# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=327

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 328

---

## [ECE Fundamentals: currently unavailable?](https://discuss.elastic.co/t/ece-fundamentals-currently-unavailable/339527)

<div class="topic-metadata">

**Author:** [@ajr](https://discuss.elastic.co/u/ajr)\
**Replies:** 1\
**Last updated:** [August 4, 2023, 3:14am UTC](https://discuss.elastic.co/t/ece-fundamentals-currently-unavailable/339527 "2023-08-04T03:14:24Z")

</div>

Course: ECE Fundamentals Version: I don't see a version number, unless ID: E-J0EZR0 is it. Question: Hi. Lession 1 has a lab at the end, but when I click the lab button Strigo tells me: "This course is currently unav…

---

## [Kibana webhook parameter - Host error](https://discuss.elastic.co/t/kibana-webhook-parameter-host-error/340068)

<div class="topic-metadata">

**Author:** [@Kvoyce2023](https://discuss.elastic.co/u/Kvoyce2023)\
**Replies:** 1\
**Last updated:** [August 3, 2023, 10:06pm UTC](https://discuss.elastic.co/t/kibana-webhook-parameter-host-error/340068 "2023-08-03T22:06:33Z")

</div>

My question is regarding watcher webhook host. I got 2 logstash VMs where I have loadbalanced to feed data from filebeat. Below is my webhook portion }, "dev\_webhook": { "webhook": { "scheme": "http",…

---

## [We can't find products matching the selection](https://discuss.elastic.co/t/we-cant-find-products-matching-the-selection/340075)

<div class="topic-metadata">

**Author:** [@Denis\_Belik](https://discuss.elastic.co/u/Denis_Belik)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 7:33pm UTC](https://discuss.elastic.co/t/we-cant-find-products-matching-the-selection/340075 "2023-08-03T19:33:06Z")

</div>

There is an online store on Magento 2.3.2 When you open a department , a blank page appears without product cards with an error "We can't find products matching the selection.". The hosting technical support said that…

---

## [No dashboard is created when adding integrations](https://discuss.elastic.co/t/no-dashboard-is-created-when-adding-integrations/340051)

<div class="topic-metadata">

**Author:** [@hoomant](https://discuss.elastic.co/u/hoomant)\
**Replies:** 5\
**Last updated:** [August 3, 2023, 5:32pm UTC](https://discuss.elastic.co/t/no-dashboard-is-created-when-adding-integrations/340051 "2023-08-03T17:32:52Z")

</div>

Hi I have setup Fleet in my cluster & installed elastic agent on one of my servers & it is sending metrics to elasticsearch & it is showing up in Discover in kibana. The thing is, when I am adding integrations no dashbo…

---

## [DotNet Agent dont capture Redis interactions](https://discuss.elastic.co/t/dotnet-agent-dont-capture-redis-interactions/340067)

<div class="topic-metadata">

**Author:** [@btsinfo](https://discuss.elastic.co/u/btsinfo)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 3:50pm UTC](https://discuss.elastic.co/t/dotnet-agent-dont-capture-redis-interactions/340067 "2023-08-03T15:50:21Z")

</div>

hello, we have a large number of dotnet framework applications that use redis as a buffer to speed up performance and also avoid using the database to retrieve statistical data. however with the dotNet auto-instrumentati…

---

## [Error while creating new Fields in Elastic Search](https://discuss.elastic.co/t/error-while-creating-new-fields-in-elastic-search/340064)

<div class="topic-metadata">

**Author:** [@Jennifer\_Coley](https://discuss.elastic.co/u/Jennifer_Coley)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 3:35pm UTC](https://discuss.elastic.co/t/error-while-creating-new-fields-in-elastic-search/340064 "2023-08-03T15:35:55Z")

</div>

hello , Can anyone help, I'm new to elasticsearch Kibana but learnt in recent days to understand the usage. I have a Index name "logstash-\*" which receives logs constantly, my task is to filter from all logs in field "…

---

## [What's the competitive advantage of elastic security v.s. existing security platforms?](https://discuss.elastic.co/t/whats-the-competitive-advantage-of-elastic-security-v-s-existing-security-platforms/339806)

<div class="topic-metadata">

**Author:** [@Ernest\_Dong](https://discuss.elastic.co/u/Ernest_Dong)\
**Replies:** 5\
**Last updated:** [August 3, 2023, 2:42pm UTC](https://discuss.elastic.co/t/whats-the-competitive-advantage-of-elastic-security-v-s-existing-security-platforms/339806 "2023-08-03T14:42:44Z")

</div>

What's the unique value elastic security provides? Is it SIEM? Why do people use elastic for XDR instead of crowdstrike and so on, since they can provide network solutions etc.

