# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=314

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 315

---

## [Varying data types in object causing mapping errors](https://discuss.elastic.co/t/varying-data-types-in-object-causing-mapping-errors/341717)

<div class="topic-metadata">

**Author:** [@Wesley84](https://discuss.elastic.co/u/Wesley84)\
**Replies:** 2\
**Last updated:** [August 28, 2023, 2:39pm UTC](https://discuss.elastic.co/t/varying-data-types-in-object-causing-mapping-errors/341717 "2023-08-28T14:39:28Z")

</div>

I have a data object called "weekly\_values" that I want to send to an existing elastic index. This object contains fields which when populated have a float data type. However these fields do not always have a value and w…

---

## [Elastic master node down, how to make slave new master?](https://discuss.elastic.co/t/elastic-master-node-down-how-to-make-slave-new-master/341568)

<div class="topic-metadata">

**Author:** [@webfr](https://discuss.elastic.co/u/webfr)\
**Replies:** 7\
**Last updated:** [August 28, 2023, 2:32pm UTC](https://discuss.elastic.co/t/elastic-master-node-down-how-to-make-slave-new-master/341568 "2023-08-28T14:32:26Z")

</div>

Hello, my master node is currently down since few days, how to make my slave new master if problem on master persists? Thanks.

---

## [Migrate elasticsearch data from 7.17 to 8.6.2 server](https://discuss.elastic.co/t/migrate-elasticsearch-data-from-7-17-to-8-6-2-server/341807)

<div class="topic-metadata">

**Author:** [@HiteshSingh](https://discuss.elastic.co/u/HiteshSingh)\
**Replies:** 1\
**Last updated:** [August 28, 2023, 2:00pm UTC](https://discuss.elastic.co/t/migrate-elasticsearch-data-from-7-17-to-8-6-2-server/341807 "2023-08-28T14:00:19Z")

</div>

We are running elasticsearch on a single node. We are in the process of upgrading our Elasticsearch server from 7.17 to 8.6.2 and we want to migrate elasticsearch data from 7.17 to 8.6.2 version. What is the best appro…

---

## [Rust - How to use PIT?](https://discuss.elastic.co/t/rust-how-to-use-pit/341809)

<div class="topic-metadata">

**Author:** [@Frederick\_Sauvage](https://discuss.elastic.co/u/Frederick_Sauvage)\
**Replies:** 0\
**Last updated:** [August 28, 2023, 1:35pm UTC](https://discuss.elastic.co/t/rust-how-to-use-pit/341809 "2023-08-28T13:35:28Z")

</div>

Hi, I'm trying to add PIT in but I don't find how to do. My code is similar as : let client = Elasticsearch::default(); let s = client.search(SearchParts::None).size(1000).timeout("120s"); let search = Search::new().…

---

## [Setup Elasticsearch cluster mode](https://discuss.elastic.co/t/setup-elasticsearch-cluster-mode/341228)

<div class="topic-metadata">

**Author:** [@HiteshSingh](https://discuss.elastic.co/u/HiteshSingh)\
**Replies:** 13\
**Last updated:** [August 28, 2023, 1:16pm UTC](https://discuss.elastic.co/t/setup-elasticsearch-cluster-mode/341228 "2023-08-28T13:16:58Z")

</div>

I want to setup cluster mode between 2 linux servers One of them will be master and data node and other one will only be a data node. Whenever i try to setup any external IP/interfaces to transport.host, elasticsearch …

---

## [New python client (8.x) for sql query](https://discuss.elastic.co/t/new-python-client-8-x-for-sql-query/340083)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 3\
**Last updated:** [August 28, 2023, 12:52pm UTC](https://discuss.elastic.co/t/new-python-client-8-x-for-sql-query/340083 "2023-08-28T12:52:50Z")

</div>

I am using sql query in my old python client 7.x and it works like this data = es.sql.query(body={"query": sql\_query1, "fetch\_size": 30000}) now using new client 8.x it give me this warning DeprecationWarning: The 'b…

