# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=272

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 273

---

## [Cannot determine timezone from nil logstash](https://discuss.elastic.co/t/cannot-determine-timezone-from-nil-logstash/347217)

<div class="topic-metadata">

**Author:** [@SamehSaeed](https://discuss.elastic.co/u/SamehSaeed)\
**Replies:** 9\
**Last updated:** [November 16, 2023, 12:27pm UTC](https://discuss.elastic.co/t/cannot-determine-timezone-from-nil-logstash/347217 "2023-11-16T12:27:06Z")

</div>

I'm getting an error while running logstash " (ArgumentError) Cannot determine timezone from nil\\n(secs:1700041898.446,utc~:"2023-11-15 09:51:38.4460000991821289",ltz~:nil)" I have tried solutions from other threads (a…

---

## [Google Workspace integration - logs-sdk admin](https://discuss.elastic.co/t/google-workspace-integration-logs-sdk-admin/347257)

<div class="topic-metadata">

**Author:** [@Eldr](https://discuss.elastic.co/u/Eldr)\
**Replies:** 1\
**Last updated:** [November 16, 2023, 12:23pm UTC](https://discuss.elastic.co/t/google-workspace-integration-logs-sdk-admin/347257 "2023-11-16T12:23:29Z")

</div>

I get this error despite following Elastic's documentation to the letter. this is the error (No authentication credentials were configured or detectec (ADC) accesing 'auth.oauth2') Also, I don't understand what this…

---

## [Corrupt index removal](https://discuss.elastic.co/t/corrupt-index-removal/347316)

<div class="topic-metadata">

**Author:** [@Jack123](https://discuss.elastic.co/u/Jack123)\
**Replies:** 1\
**Last updated:** [November 16, 2023, 10:16am UTC](https://discuss.elastic.co/t/corrupt-index-removal/347316 "2023-11-16T10:16:03Z")

</div>

Hello I've a small index that contains only a time stamp on a three node ES deployment. However its stuck initializing and there are no allocated secondary's. As the data in this index is unimportant I planed to just …

---

## [Backup & restore dashboard and workspace](https://discuss.elastic.co/t/backup-restore-dashboard-and-workspace/347097)

<div class="topic-metadata">

**Author:** [@StefanC](https://discuss.elastic.co/u/StefanC)\
**Replies:** 3\
**Last updated:** [November 16, 2023, 10:05am UTC](https://discuss.elastic.co/t/backup-restore-dashboard-and-workspace/347097 "2023-11-16T10:05:51Z")

</div>

What is the prefered way to backup a workspace and dashboard in order to edit them on another installation and copy them back to production machine. Uptill now we're confronted with id problems and license that gets lo…

---

## [Aggs in DSL](https://discuss.elastic.co/t/aggs-in-dsl/346910)

<div class="topic-metadata">

**Author:** [@Sayantica\_Ganguly](https://discuss.elastic.co/u/Sayantica_Ganguly)\
**Replies:** 6\
**Last updated:** [November 16, 2023, 7:32am UTC](https://discuss.elastic.co/t/aggs-in-dsl/346910 "2023-11-16T07:32:06Z")

</div>

when I create a new rule in Custom query with DSL for the query Login Authentication Condition 1: Count of failed login attempts for the same user account is greater than or equal to 5 within the last 2 minutes. Cond…

---

## [Uptime app is missing](https://discuss.elastic.co/t/uptime-app-is-missing/347139)

<div class="topic-metadata">

**Author:** [@Casper\_Thrane](https://discuss.elastic.co/u/Casper_Thrane)\
**Replies:** 3\
**Last updated:** [November 16, 2023, 7:20am UTC](https://discuss.elastic.co/t/uptime-app-is-missing/347139 "2023-11-16T07:20:34Z")

</div>

Hi I cannot find the Uptime app. I am ingesting heartbeat data in heartbeat -\> logstash -\> logstash -\> elasticsearch setup. I am indexing the data into a datastream called heartbeats.http.\*. Now I want to see the data i…

---

## [No SAN option available in verbose mode of elasticsearch-certutil](https://discuss.elastic.co/t/no-san-option-available-in-verbose-mode-of-elasticsearch-certutil/347115)