---

## [Correlating two log source in elastic security](https://discuss.elastic.co/t/correlating-two-log-source-in-elastic-security/339994)

<div class="topic-metadata">

**Author:** [@Kliwon\_Zervaloski](https://discuss.elastic.co/u/Kliwon_Zervaloski)\
**Replies:** 1\
**Last updated:** [August 3, 2023, 2:18pm UTC](https://discuss.elastic.co/t/correlating-two-log-source-in-elastic-security/339994 "2023-08-03T14:18:41Z")

</div>

I struggle on correlating log from two source in my case. So basically, I want make correlation even with sequence or not, in firewall and endpoint security data source. But some reference I've read are not solved my pro…

---

## [Cannot access Flattened field in ElasticSearch Dashboard](https://discuss.elastic.co/t/cannot-access-flattened-field-in-elasticsearch-dashboard/339824)

<div class="topic-metadata">

**Author:** [@Dana\_Pavaday](https://discuss.elastic.co/u/Dana_Pavaday)\
**Replies:** 3\
**Last updated:** [August 3, 2023, 2:14pm UTC](https://discuss.elastic.co/t/cannot-access-flattened-field-in-elasticsearch-dashboard/339824 "2023-08-03T14:14:44Z")

</div>

Hello, I have created a transform where I have grouped by Client, BackupJob and BackupTool and I have put a terms aggregation in BackupStatus. The transform is displaying as expected in Discover. But when I try to creat…

---

## [Multi match query does not work for nested types](https://discuss.elastic.co/t/multi-match-query-does-not-work-for-nested-types/339936)

<div class="topic-metadata">

**Author:** [@Teqqan](https://discuss.elastic.co/u/Teqqan)\
**Replies:** 4\
**Last updated:** [August 3, 2023, 12:26pm UTC](https://discuss.elastic.co/t/multi-match-query-does-not-work-for-nested-types/339936 "2023-08-03T12:26:30Z")

</div>

Hi, I'm trying to perform a multi match query on some data I have structured as nested types. When I search for something like "gadget plushy" I get no matches for a document with two nested fields "gadget" and "plushy"…

---

## [Elastic Security - Host No longer logging Alert](https://discuss.elastic.co/t/elastic-security-host-no-longer-logging-alert/340043)

<div class="topic-metadata">

**Author:** [@g.spasov](https://discuss.elastic.co/u/g.spasov)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 12:22pm UTC](https://discuss.elastic.co/t/elastic-security-host-no-longer-logging-alert/340043 "2023-08-03T12:22:58Z")

</div>

Hello, I want to create a detection rule in Elastic Security that would trigger when no logs have been injested to Elastic for more than 24 hours from a particular host.name. The idea is to detect potential logging pro…

---

## [Unable to authenticate user](https://discuss.elastic.co/t/unable-to-authenticate-user/340001)

<div class="topic-metadata">

**Author:** [@Vamsi\_krishna\_Ramaya](https://discuss.elastic.co/u/Vamsi_krishna_Ramaya)\
**Replies:** 3\
**Last updated:** [August 3, 2023, 9:06am UTC](https://discuss.elastic.co/t/unable-to-authenticate-user/340001 "2023-08-03T09:06:16Z")

</div>

Hi, I have been facing some issues with Elasticsearch the error i am getting is “unable to authenticate user \[elastic\] for REST request \[/va\_vrm\_202308030888/\_doc\] Can anyone help to resolve this? Thanks in advance