---

## [Cannot retrieve search results in kibana:\[parent\] Data too large, data for \[indices:data/read/async\_search/get\]](https://discuss.elastic.co/t/cannot-retrieve-search-results-in-kibana-parent-data-too-large-data-for-indices-data-read-async-search-get/341514)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 2\
**Last updated:** [August 28, 2023, 10:24am UTC](https://discuss.elastic.co/t/cannot-retrieve-search-results-in-kibana-parent-data-too-large-data-for-indices-data-read-async-search-get/341514 "2023-08-28T10:24:16Z")

</div>

Hello All, I am facing one issue while executing a perl script from logstash and getting data,the data is configured to get from perl script execution through loh=gstash every 30 min. I am unbale to see any data in disc…

---

## [Fleet Integration Assets Fail After Upgrade to 8.9.0](https://discuss.elastic.co/t/fleet-integration-assets-fail-after-upgrade-to-8-9-0/341368)

<div class="topic-metadata">

**Author:** [@tomx1](https://discuss.elastic.co/u/tomx1)\
**Replies:** 2\
**Last updated:** [August 28, 2023, 10:00am UTC](https://discuss.elastic.co/t/fleet-integration-assets-fail-after-upgrade-to-8-9-0/341368 "2023-08-28T10:00:56Z")

</div>

I've just upgraded our Cluster from 8.8.0 to 8.9.0 and now all the dashboards and visualizations shipping with fleet integrations are no longer working. If I try to re-install the fleet integration it fails and in the Ki…

---

## [Elastic Agent tags not part of the log content](https://discuss.elastic.co/t/elastic-agent-tags-not-part-of-the-log-content/341009)

<div class="topic-metadata">

**Author:** [@raulgs](https://discuss.elastic.co/u/raulgs)\
**Replies:** 1\
**Last updated:** [August 28, 2023, 6:07am UTC](https://discuss.elastic.co/t/elastic-agent-tags-not-part-of-the-log-content/341009 "2023-08-28T06:07:55Z")

</div>

Hi community, at my company we use managed Elastic Agents to collect logs from kubernetes. To figure out which cluster the logs belong, every cluster is labeled with a specific kubernetes label that identifies it. This…

---

## [Aggregating In Elastic Search](https://discuss.elastic.co/t/aggregating-in-elastic-search/341762)

<div class="topic-metadata">

**Author:** [@Harinder\_Singh](https://discuss.elastic.co/u/Harinder_Singh)\
**Replies:** 1\
**Last updated:** [August 27, 2023, 11:45pm UTC](https://discuss.elastic.co/t/aggregating-in-elastic-search/341762 "2023-08-27T23:45:36Z")

</div>

Hi @leandrojmp , I have a below requirement, where I need to perform aggregation based on certain fields of Elasticsearch. Documents indexed are as below PUT rollup-index/\_doc/1 { "environment" : "preview", "person…

---

## [Why Elastic Search allow to put number in text field?](https://discuss.elastic.co/t/why-elastic-search-allow-to-put-number-in-text-field/341756)

<div class="topic-metadata">

**Author:** [@Krzysztof\_Lempicki](https://discuss.elastic.co/u/Krzysztof_Lempicki)\
**Replies:** 1\
**Last updated:** [August 27, 2023, 3:04pm UTC](https://discuss.elastic.co/t/why-elastic-search-allow-to-put-number-in-text-field/341756 "2023-08-27T15:04:54Z")

</div>

Hi, I have mapping like this: "mappings": { "dynamic": "strict", "properties": { "name": { "typ…

---

## [Logstash ingesting Netflow traffic, the probability of parsing errors increases with larger data volumes](https://discuss.elastic.co/t/logstash-ingesting-netflow-traffic-the-probability-of-parsing-errors-increases-with-larger-data-volumes/340539)

<div class="topic-metadata">

**Author:** [@gaorui](https://discuss.elastic.co/u/gaorui)\
**Replies:** 1\
**Last updated:** [August 27, 2023, 12:02pm UTC](https://discuss.elastic.co/t/logstash-ingesting-netflow-traffic-the-probability-of-parsing-errors-increases-with-larger-data-volumes/340539 "2023-08-27T12:02:45Z")

</div>

I am using Logstash to ingest Netflow traffic and after parsing, I store the data in Kafka. As the Netflow traffic I am ingesting increases, the probability of incorrect structured data being parsed also increases. Howev…

