# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=321

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 322

---

## [How to parse array of objects into separate field](https://discuss.elastic.co/t/how-to-parse-array-of-objects-into-separate-field/340692)

<div class="topic-metadata">

**Author:** [@Subhashini](https://discuss.elastic.co/u/Subhashini)\
**Replies:** 3\
**Last updated:** [August 15, 2023, 4:01pm UTC](https://discuss.elastic.co/t/how-to-parse-array-of-objects-into-separate-field/340692 "2023-08-15T16:01:00Z")

</div>

I have some log look like ########2023-08-12######### {‘crewrosters’: \[ { ‘crew\_roster’ : ‘det1’, 'empno': 1} , {‘crew\_roster’ : ‘det2’, 'empno': 2} , {‘crew\_roster’ : ‘det3’, 'empno': 3} \] } I need to parse the data …

---

## [Erro ao executar o logstash](https://discuss.elastic.co/t/erro-ao-executar-o-logstash/340664)

<div class="topic-metadata">

**Author:** [@Gustavo](https://discuss.elastic.co/u/Gustavo)\
**Replies:** 14\
**Last updated:** [August 14, 2023, 6:24pm UTC](https://discuss.elastic.co/t/erro-ao-executar-o-logstash/340664 "2023-08-14T18:24:15Z")

</div>

This error persists and I don't know how to solve it anymore. Can someone help me. Follow my .conf files input { file { path =\> "C:/Elastic/logstash-8.9.0/config/logs.log" start\_position =\> "beginning" } } filter …

---

## [\_source field storage (\_source Field Overview)](https://discuss.elastic.co/t/source-field-storage-source-field-overview/340729)

<div class="topic-metadata">

**Author:** [@ksaimohan2k](https://discuss.elastic.co/u/ksaimohan2k)\
**Replies:** 8\
**Last updated:** [August 15, 2023, 11:47am UTC](https://discuss.elastic.co/t/source-field-storage-source-field-overview/340729 "2023-08-15T11:47:17Z")

</div>

Hello, We just want to have a clear understanding of the \_source field. Is it going to be indexed or stored? if it is stored where it is going to be stored. As an experiment, we disabled the \_source using PUT index\_nam…

---

## [How to automate search template creation?](https://discuss.elastic.co/t/how-to-automate-search-template-creation/338840)

<div class="topic-metadata">

**Author:** [@Prashant\_S](https://discuss.elastic.co/u/Prashant_S)\
**Replies:** 1\
**Last updated:** [August 15, 2023, 9:41am UTC](https://discuss.elastic.co/t/how-to-automate-search-template-creation/338840 "2023-08-15T09:41:18Z")

</div>

I am using search templates. How to manage the versioning of my templates and execute them . I am exposing search templates via microservice backed by springboot . Thanks

---

## [Cannot stop winlogbeat service](https://discuss.elastic.co/t/cannot-stop-winlogbeat-service/340653)

<div class="topic-metadata">

**Author:** [@Ptak](https://discuss.elastic.co/u/Ptak)\
**Replies:** 1\
**Last updated:** [August 15, 2023, 8:53am UTC](https://discuss.elastic.co/t/cannot-stop-winlogbeat-service/340653 "2023-08-15T08:53:01Z")

</div>

Hello all, I'm facing the following issue: I cannot stop the winlogbeat service either automatically or manually. The service can be stopped only after clicking "End Task" in the Task Manager. I did test the same Ansibl…

---

## [Ingesting Data using Agent (SQL Input Integration)](https://discuss.elastic.co/t/ingesting-data-using-agent-sql-input-integration/340820)

<div class="topic-metadata">

**Author:** [@ksaimohan2k](https://discuss.elastic.co/u/ksaimohan2k)\
**Replies:** 0\
**Last updated:** [August 15, 2023, 8:58am UTC](https://discuss.elastic.co/t/ingesting-data-using-agent-sql-input-integration/340820 "2023-08-15T08:58:29Z")

</div>

We just tried to ingest SQL data into Elasticsearch using Agent (SQL Input Integration). What I observed is that it stores the same set of data repeatedly. For Example, if I have 5 rows in the SQL table, the first time…