---

## [Monitoring Oracle Alert log by using Logstash](https://discuss.elastic.co/t/monitoring-oracle-alert-log-by-using-logstash/339889)

<div class="topic-metadata">

**Author:** [@Debasis\_Mallick](https://discuss.elastic.co/u/Debasis_Mallick)\
**Replies:** 2\
**Last updated:** [August 3, 2023, 8:01am UTC](https://discuss.elastic.co/t/monitoring-oracle-alert-log-by-using-logstash/339889 "2023-08-03T08:01:45Z")

</div>

Hi Team, We had one requirement to monitor oracle alert log by using ELK stack. Could someone guide me . In my environment ELK stack running with 8.x version. Thanks, Debasis

---

## [Secure Logstash and Filebeats communication](https://discuss.elastic.co/t/secure-logstash-and-filebeats-communication/339912)

<div class="topic-metadata">

**Author:** [@Seemant\_Bind](https://discuss.elastic.co/u/Seemant_Bind)\
**Replies:** 4\
**Last updated:** [August 3, 2023, 7:51am UTC](https://discuss.elastic.co/t/secure-logstash-and-filebeats-communication/339912 "2023-08-03T07:51:17Z")

</div>

We are working on an integration where we need to take logs from Filebeat through Logstash. However, Filebeat and Logstash are hosted in different networks. In order to secure the communication, we want to implement SSL.…

---

## [Search Applications with Search UI](https://discuss.elastic.co/t/search-applications-with-search-ui/340004)

<div class="topic-metadata">

**Author:** [@sebastianboelling](https://discuss.elastic.co/u/sebastianboelling)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 7:09am UTC](https://discuss.elastic.co/t/search-applications-with-search-ui/340004 "2023-08-03T07:09:41Z")

</div>

Hi, I tried to integrate Search Applications with Search UI as described in the Kibana frontend when I created a new Search Application sample-search-app. import EnginesAPIConnector from "@elastic/search-ui-engines-con…

---

## [How to read logs from newrelic?](https://discuss.elastic.co/t/how-to-read-logs-from-newrelic/339995)

<div class="topic-metadata">

**Author:** [@talbehat](https://discuss.elastic.co/u/talbehat)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 4:28am UTC](https://discuss.elastic.co/t/how-to-read-logs-from-newrelic/339995 "2023-08-03T04:28:46Z")

</div>

is there any logstash-input-newrelic plugins for read data from new relic enviornment?

---

## [Detection Rule During Specific Hours](https://discuss.elastic.co/t/detection-rule-during-specific-hours/338493)

<div class="topic-metadata">

**Author:** [@SomeRobot](https://discuss.elastic.co/u/SomeRobot)\
**Replies:** 3\
**Last updated:** [August 3, 2023, 3:24am UTC](https://discuss.elastic.co/t/detection-rule-during-specific-hours/338493 "2023-08-03T03:24:54Z")

</div>

We need to write a detection rule that only looks for matches between specific hours of the day, say 12AM - 4AM EST. I assume there is a way to do this, because it would be a huge oversight if there wasn't, but I can't s…

---

## [How to query elasticsearch with array as parameter](https://discuss.elastic.co/t/how-to-query-elasticsearch-with-array-as-parameter/339991)

<div class="topic-metadata">

**Author:** [@rae93](https://discuss.elastic.co/u/rae93)\
**Replies:** 0\
**Last updated:** [August 3, 2023, 3:23am UTC](https://discuss.elastic.co/t/how-to-query-elasticsearch-with-array-as-parameter/339991 "2023-08-03T03:23:50Z")

</div>

I have a logstash config like this input { http { port =\> 8092 } } filter { ruby { code =\> ' event.set("\[@metadata\]\[leadArr\]", \[\]) c = event.get("\[@metadata\]\[leads\]") c.each { |value, index| temp = even…

---

## [How to create a complex detection rule (indicator + correlation)?](https://discuss.elastic.co/t/how-to-create-a-complex-detection-rule-indicator-correlation/337249)