<div class="topic-metadata">

**Author:** [@carel0x53](https://discuss.elastic.co/u/carel0x53)\
**Replies:** 1\
**Last updated:** [November 16, 2023, 3:35am UTC](https://discuss.elastic.co/t/no-san-option-available-in-verbose-mode-of-elasticsearch-certutil/347115 "2023-11-16T03:35:58Z")

</div>

I was setting up the SSL certificates for Kibana, and when I tried to generate a enrollment token, using this command: (as root) /usr/share/elasticsearch# bin/elasticsearch-create-enrollment-token -s kibana I got the f…

---

## [Connect Apm-server to Elasticsearch via HTTPS](https://discuss.elastic.co/t/connect-apm-server-to-elasticsearch-via-https/347250)

<div class="topic-metadata">

**Author:** [@jlugo](https://discuss.elastic.co/u/jlugo)\
**Replies:** 1\
**Last updated:** [November 15, 2023, 10:35pm UTC](https://discuss.elastic.co/t/connect-apm-server-to-elasticsearch-via-https/347250 "2023-11-15T22:35:10Z")

</div>

So I've been struggling to get this working. I installed Kibana with Elasticsearch via auto configuration on Linux. Kibana connects to Elasticsearch no problem via https. However, I can't get apm-server to connect to e…

---

## [Elastic agent 8.4.3 - No policy response available](https://discuss.elastic.co/t/elastic-agent-8-4-3-no-policy-response-available/345303)

<div class="topic-metadata">

**Author:** [@elastic\_fan](https://discuss.elastic.co/u/elastic_fan)\
**Replies:** 8\
**Last updated:** [November 15, 2023, 8:23pm UTC](https://discuss.elastic.co/t/elastic-agent-8-4-3-no-policy-response-available/345303 "2023-11-15T20:23:18Z")

</div>

Hello, The Elastic UI displays the following error "No policy response available" Status output: ./elastic-agent status Status: FAILED Message: app endpoint-security--8.4.3-3a97d14d: Missed two check-ins Applica…

---

## [Does ES reindex a shard that's been moved to another node?](https://discuss.elastic.co/t/does-es-reindex-a-shard-thats-been-moved-to-another-node/346819)

<div class="topic-metadata">

**Author:** [@linkerc](https://discuss.elastic.co/u/linkerc)\
**Replies:** 13\
**Last updated:** [November 15, 2023, 7:58pm UTC](https://discuss.elastic.co/t/does-es-reindex-a-shard-thats-been-moved-to-another-node/346819 "2023-11-15T19:58:11Z")

</div>

I have noticed that the document indexing rate for a new data node stays higher than all other existing data nodes for few days after it's been introduced into the cluster. Is this expected?

---

## [Index Polygons and MultiPolygons with logstash](https://discuss.elastic.co/t/index-polygons-and-multipolygons-with-logstash/347235)

<div class="topic-metadata">

**Author:** [@Henri\_L](https://discuss.elastic.co/u/Henri_L)\
**Replies:** 2\
**Last updated:** [November 15, 2023, 6:48pm UTC](https://discuss.elastic.co/t/index-polygons-and-multipolygons-with-logstash/347235 "2023-11-15T18:48:49Z")

</div>

Hi I use ES to index geo-shapes like Polygon and MultiPolygon from CSV via logstash but I can't find a way to make ES ingest properly the datas... I use the following code but it failed for Polygon with holes and MultiP…

---

## [Problem connecting logstash and elasticsearch](https://discuss.elastic.co/t/problem-connecting-logstash-and-elasticsearch/346982)

<div class="topic-metadata">

**Author:** [@Belbo\_belbo](https://discuss.elastic.co/u/Belbo_belbo)\
**Replies:** 4\
**Last updated:** [November 15, 2023, 4:52pm UTC](https://discuss.elastic.co/t/problem-connecting-logstash-and-elasticsearch/346982 "2023-11-15T16:52:24Z")