---

## [Presumably udp input threads are soaking up cpu](https://discuss.elastic.co/t/presumably-udp-input-threads-are-soaking-up-cpu/341590)

<div class="topic-metadata">

**Author:** [@udp\_issues\_are\_one](https://discuss.elastic.co/u/udp_issues_are_one)\
**Replies:** 5\
**Last updated:** [August 27, 2023, 11:47am UTC](https://discuss.elastic.co/t/presumably-udp-input-threads-are-soaking-up-cpu/341590 "2023-08-27T11:47:32Z")

</div>

We have logstash running on ubuntu, logstash version 8.4.1 from the ubuntu repositories. We have a number of pipelines running, most of them work fine but the CPU utilization on the box is a bit high. From the linux co…

---

## [Is it possible to search only when there are a certain number of terms in the query?](https://discuss.elastic.co/t/is-it-possible-to-search-only-when-there-are-a-certain-number-of-terms-in-the-query/341420)

<div class="topic-metadata">

**Author:** [@gony](https://discuss.elastic.co/u/gony)\
**Replies:** 2\
**Last updated:** [August 27, 2023, 11:05am UTC](https://discuss.elastic.co/t/is-it-possible-to-search-only-when-there-are-a-certain-number-of-terms-in-the-query/341420 "2023-08-27T11:05:01Z")

</div>

When using a match query, is it possible to search only when there are a certain number of terms in the query? I need that functionality, not for the entire query, but as part of a subquery that I will put inside a bool…

---

## [Install Curator 7.0.0 in rhel](https://discuss.elastic.co/t/install-curator-7-0-0-in-rhel/341223)

<div class="topic-metadata">

**Author:** [@johnashish](https://discuss.elastic.co/u/johnashish)\
**Replies:** 5\
**Last updated:** [August 27, 2023, 8:12am UTC](https://discuss.elastic.co/t/install-curator-7-0-0-in-rhel/341223 "2023-08-27T08:12:51Z")

</div>

As per official doc https://www.elastic.co/guide/en/elasticsearch/client/curator/7.0/pip.html Current system - RHEL 8 Elasticsearch - 7.17.3 I am trying to install curator in linux machine and i have install python3 …

---

## [DNS Queries grok pattern working on devtools but not in kibana dashboards](https://discuss.elastic.co/t/dns-queries-grok-pattern-working-on-devtools-but-not-in-kibana-dashboards/341748)

<div class="topic-metadata">

**Author:** [@Poubelle\_Dirty](https://discuss.elastic.co/u/Poubelle_Dirty)\
**Replies:** 4\
**Last updated:** [August 27, 2023, 7:11am UTC](https://discuss.elastic.co/t/dns-queries-grok-pattern-working-on-devtools-but-not-in-kibana-dashboards/341748 "2023-08-27T07:11:37Z")

</div>

Hello, I'm new to ELK stack and I encounter a problem. I'm using the DNS grok pattern from here to parse dns queries from my bind server : https://github.com/cjslack/grok-debugger/blob/master/public/patterns/bind It w…

---

## [MISP integration no data](https://discuss.elastic.co/t/misp-integration-no-data/341190)

<div class="topic-metadata">

**Author:** [@lamp123432](https://discuss.elastic.co/u/lamp123432)\
**Replies:** 5\
**Last updated:** [August 24, 2023, 8:37am UTC](https://discuss.elastic.co/t/misp-integration-no-data/341190 "2023-08-24T08:37:10Z")

</div>

Good day, Setup a MISP server and trying to ingest data with MISP integration but there is no data coming into elastic. Got the right authkey and no restrictions on the MISP Server firewall. Also able to get data when r…

---

## [After update , changes order list](https://discuss.elastic.co/t/after-update-changes-order-list/341751)

<div class="topic-metadata">

**Author:** [@Murilo\_Livorato](https://discuss.elastic.co/u/Murilo_Livorato)\
**Replies:** 0\
**Last updated:** [August 26, 2023, 5:01pm UTC](https://discuss.elastic.co/t/after-update-changes-order-list/341751 "2023-08-26T17:01:23Z")

</div>

hello , I have a crud . that I list products , in admin area . I change the price of a product , in a CRUD . after , I give a refresh on the page . and it changed the order that is searching this product . does have …