---

## [HIBP integration](https://discuss.elastic.co/t/hibp-integration/340815)

<div class="topic-metadata">

**Author:** [@viera120](https://discuss.elastic.co/u/viera120)\
**Replies:** 0\
**Last updated:** [August 15, 2023, 7:32am UTC](https://discuss.elastic.co/t/hibp-integration/340815 "2023-08-15T07:32:45Z")

</div>

What’s the recommended way to integrate “have I been pwnd” API into elastic? The idea here is to have an index with email IDs in it and to generate alerts based on API calls to HIBP…real time breach monitoring. Search …

---

## [Issues connecting to JIRA account after source configuration](https://discuss.elastic.co/t/issues-connecting-to-jira-account-after-source-configuration/340808)

<div class="topic-metadata">

**Author:** [@gggra](https://discuss.elastic.co/u/gggra)\
**Replies:** 0\
**Last updated:** [August 15, 2023, 6:20am UTC](https://discuss.elastic.co/t/issues-connecting-to-jira-account-after-source-configuration/340808 "2023-08-15T06:20:58Z")

</div>

I am facing the setup issue in workplace search setup. JIRA is not letting log in when selecting "Connect JIRA". It always display the page "Hmm... We're having trouble logging you in." Can anyone advise ? Thanks.

---

## [Remove obsolete fleet Server policies on the same host](https://discuss.elastic.co/t/remove-obsolete-fleet-server-policies-on-the-same-host/340804)

<div class="topic-metadata">

**Author:** [@GKre](https://discuss.elastic.co/u/GKre)\
**Replies:** 0\
**Last updated:** [August 15, 2023, 4:11am UTC](https://discuss.elastic.co/t/remove-obsolete-fleet-server-policies-on-the-same-host/340804 "2023-08-15T04:11:51Z")

</div>

Hi, guess as i am still a new user my question might be "stupid". But give it a try. I have 3 entries in "fleet" for "fleet server policy" on the same host. Guessthis is due some problems setting it up. only one of th…

---

## [Kibana - Security Pop Up](https://discuss.elastic.co/t/kibana-security-pop-up/340593)

<div class="topic-metadata">

**Author:** [@Kumar\_Abhinav](https://discuss.elastic.co/u/Kumar_Abhinav)\
**Replies:** 3\
**Last updated:** [August 15, 2023, 12:41am UTC](https://discuss.elastic.co/t/kibana-security-pop-up/340593 "2023-08-15T00:41:53Z")

</div>

Hey Elastic Community team, I hope this message finds you well. I've been facing a recurring issue with the Kibana UI, specifically related to the persistent pop-up stating "Your data is not secure." Despite clicking th…

---

## [Elastic Cloud APM - agent configuration](https://discuss.elastic.co/t/elastic-cloud-apm-agent-configuration/340792)

<div class="topic-metadata">

**Author:** [@SaEd](https://discuss.elastic.co/u/SaEd)\
**Replies:** 0\
**Last updated:** [August 15, 2023, 12:38am UTC](https://discuss.elastic.co/t/elastic-cloud-apm-agent-configuration/340792 "2023-08-15T00:38:45Z")

</div>

Hello, I'm trying to debug an issue we see in production where the server the elastic agent is running on seem to freeze. During this period all windows services stop responding and admins lose the ability to login forc…

---

## [Kibana URL Drilldown {{rison context.panel.filters}}](https://discuss.elastic.co/t/kibana-url-drilldown-rison-context-panel-filters/340787)

<div class="topic-metadata">

**Author:** [@Dallas\_Toth](https://discuss.elastic.co/u/Dallas_Toth)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 10:42pm UTC](https://discuss.elastic.co/t/kibana-url-drilldown-rison-context-panel-filters/340787 "2023-08-14T22:42:08Z")

</div>

My experience with the Go To Dashboard has worked flawlessly. But now I need to venture into Go to URL so I can pass in additional variables into the URL like embed=true & auth\_provider\_hint=anonymous1 My issue is with …