<div class="topic-metadata">

**Author:** [@VellayLoket](https://discuss.elastic.co/u/VellayLoket)\
**Replies:** 7\
**Last updated:** [August 3, 2023, 2:07am UTC](https://discuss.elastic.co/t/how-to-create-a-complex-detection-rule-indicator-correlation/337249 "2023-08-03T02:07:04Z")

</div>

For example, i have list with malware domains. I save logs from my DNS servers. I want to create alert when any client of my network has request for malware domain name. And with this, i need to aggregate this request…

---

## [Elasticsearch 7.4 query\_then\_fetch slow log](https://discuss.elastic.co/t/elasticsearch-7-4-query-then-fetch-slow-log/339780)

<div class="topic-metadata">

**Author:** [@taoyantu](https://discuss.elastic.co/u/taoyantu)\
**Replies:** 7\
**Last updated:** [August 3, 2023, 1:21am UTC](https://discuss.elastic.co/t/elasticsearch-7-4-query-then-fetch-slow-log/339780 "2023-08-03T01:21:22Z")

</div>

A cluster of elasticsearch version 7.4 is deployed. There are about 20 servers in the cluster. Three nodes are started on each machine. The startup memory occupies 30G. The server is 88-core cpu and 256G memory. The ind…

---

## [Logstash failling to make connection to ElasticSearch](https://discuss.elastic.co/t/logstash-failling-to-make-connection-to-elasticsearch/339731)

<div class="topic-metadata">

**Author:** [@Ilyass\_Taybi](https://discuss.elastic.co/u/Ilyass_Taybi)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 11:53pm UTC](https://discuss.elastic.co/t/logstash-failling-to-make-connection-to-elasticsearch/339731 "2023-07-31T23:53:07Z")

</div>

Hello, i am having troubles with Logstash for a week now. I do not know why does the error persists. To start Logstash, i use the following command : ./bin/logstash -f /"relative path to the file"/logstash-sample.conf . …

---

## [Using logstash to route APM data to two servers](https://discuss.elastic.co/t/using-logstash-to-route-apm-data-to-two-servers/339977)

<div class="topic-metadata">

**Author:** [@ElasticLiver](https://discuss.elastic.co/u/ElasticLiver)\
**Replies:** 0\
**Last updated:** [August 2, 2023, 10:13pm UTC](https://discuss.elastic.co/t/using-logstash-to-route-apm-data-to-two-servers/339977 "2023-08-02T22:13:20Z")

</div>

Im am getting APM data on a APM server, I was wondering if its posible to place a logstash before the APM server, so I can send the same data to another server, so both receive the same data? Something like this: if …

---

## [Vaccum Deleted Documents](https://discuss.elastic.co/t/vaccum-deleted-documents/339974)

<div class="topic-metadata">

**Author:** [@TomTom](https://discuss.elastic.co/u/TomTom)\
**Replies:** 1\
**Last updated:** [August 2, 2023, 9:13pm UTC](https://discuss.elastic.co/t/vaccum-deleted-documents/339974 "2023-08-02T21:13:53Z")

</div>

I learned that Elasticsearch does not update a document, but instead, deletes the current document and creates a new one with the updates. It happens that I have several documents that are updated several times during t…

---

## [Stuck on module 3 elastic observability node.js](https://discuss.elastic.co/t/stuck-on-module-3-elastic-observability-node-js/339760)

<div class="topic-metadata">

**Author:** [@Vartika\_Singh](https://discuss.elastic.co/u/Vartika_Singh)\
**Replies:** 3\
**Last updated:** [August 2, 2023, 7:54pm UTC](https://discuss.elastic.co/t/stuck-on-module-3-elastic-observability-node-js/339760 "2023-08-02T19:54:45Z")

</div>

Course: Version:8.2.3 Question: I tried on ECE module 3 but getting stuck with node.js in APM part also i share few images

---

## [\_template vs \_index\_template](https://discuss.elastic.co/t/template-vs-index-template/339969)

<div class="topic-metadata">

**Author:** [@linkerc](https://discuss.elastic.co/u/linkerc)\
**Replies:** 0\
**Last updated:** [August 2, 2023, 7:13pm UTC](https://discuss.elastic.co/t/template-vs-index-template/339969 "2023-08-02T19:13:16Z")

</div>

I'm running ES 7.15. \_template seems to be legacy. \_index\_template is the one moving forward. I also noticed that there's no command to list all \_index\_templates. Is there a template migration guide somewhere?