</div>

Hi, I'm doing a simple setup on minikube to practice with the stack. I have a sidecar pod with a container that generates logs and filebeats, then I have elasticsearch, logstash and kibana pods. I have this problem betwe…

---

## [Elasticsearch 8 no longer throws Http Error 429](https://discuss.elastic.co/t/elasticsearch-8-no-longer-throws-http-error-429/347237)

<div class="topic-metadata">

**Author:** [@melchiorGr](https://discuss.elastic.co/u/melchiorGr)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 4:01pm UTC](https://discuss.elastic.co/t/elasticsearch-8-no-longer-throws-http-error-429/347237 "2023-11-15T16:01:30Z")

</div>

Our customers are running ES-8.x solely for our app on dedicated hardware, but since upgrade from Elastichsearch Server 7.13.x to Server 8.x indexing requests do no longer produce Http Response code 429 (which is recover…

---

## [Grock for \[10/26/23 10:48:30:823 CEST\] date format for Logstash filter](https://discuss.elastic.co/t/grock-for-10-26-23-1030-823-cest-date-format-for-logstash-filter/346871)

<div class="topic-metadata">

**Author:** [@elk1985](https://discuss.elastic.co/u/elk1985)\
**Replies:** 1\
**Last updated:** [November 15, 2023, 2:38pm UTC](https://discuss.elastic.co/t/grock-for-10-26-23-1030-823-cest-date-format-for-logstash-filter/346871 "2023-11-15T14:38:02Z")

</div>

Hello. I'm looking for grock filter matching this format \[10/26/23 10:48:30:823 CEST\] can't find any match from predefined formats. I need it to my Logstash filter. Any ideas ?

---

## [Create multiple indexes](https://discuss.elastic.co/t/create-multiple-indexes/346629)

<div class="topic-metadata">

**Author:** [@chrispos](https://discuss.elastic.co/u/chrispos)\
**Replies:** 3\
**Last updated:** [November 15, 2023, 2:13pm UTC](https://discuss.elastic.co/t/create-multiple-indexes/346629 "2023-11-15T14:13:20Z")

</div>

I am trying to send two json logs from server A to my logstash server. Previously, when we only sent a json log file from server A to the logstash server, it was possible to create a data view and view the log in discov…

---

## [How to handle replay of eventhub data](https://discuss.elastic.co/t/how-to-handle-replay-of-eventhub-data/347230)

<div class="topic-metadata">

**Author:** [@favetelinguis](https://discuss.elastic.co/u/favetelinguis)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 2:02pm UTC](https://discuss.elastic.co/t/how-to-handle-replay-of-eventhub-data/347230 "2023-11-15T14:02:15Z")

</div>

I am currently running some disaster recovery tests on out logstash which uses the Azure Eventhub input plugin and elastic output. My test includes changing the URL to elastic so that sending will fail. However once I re…

---

## [Data retention](https://discuss.elastic.co/t/data-retention/347129)

<div class="topic-metadata">

**Author:** [@admin365](https://discuss.elastic.co/u/admin365)\
**Replies:** 7\
**Last updated:** [November 15, 2023, 1:15pm UTC](https://discuss.elastic.co/t/data-retention/347129 "2023-11-15T13:15:15Z")

</div>

Hello! I've successfully configured a Debian-based Elasticsearch cluster with three nodes. Everything is functioning well. Currently, I need guidance on activating a data retention period of three months. Can you provid…

---

## [LDAP authentification for Kibana 8.8](https://discuss.elastic.co/t/ldap-authentification-for-kibana-8-8/347205)

<div class="topic-metadata">

**Author:** [@Manal\_A](https://discuss.elastic.co/u/Manal_A)\
**Replies:** 1\
**Last updated:** [November 15, 2023, 11:09am UTC](https://discuss.elastic.co/t/ldap-authentification-for-kibana-8-8/347205 "2023-11-15T11:09:34Z")

</div>

Hello, I want to set up LDAP integration to manage groups, allowing them access to different spaces within the Kibana 8.8 interface. Additionally, I want to handle permissions through an external LDAP. Is this at the…

---

## [Cannot upgrade to 8.11 over apt, like documentation suggests](https://discuss.elastic.co/t/cannot-upgrade-to-8-11-over-apt-like-documentation-suggests/347216)

<div class="topic-metadata">

**Author:** [@awiederkehr](https://discuss.elastic.co/u/awiederkehr)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 10:37am UTC](https://discuss.elastic.co/t/cannot-upgrade-to-8-11-over-apt-like-documentation-suggests/347216 "2023-11-15T10:37:27Z")

</div>

Hello, the 8.11.0 and 8.11.1 is not available over the APT repo like the documentation suggests. The last version listed on stable is 8.10.4.