---

## [Inconsistent Autocomplete Suggestions in Kibana Dashboard Filter/Control](https://discuss.elastic.co/t/inconsistent-autocomplete-suggestions-in-kibana-dashboard-filter-control/340781)

<div class="topic-metadata">

**Author:** [@Kumar\_Abhinav](https://discuss.elastic.co/u/Kumar_Abhinav)\
**Replies:** 1\
**Last updated:** [August 14, 2023, 9:28pm UTC](https://discuss.elastic.co/t/inconsistent-autocomplete-suggestions-in-kibana-dashboard-filter-control/340781 "2023-08-14T21:28:58Z")

</div>

Hello Elastic Community Team, I'm currently working on a Kibana dashboard and have encountered an issue with the autocomplete suggestions in one of the dashboard's filter/controls. The problem is that while selecting t…

---

## [Using NGINX as a Load Balancer](https://discuss.elastic.co/t/using-nginx-as-a-load-balancer/340773)

<div class="topic-metadata">

**Author:** [@TomTom](https://discuss.elastic.co/u/TomTom)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 4:33pm UTC](https://discuss.elastic.co/t/using-nginx-as-a-load-balancer/340773 "2023-08-14T16:33:03Z")

</div>

I created an Elasticsearch Cluster with 3 Elasticsearch nodes. All nodes are of type master. They are configured to maintain high availability, one node receives data and replicates it to the other two. For load balanc…

---

## [EQL date difference function](https://discuss.elastic.co/t/eql-date-difference-function/339420)

<div class="topic-metadata">

**Author:** [@j91321](https://discuss.elastic.co/u/j91321)\
**Replies:** 1\
**Last updated:** [August 14, 2023, 4:30pm UTC](https://discuss.elastic.co/t/eql-date-difference-function/339420 "2023-08-14T16:30:27Z")

</div>

Is there a way how to get diff of two dates in EQL? I checked the EQL functions docs, but neither subtract() nor number() seem to work on datetime fields. I know I can probably achieve what I need with ingest pipeline or…

---

## [Kibana map point-to-point connection](https://discuss.elastic.co/t/kibana-map-point-to-point-connection/340772)

<div class="topic-metadata">

**Author:** [@Hannah\_Zhang](https://discuss.elastic.co/u/Hannah_Zhang)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 4:30pm UTC](https://discuss.elastic.co/t/kibana-map-point-to-point-connection/340772 "2023-08-14T16:30:04Z")

</div>

Kibana guide states that "A point-to-point connection plots aggregated data paths between the source and the destination. Thicker, darker lines symbolize more connections between a source and destination, and thinner, li…

---

## [Registering Wasabi as Snapshot repository for ECE cluster](https://discuss.elastic.co/t/registering-wasabi-as-snapshot-repository-for-ece-cluster/339297)

<div class="topic-metadata">

**Author:** [@kkumari](https://discuss.elastic.co/u/kkumari)\
**Replies:** 1\
**Last updated:** [August 14, 2023, 3:47pm UTC](https://discuss.elastic.co/t/registering-wasabi-as-snapshot-repository-for-ece-cluster/339297 "2023-08-14T15:47:04Z")

</div>

How do I register Wasabi as Snapshot repository for my ECE cluster?

---

## [Multi\_search with fuzziness](https://discuss.elastic.co/t/multi-search-with-fuzziness/340765)

<div class="topic-metadata">

**Author:** [@LUCAS\_CARVALHO\_GOMES](https://discuss.elastic.co/u/LUCAS_CARVALHO_GOMES)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 2:54pm UTC](https://discuss.elastic.co/t/multi-search-with-fuzziness/340765 "2023-08-14T14:54:31Z")

</div>

Hi guys. I'm new to Elastic, so my question may sound dull, but here we go. I'm trying to make a query that searches for a phrase in different fields. I'm aware that the fuzziness param doesn't work for phrases (test p…

---

## [Is it possible to add multiple clusters for elastic agents?](https://discuss.elastic.co/t/is-it-possible-to-add-multiple-clusters-for-elastic-agents/340762)