---

## [Index keeps getting deleted and new index created called read-me-to-recover-data is created](https://discuss.elastic.co/t/index-keeps-getting-deleted-and-new-index-created-called-read-me-to-recover-data-is-created/339882)

<div class="topic-metadata">

**Author:** [@AndyX](https://discuss.elastic.co/u/AndyX)\
**Replies:** 5\
**Last updated:** [August 2, 2023, 4:06pm UTC](https://discuss.elastic.co/t/index-keeps-getting-deleted-and-new-index-created-called-read-me-to-recover-data-is-created/339882 "2023-08-02T16:06:47Z")

</div>

Every few days my Elasticsearch index gets deleted. I assume this is due to me running with the following: xpack.security.enabled: false When my index is deleted a new index with the name: read-me-to-recover-data is …

---

## [Fleet Self Sign Certficiate in Certificate Chain](https://discuss.elastic.co/t/fleet-self-sign-certficiate-in-certificate-chain/339949)

<div class="topic-metadata">

**Author:** [@amarcelq](https://discuss.elastic.co/u/amarcelq)\
**Replies:** 0\
**Last updated:** [August 2, 2023, 2:19pm UTC](https://discuss.elastic.co/t/fleet-self-sign-certficiate-in-certificate-chain/339949 "2023-08-02T14:19:22Z")

</div>

Hi, unfortunatly I encounter the following error. I don't have any clue which certificate is needed to be added. request to https://epr.elastic.co/categories?kibana.version=8.9.0 failed, reason: self signed certificate…

---

## [How to filter out strings starting with any from a list of strings](https://discuss.elastic.co/t/how-to-filter-out-strings-starting-with-any-from-a-list-of-strings/339948)

<div class="topic-metadata">

**Author:** [@michael\_c\_michael](https://discuss.elastic.co/u/michael_c_michael)\
**Replies:** 0\
**Last updated:** [August 2, 2023, 2:18pm UTC](https://discuss.elastic.co/t/how-to-filter-out-strings-starting-with-any-from-a-list-of-strings/339948 "2023-08-02T14:18:33Z")

</div>

Hi, I'm wanting to filter out strings starting with a number of characters. I've been able to solve this using a DSL query. Let me provide the example first: # Cleanup DELETE discuss-338708 # Create an index PUT discus…

---

## [Remote Reindex from a datastream to another index](https://discuss.elastic.co/t/remote-reindex-from-a-datastream-to-another-index/339951)

<div class="topic-metadata">

**Author:** [@San72](https://discuss.elastic.co/u/San72)\
**Replies:** 0\
**Last updated:** [August 2, 2023, 2:37pm UTC](https://discuss.elastic.co/t/remote-reindex-from-a-datastream-to-another-index/339951 "2023-08-02T14:37:59Z")

</div>

Hi Guys, we are trying to reindex some data (from another cluster) and ran into an issue. POST \_reindex { "source": { "remote": { "host": "https://COOL\_IP\_ADDRESS:9200", "username": "elastic", "passw…

---

## [Tried making a runtime script to modify field, but now visualize with the index shows all empty fields](https://discuss.elastic.co/t/tried-making-a-runtime-script-to-modify-field-but-now-visualize-with-the-index-shows-all-empty-fields/338708)

<div class="topic-metadata">

**Author:** [@michael\_c\_michael](https://discuss.elastic.co/u/michael_c_michael)\
**Replies:** 6\
**Last updated:** [August 2, 2023, 1:35pm UTC](https://discuss.elastic.co/t/tried-making-a-runtime-script-to-modify-field-but-now-visualize-with-the-index-shows-all-empty-fields/338708 "2023-08-02T13:35:52Z")

</div>

I have an index with 130 fields. One field I would like to change ranges over longs: 0, 1, 2. In order to do this, I added a runtime field with the following description: def names = \['0': 'Other', '1':'Friendly', '2':…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=326)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=328)