---

## [The issue of fetching duplicate data in Logstash](https://discuss.elastic.co/t/the-issue-of-fetching-duplicate-data-in-logstash/341643)

<div class="topic-metadata">

**Author:** [@inkweon7269](https://discuss.elastic.co/u/inkweon7269)\
**Replies:** 2\
**Last updated:** [August 26, 2023, 1:40pm UTC](https://discuss.elastic.co/t/the-issue-of-fetching-duplicate-data-in-logstash/341643 "2023-08-26T13:40:13Z")

</div>

I have written the following code within the input section, but I'm experiencing a problem where data is being fetched redundantly. Which part should I modify? logstash.conf input { beats { port =\> 5044 …

---

## [How to calculate score after filter in Elasticsearch](https://discuss.elastic.co/t/how-to-calculate-score-after-filter-in-elasticsearch/341733)

<div class="topic-metadata">

**Author:** [@at\_ohn](https://discuss.elastic.co/u/at_ohn)\
**Replies:** 0\
**Last updated:** [August 26, 2023, 9:13am UTC](https://discuss.elastic.co/t/how-to-calculate-score-after-filter-in-elasticsearch/341733 "2023-08-26T09:13:54Z")

</div>

Does anyone know how we can get the score to be calculated AFTER the filter is applied? Rescoring doesn't help too because it still takes into account all documents in the index. I need a score that is independent of the…

---

## [Elastic agent unhealthy because of elastic defend integration](https://discuss.elastic.co/t/elastic-agent-unhealthy-because-of-elastic-defend-integration/340874)

<div class="topic-metadata">

**Author:** [@laale1](https://discuss.elastic.co/u/laale1)\
**Replies:** 5\
**Last updated:** [August 26, 2023, 9:12am UTC](https://discuss.elastic.co/t/elastic-agent-unhealthy-because-of-elastic-defend-integration/340874 "2023-08-26T09:12:38Z")

</div>

Hello community I'm having an issue in my elastic agent, I installed the agent in windows and Linux machines is working well and I can get the event logs and syslog, however when I try to add elastic defend integration t…

---

## [Keyword case insensitive search with non-ascii](https://discuss.elastic.co/t/keyword-case-insensitive-search-with-non-ascii/341460)

<div class="topic-metadata">

**Author:** [@Volodymyr\_Kovtun](https://discuss.elastic.co/u/Volodymyr_Kovtun)\
**Replies:** 5\
**Last updated:** [August 26, 2023, 7:49am UTC](https://discuss.elastic.co/t/keyword-case-insensitive-search-with-non-ascii/341460 "2023-08-26T07:49:13Z")

</div>

Hi Could you please clarify if it is possible to have case-insensitive term.keyword search with non-ascii symbols? It seems not to work. Here is the example: Indexing 4 documents (2 ascii and 2 non-ascii) \>\>\> es.in…

---

## [Slack Integration with ELK stack](https://discuss.elastic.co/t/slack-integration-with-elk-stack/340657)

<div class="topic-metadata">

**Author:** [@sanjeev1895](https://discuss.elastic.co/u/sanjeev1895)\
**Replies:** 10\
**Last updated:** [August 26, 2023, 2:02am UTC](https://discuss.elastic.co/t/slack-integration-with-elk-stack/340657 "2023-08-26T02:02:40Z")

</div>

Hi I have installed the ELK Stack 8.9.0 in AWS Ubuntu Instance. I was configured the elk stack and it's working fine. So, I want to integrate the slack with elk stack and send the alert to slack channel if any 500 statu…

---

## [Security Attributes for ELK Kibana](https://discuss.elastic.co/t/security-attributes-for-elk-kibana/341713)

<div class="topic-metadata">

**Author:** [@3rk1n](https://discuss.elastic.co/u/3rk1n)\
**Replies:** 0\
**Last updated:** [August 25, 2023, 5:36pm UTC](https://discuss.elastic.co/t/security-attributes-for-elk-kibana/341713 "2023-08-25T17:36:37Z")

</div>

Hi, I want to close security recommendations for Kubernetes Cluster in Microsoft Defender for Cloud. One of them is "Kubernetes clusters should disable automounting API credentials" and it can be solved by added "autom…