---

## [Kibana does not start after upgrade to 8.11.0](https://discuss.elastic.co/t/kibana-does-not-start-after-upgrade-to-8-11-0/346994)

<div class="topic-metadata">

**Author:** [@tori](https://discuss.elastic.co/u/tori)\
**Replies:** 1\
**Last updated:** [November 15, 2023, 9:14am UTC](https://discuss.elastic.co/t/kibana-does-not-start-after-upgrade-to-8-11-0/346994 "2023-11-15T09:14:11Z")

</div>

We recently upgraded our on-prem Elastic stack deployment to 8.11.0 Kibana refuses to start after the upgrade (/var/log/kibana/kibana.log): {"service":{"node":{"roles":\["background\_tasks","ui"\]}},"ecs":{"version":"8.6.…

---

## [Elastic APM with ASP.Net Web Forms](https://discuss.elastic.co/t/elastic-apm-with-asp-net-web-forms/345591)

<div class="topic-metadata">

**Author:** [@yasserzaid](https://discuss.elastic.co/u/yasserzaid)\
**Replies:** 4\
**Last updated:** [November 15, 2023, 8:58am UTC](https://discuss.elastic.co/t/elastic-apm-with-asp-net-web-forms/345591 "2023-11-15T08:58:42Z")

</div>

Hi all, I'm trying to integrate my web application with Elastic APM but i can't see any log. My application using .Net Framework 4.6.1 and i'm using Elastic.Apm.AspNetFullFramework Version 1.22.0 In Web.Config \<?xml …

---

## [How to change field from text, float to only float?](https://discuss.elastic.co/t/how-to-change-field-from-text-float-to-only-float/346958)

<div class="topic-metadata">

**Author:** [@randomnamegenerator](https://discuss.elastic.co/u/randomnamegenerator)\
**Replies:** 4\
**Last updated:** [November 15, 2023, 8:52am UTC](https://discuss.elastic.co/t/how-to-change-field-from-text-float-to-only-float/346958 "2023-11-15T08:52:12Z")

</div>

Hello there, We have an issue on one of our customer sites where a field is mapped as text, float rather than just float. I believe this is causing a grok timeout issue. The ELK stack is receiving logs from an applica…

---

## [Logstash 8.11.1 Security Update (ESA-2023-26)](https://discuss.elastic.co/t/logstash-8-11-1-security-update-esa-2023-26/347191)

<div class="topic-metadata">

**Author:** [@ikakavas](https://discuss.elastic.co/u/ikakavas)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 6:29am UTC](https://discuss.elastic.co/t/logstash-8-11-1-security-update-esa-2023-26/347191 "2023-11-15T06:29:05Z")

</div>

Logstash Insertion of Sensitive Information into Log File (ESA-2023-26) An issue was identified by Elastic whereby sensitive information is recorded in Logstash logs under specific circumstances. The prerequisites for t…

---

## [Calculate time in different events](https://discuss.elastic.co/t/calculate-time-in-different-events/347198)

<div class="topic-metadata">

**Author:** [@StefanC](https://discuss.elastic.co/u/StefanC)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 7:58am UTC](https://discuss.elastic.co/t/calculate-time-in-different-events/347198 "2023-11-15T07:58:51Z")

</div>

How is it possible to cacluate MBTF/availability of equipment within elastic? The events equipment available and unavailable come within different events. How is it possible to caculate the timedifference between @times…