<div class="topic-metadata">

**Author:** [@burhankaraman](https://discuss.elastic.co/u/burhankaraman)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 2:26pm UTC](https://discuss.elastic.co/t/is-it-possible-to-add-multiple-clusters-for-elastic-agents/340762 "2023-08-14T14:26:45Z")

</div>

We have 2 elasticsearch clusters 3 elasticsearch nodes each. Both clusters have bi-directional cross-cluster replication with each other. If the first cluster goes down is there a way for elastic agent to automatically s…

---

## [I want to Use Logstash Input Plugin for capturing the audit log of Elasticsearch. But not understood which one should be suitable for this](https://discuss.elastic.co/t/i-want-to-use-logstash-input-plugin-for-capturing-the-audit-log-of-elasticsearch-but-not-understood-which-one-should-be-suitable-for-this/340745)

<div class="topic-metadata">

**Author:** [@Subrato1](https://discuss.elastic.co/u/Subrato1)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 10:49am UTC](https://discuss.elastic.co/t/i-want-to-use-logstash-input-plugin-for-capturing-the-audit-log-of-elasticsearch-but-not-understood-which-one-should-be-suitable-for-this/340745 "2023-08-14T10:49:54Z")

</div>

I am trying to capture audit logs for all the executed query in Elasticsearch. i.e. DSL, EQL, SQL.

---

## [Creating an Index with .NET client](https://discuss.elastic.co/t/creating-an-index-with-net-client/340744)

<div class="topic-metadata">

**Author:** [@NekoNova](https://discuss.elastic.co/u/NekoNova)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 10:44am UTC](https://discuss.elastic.co/t/creating-an-index-with-net-client/340744 "2023-08-14T10:44:18Z")

</div>

Hello, I am currently working on a project in C#.NET and we gave created Poco objects for our documents. Can I do something same for creating the Index? We have an exported index in JSON that we want to represent in c…

---

## [Kibana authentication through script- saved object install and authenticate](https://discuss.elastic.co/t/kibana-authentication-through-script-saved-object-install-and-authenticate/340620)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 1\
**Last updated:** [August 14, 2023, 10:02am UTC](https://discuss.elastic.co/t/kibana-authentication-through-script-saved-object-install-and-authenticate/340620 "2023-08-14T10:02:40Z")

</div>

Hello All, -- Question is in context of automatic (through script) installation of kibana software. -- We have enabled basic authentication for kibana and also enabled anonymous. -- and we need to import SavedObjects …

---

## [Object mapping for ... tried to parse field \[content\_range\] as object, but found a concrete value](https://discuss.elastic.co/t/object-mapping-for-tried-to-parse-field-content-range-as-object-but-found-a-concrete-value/340726)

<div class="topic-metadata">

**Author:** [@bohm](https://discuss.elastic.co/u/bohm)\
**Replies:** 0\
**Last updated:** [August 14, 2023, 9:08am UTC](https://discuss.elastic.co/t/object-mapping-for-tried-to-parse-field-content-range-as-object-but-found-a-concrete-value/340726 "2023-08-14T09:08:23Z")

</div>

Hello, Found some informative posts already, but guess I misintepreted some info. This is logstash logging: :response=\>{"index"=\>{"\_index"=\>"logstash-http-2023.08.14", "\_type"=\>"\_doc", "\_id"=\>"BobW8okBwOC2FKopPOGW", "…

---

## [What is best node configuration in 5 node](https://discuss.elastic.co/t/what-is-best-node-configuration-in-5-node/340709)

<div class="topic-metadata">

**Author:** [@hyungsun\_lim](https://discuss.elastic.co/u/hyungsun_lim)\
**Replies:** 1\
**Last updated:** [August 14, 2023, 9:08am UTC](https://discuss.elastic.co/t/what-is-best-node-configuration-in-5-node/340709 "2023-08-14T09:08:06Z")

</div>

I have 5 nodes for elasticsearch. When i use 3 nodes, i just use them as default mode. Is it okay to use default mode for 5 nodes? Or is there any good options to set role for 5 nodes?

