/hjsroldan)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 6:21pm UTC](https://discuss.elastic.co/t/logstash-re-ingests-files/347358 "2023-11-16T18:21:11Z")

</div>

Hi, I have a Logstash to Elasticsearch project where logstash collects all the logs from the server and pushes it to elasticsearch. However, seems like the Logstash ingests my logs multiple times. Ingested logs from yes…

---

## [London Information Retrieval Meetup (20th November 2023)](https://discuss.elastic.co/t/london-information-retrieval-meetup-20th-november-2023/347351)

<div class="topic-metadata">

**Author:** [@lizbiella](https://discuss.elastic.co/u/lizbiella)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 4:45pm UTC](https://discuss.elastic.co/t/london-information-retrieval-meetup-20th-november-2023/347351 "2023-11-16T16:45:29Z")

</div>

We are delighted to announce the nineteenth London Information Retrieval Meetup, a free evening event aimed at enthusiasts and professionals curious to explore and discuss the latest trends in the field. This time the M…

---

## [Problem with filebeat](https://discuss.elastic.co/t/problem-with-filebeat/346913)

<div class="topic-metadata">

**Author:** [@miladmohabati](https://discuss.elastic.co/u/miladmohabati)\
**Replies:** 20\
**Last updated:** [November 16, 2023, 2:34pm UTC](https://discuss.elastic.co/t/problem-with-filebeat/346913 "2023-11-16T14:34:38Z")

</div>

Exiting: couldn't connect to any of the configured Elasticsearch hosts. Errors: \[error connecting to Elasticsearch at http://localhost:9200: Get "http://localhost:9200": EOF\]

---

## [Adding incremental column based on values of another column](https://discuss.elastic.co/t/adding-incremental-column-based-on-values-of-another-column/346443)

<div class="topic-metadata">

**Author:** [@Felicien\_Ihirwe](https://discuss.elastic.co/u/Felicien_Ihirwe)\
**Replies:** 2\
**Last updated:** [November 16, 2023, 3:13pm UTC](https://discuss.elastic.co/t/adding-incremental-column-based-on-values-of-another-column/346443 "2023-11-16T15:13:58Z")

</div>

I want to create a logstash filter to come from table 1 to table 2: col1 in in out in out .. . I want to add a new column that will contain incremental values and the data will look like col1 | col 2 in | …

---

## [Elasticsearch V8.10.4 died with a "noClassDefFoundError"](https://discuss.elastic.co/t/elasticsearch-v8-10-4-died-with-a-noclassdeffounderror/345555)

<div class="topic-metadata">

**Author:** [@Franco901](https://discuss.elastic.co/u/Franco901)\
**Replies:** 6\
**Last updated:** [November 16, 2023, 2:15pm UTC](https://discuss.elastic.co/t/elasticsearch-v8-10-4-died-with-a-noclassdeffounderror/345555 "2023-11-16T14:15:10Z")

</div>

Hey folks, I just setup a new ES node with V8.10.4 for indexing our nextcloud documents. After about 3 millions of index docs created, the Nextcloud indexer sends a (encrypted) PDF which lets ES die poorly. :cold\_face: …

---

## [Unable to create Elasticsearch Cluster](https://discuss.elastic.co/t/unable-to-create-elasticsearch-cluster/347336)

<div class="topic-metadata">

**Author:** [@Esakki](https://discuss.elastic.co/u/Esakki)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 1:52pm UTC](https://discuss.elastic.co/t/unable-to-create-elasticsearch-cluster/347336 "2023-11-16T13:52:19Z")

</div>

@Sunile\_Manjee , Hi there, due to some issue I deleted elasticsearch, kibana and APM deployment completely from my on-prem K8s cluster, now when try to create it's not creating any pods, I waited for 2 hours nothing is…

---

## [Question regarding the parameter max\_term\_freq in term suggester](https://discuss.elastic.co/t/question-regarding-the-parameter-max-term-freq-in-term-suggester/347334)

<div class="topic-metadata">

**Author:** [@qwertzu](https://discuss.elastic.co/u/qwertzu)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 1:04pm UTC](https://discuss.elastic.co/t/question-regarding-the-parameter-max-term-freq-in-term-suggester/347334 "2023-11-16T13:04:49Z")

</div>

Howdy, I am new to the ES community so feel free to criticize my rookie mistakes. Currently I am playing around the term suggester and stumbled across the following behavior that seems counter intuitive: Here is the co…

---

## [Logstash pod is not coming up once the pipeline status is running](https://discuss.elastic.co/t/logstash-pod-is-not-coming-up-once-the-pipeline-status-is-running/347333)

<div class="topic-metadata">

**Author:** [@sathishkumarD](https://discuss.elastic.co/u/sathishkumarD)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 1:04pm UTC](https://discuss.elastic.co/t/logstash-pod-is-not-coming-up-once-the-pipeline-status-is-running/347333 "2023-11-16T13:04:14Z")

</div>

Logstash is deployed in a kubernetes cluster and Elastic Search is deployed in another cluster. For transferring the log files from logstash to Elasticsearch using outputs in the logstash.conf file. // output { // …

---

## [Elastic search authentication issue with helm](https://discuss.elastic.co/t/elastic-search-authentication-issue-with-helm/347331)

<div class="topic-metadata">

**Author:** [@Mithun\_Walawalkar](https://discuss.elastic.co/u/Mithun_Walawalkar)\
**Replies:** 0\
**Last updated:** [November 16, 2023, 12:54pm UTC](https://discuss.elastic.co/t/elastic-search-authentication-issue-with-helm/347331 "2023-11-16T12:54:06Z")

</div>

Hi, I am using Helm to install Elastic. I am able to successfully install it but when I try to log into Elastic with a predefined username and password it returns 401. It is very strange that it fails even if I use the …

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=270)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=272)