---

## [Elastic Query Issue](https://discuss.elastic.co/t/elastic-query-issue/346861)

<div class="topic-metadata">

**Author:** [@rwire](https://discuss.elastic.co/u/rwire)\
**Replies:** 3\
**Last updated:** [November 15, 2023, 7:06am UTC](https://discuss.elastic.co/t/elastic-query-issue/346861 "2023-11-15T07:06:16Z")

</div>

We initially implemented proximity search using wildcard queries in Elasticsearch, but this approach couldn't accommodate all of our functional use cases. In some scenarios, we encountered an error due to the 128 combina…

---

## [Failed to obtain node locks, tried \[/usr/share/elasticsearch/data\]](https://discuss.elastic.co/t/failed-to-obtain-node-locks-tried-usr-share-elasticsearch-data/346558)

<div class="topic-metadata">

**Author:** [@arpitsharma-vw](https://discuss.elastic.co/u/arpitsharma-vw)\
**Replies:** 1\
**Last updated:** [November 15, 2023, 6:45am UTC](https://discuss.elastic.co/t/failed-to-obtain-node-locks-tried-usr-share-elasticsearch-data/346558 "2023-11-15T06:45:49Z")

</div>

Hello Team, I have installed ECK Operator(v2.9.0) on openshift(v 4.13.18). Installation of the operator is successful. If I am creating elasticsearch cluster via an operator, pods are getting crashed with following erro…

---

## [How to check bucket size condition and change email action in watcher?](https://discuss.elastic.co/t/how-to-check-bucket-size-condition-and-change-email-action-in-watcher/347183)

<div class="topic-metadata">

**Author:** [@helloworld3112](https://discuss.elastic.co/u/helloworld3112)\
**Replies:** 0\
**Last updated:** [November 15, 2023, 3:27am UTC](https://discuss.elastic.co/t/how-to-check-bucket-size-condition-and-change-email-action-in-watcher/347183 "2023-11-15T03:27:06Z")

</div>

Hello everyone, I have a watcher: { "input": { "search": { "request": { "search\_type": "query\_then\_fetch", "indices": \[ "index-\*" \], "body": { "query": {"…

---

## [Query with AND operator across inner hits of a document?](https://discuss.elastic.co/t/query-with-and-operator-across-inner-hits-of-a-document/347175)

<div class="topic-metadata">

**Author:** [@cphramington](https://discuss.elastic.co/u/cphramington)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:40pm UTC](https://discuss.elastic.co/t/query-with-and-operator-across-inner-hits-of-a-document/347175 "2023-11-14T23:40:46Z")

</div>

I'm currently using a query like this to prioritize hits that contain multiple terms from the query string over those that contain fewer. "nested": { "path": "my\_nested\_fie…

---

## [GrokProcessor unescaped character](https://discuss.elastic.co/t/grokprocessor-unescaped-character/347171)

<div class="topic-metadata">

**Author:** [@gunlomboy](https://discuss.elastic.co/u/gunlomboy)\
**Replies:** 0\
**Last updated:** [November 14, 2023, 11:12pm UTC](https://discuss.elastic.co/t/grokprocessor-unescaped-character/347171 "2023-11-14T23:12:48Z")

</div>

Hi, Recently my elasticsearch logs are full of these. \[WARN \]\[o.e.i.c.GrokProcessor \] \[node01\] character class has '-' without escape Running 8.8.0, I wouldn't know where to start looking for an unescaped '-'. Any…

---

## [Kibana 8.10 not starting and kibana log is not generating](https://discuss.elastic.co/t/kibana-8-10-not-starting-and-kibana-log-is-not-generating/347093)

<div class="topic-metadata">

**Author:** [@BandredK](https://discuss.elastic.co/u/BandredK)\
**Replies:** 1\
**Last updated:** [November 14, 2023, 11:01pm UTC](https://discuss.elastic.co/t/kibana-8-10-not-starting-and-kibana-log-is-not-generating/347093 "2023-11-14T23:01:35Z")

</div>

Hi, I have elasticsearch cluster formed with 3 nodes, cluster is up and running in green state epoch timestamp cluster status node.total node.data shards pri relo init unassign pending\_tasks max\_task\_wait\_time ac…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=271)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=273)