---

## [Uptime Page Error - Failed to execute 'btoa' on 'Window'](https://discuss.elastic.co/t/uptime-page-error-failed-to-execute-btoa-on-window/340630)

<div class="topic-metadata">

**Author:** [@praveen\_raju](https://discuss.elastic.co/u/praveen_raju)\
**Replies:** 1\
**Last updated:** [August 14, 2023, 9:05am UTC](https://discuss.elastic.co/t/uptime-page-error-failed-to-execute-btoa-on-window/340630 "2023-08-14T09:05:52Z")

</div>

Hello, We are monitoring around 1500 endpoints using Heartbeat. While pagination we are getting this strange error. Is it something related to character on the ID or NAME using in the heartbeat configurations ??? Pleas…

---

## [Logstash parsing](https://discuss.elastic.co/t/logstash-parsing/339929)

<div class="topic-metadata">

**Author:** [@dilipchiru](https://discuss.elastic.co/u/dilipchiru)\
**Replies:** 4\
**Last updated:** [August 14, 2023, 5:44am UTC](https://discuss.elastic.co/t/logstash-parsing/339929 "2023-08-14T05:44:21Z")

</div>

Hi Team, I have 2 Fields which is From and TO which contains set of values which is comma separated. For example: "from" : "Loin, Elephant, cat, movie, John" "to" : "Loin, Elephant, cat, movie, John, USA " Now we wo…

---

## [Error log "Couldn't index event to elastic"](https://discuss.elastic.co/t/error-log-couldnt-index-event-to-elastic/340704)

<div class="topic-metadata">

**Author:** [@yuswanul](https://discuss.elastic.co/u/yuswanul)\
**Replies:** 1\
**Last updated:** [August 13, 2023, 6:22pm UTC](https://discuss.elastic.co/t/error-log-couldnt-index-event-to-elastic/340704 "2023-08-13T18:22:07Z")

</div>

Hi there, I want to confirm, if I got "Could not index event to elasticsearch" error, will it be retried if the reason that log has been resolved? I got this error and the reason shows me it caused by "Limit total field…

---

## [Moment.js Vulnerability](https://discuss.elastic.co/t/moment-js-vulnerability/340688)

<div class="topic-metadata">

**Author:** [@Ruwi](https://discuss.elastic.co/u/Ruwi)\
**Replies:** 1\
**Last updated:** [August 13, 2023, 6:14pm UTC](https://discuss.elastic.co/t/moment-js-vulnerability/340688 "2023-08-13T18:14:54Z")

</div>

Hello, I am using Elasticsearch-Kibana version 7.10.2. In the security tests, it was observed that there was a vulnerability in moment.js software. moment.js 2.28.0 --\> CVE-2022-24785 Can I update this software, does…

---

## [Updating enrich index for pipeline](https://discuss.elastic.co/t/updating-enrich-index-for-pipeline/339732)

<div class="topic-metadata">

**Author:** [@veryelastic](https://discuss.elastic.co/u/veryelastic)\
**Replies:** 7\
**Last updated:** [August 12, 2023, 7:50pm UTC](https://discuss.elastic.co/t/updating-enrich-index-for-pipeline/339732 "2023-08-12T19:50:27Z")

</div>

Hello, I have an 8.8.1 cluster, and am running documents through a series of ingest pipelines. One of these pipelines is an enrich stage. This data which is used to enrich the documents is sourced from an index via an…

---

## [How to query Elasticsearch datasource in Grafana?](https://discuss.elastic.co/t/how-to-query-elasticsearch-datasource-in-grafana/340682)

<div class="topic-metadata">

**Author:** [@ZahraZare](https://discuss.elastic.co/u/ZahraZare)\
**Replies:** 0\
**Last updated:** [August 12, 2023, 10:49am UTC](https://discuss.elastic.co/t/how-to-query-elasticsearch-datasource-in-grafana/340682 "2023-08-12T10:49:39Z")

</div>

I want to use an index in Elasticsearch as a data source in Grafana. But I can't query it and extract a specific field from it. I want to have only the data of the fields I want as output from among several fields in thi…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=320)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=322)