---

## [Composable Index template with java REST](https://discuss.elastic.co/t/composable-index-template-with-java-rest/341634)

<div class="topic-metadata">

**Author:** [@linkerc](https://discuss.elastic.co/u/linkerc)\
**Replies:** 1\
**Last updated:** [August 25, 2023, 5:25pm UTC](https://discuss.elastic.co/t/composable-index-template-with-java-rest/341634 "2023-08-25T17:25:28Z")

</div>

I'm running 7.15 so it's not the latest binary code. How do I add sorting index in setting? I'm getting invalid sort order error. It seems composable index only takes builder for settings; therefore, I convert all v…

---

## [Security Attributes for Elastic-Operator](https://discuss.elastic.co/t/security-attributes-for-elastic-operator/341710)

<div class="topic-metadata">

**Author:** [@3rk1n](https://discuss.elastic.co/u/3rk1n)\
**Replies:** 0\
**Last updated:** [August 25, 2023, 5:12pm UTC](https://discuss.elastic.co/t/security-attributes-for-elastic-operator/341710 "2023-08-25T17:12:45Z")

</div>

Hi, I want to close security recommendations for Kubernetes Cluster in Microsoft Defender for Cloud. One of them is "Kubernetes clusters should disable automounting API credentials" and it can be solved by added "autom…

---

## [Is it possible to disable HTTP Options method in Elastic Search v7.5?](https://discuss.elastic.co/t/is-it-possible-to-disable-http-options-method-in-elastic-search-v7-5/341700)

<div class="topic-metadata">

**Author:** [@James\_Brown2](https://discuss.elastic.co/u/James_Brown2)\
**Replies:** 1\
**Last updated:** [August 25, 2023, 5:00pm UTC](https://discuss.elastic.co/t/is-it-possible-to-disable-http-options-method-in-elastic-search-v7-5/341700 "2023-08-25T17:00:41Z")

</div>

Hi there, Does anyone know is it possible to disabled HTTP Options method in Elastic Search v7.5? and if it is safe to do so without affecting Elastic Search functionality? Many thanks, James

---

## [Challenges of Indexing Large Arrays with Thousands of Fields in ELK Stack for Search Engine Development with Sailsjs](https://discuss.elastic.co/t/challenges-of-indexing-large-arrays-with-thousands-of-fields-in-elk-stack-for-search-engine-development-with-sailsjs/341705)

<div class="topic-metadata">

**Author:** [@priyanshu-kun](https://discuss.elastic.co/u/priyanshu-kun)\
**Replies:** 0\
**Last updated:** [August 25, 2023, 3:52pm UTC](https://discuss.elastic.co/t/challenges-of-indexing-large-arrays-with-thousands-of-fields-in-elk-stack-for-search-engine-development-with-sailsjs/341705 "2023-08-25T15:52:42Z")

</div>

I new to ELK stack and I want to index an array of object and each object have over 3000 fields for building a search engine using sailsjs. I tried lot of way and dig through the web but I cannot able to find the solutio…

---

## [Entreprise Elastic license](https://discuss.elastic.co/t/entreprise-elastic-license/341665)

<div class="topic-metadata">

**Author:** [@Manal\_A](https://discuss.elastic.co/u/Manal_A)\
**Replies:** 3\
**Last updated:** [August 25, 2023, 2:34pm UTC](https://discuss.elastic.co/t/entreprise-elastic-license/341665 "2023-08-25T14:34:32Z")

</div>

Does the enterprise license of Elastic depend on the basic system resource configuration or on the scalability ?

---

## [Handle specific type of ElasticsearchException](https://discuss.elastic.co/t/handle-specific-type-of-elasticsearchexception/341669)

<div class="topic-metadata">

**Author:** [@Raghunandan](https://discuss.elastic.co/u/Raghunandan)\
**Replies:** 3\
**Last updated:** [August 25, 2023, 11:52am UTC](https://discuss.elastic.co/t/handle-specific-type-of-elasticsearchexception/341669 "2023-08-25T11:52:58Z")

</div>

Hi Team, We are facing a very rare scenario, in our cluster deployment we have used dependent services in which the ES repository bean which creates an index is autowired in other service bean, so on startup index creat…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=313)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=315)
