# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=329

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 330

---

## [Iframed url expired after some time](https://discuss.elastic.co/t/iframed-url-expired-after-some-time/339646)

<div class="topic-metadata">

**Author:** [@Rushi\_Bagul](https://discuss.elastic.co/u/Rushi_Bagul)\
**Replies:** 3\
**Last updated:** [August 1, 2023, 1:32pm UTC](https://discuss.elastic.co/t/iframed-url-expired-after-some-time/339646 "2023-08-01T13:32:55Z")

</div>

Hi team, I have my kibana dashboard iframed short url in which some words I can't understand what is their meaning and can I used in python application? I am attached this short url please let explain what meaning of …

---

## [Setup a elastic cluster](https://discuss.elastic.co/t/setup-a-elastic-cluster/339741)

<div class="topic-metadata">

**Author:** [@psanggabuana](https://discuss.elastic.co/u/psanggabuana)\
**Replies:** 2\
**Last updated:** [August 1, 2023, 12:50pm UTC](https://discuss.elastic.co/t/setup-a-elastic-cluster/339741 "2023-08-01T12:50:09Z")

</div>

Hi everyone, I want to set up my cluster with the right server requirement. My cluster consists of: Master Data Coordinating Transform Ingest Can anyone share with me how much CPU, RAM, and storage for each server? …

---

## [Dont work preference in es version 6](https://discuss.elastic.co/t/dont-work-preference-in-es-version-6/339756)

<div class="topic-metadata">

**Author:** [@slowup](https://discuss.elastic.co/u/slowup)\
**Replies:** 2\
**Last updated:** [August 1, 2023, 12:22pm UTC](https://discuss.elastic.co/t/dont-work-preference-in-es-version-6/339756 "2023-08-01T12:22:44Z")

</div>

I know that the preference custome string is a function that allows you to search with the same shard, but every time you search, a different shard is searched, so the search results of search after are strange. What sh…

---

## [URGENT: Handshake failed. unexpected remote node](https://discuss.elastic.co/t/urgent-handshake-failed-unexpected-remote-node/339796)

<div class="topic-metadata">

**Author:** [@Piyush\_Goyal1](https://discuss.elastic.co/u/Piyush_Goyal1)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 12:05pm UTC](https://discuss.elastic.co/t/urgent-handshake-failed-unexpected-remote-node/339796 "2023-08-01T12:05:00Z")

</div>

Version: 8.5.0 The cluster has 3 nodes: node-001 (master) node-002 (data) node-003 (data) The master node VM crashed and upon restarting the master node, the data nodes are not getting discovered. The cluster was ru…

---

## [Rack Awarness and Node Aware](https://discuss.elastic.co/t/rack-awarness-and-node-aware/339786)

<div class="topic-metadata">

**Author:** [@mannoj87](https://discuss.elastic.co/u/mannoj87)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 11:00am UTC](https://discuss.elastic.co/t/rack-awarness-and-node-aware/339786 "2023-08-01T11:00:23Z")

</div>

I'm in 7.17.7 ES. I have 6BareMetal(BM), each BM will have 4VirtualMachines(VM), each VM's having ES service running and all 5BM are in 3 Physical Racks. Reason: I dont want Primary and Replica to reside on same BM as …

---

## [Pivot Table](https://discuss.elastic.co/t/pivot-table/339318)

<div class="topic-metadata">

**Author:** [@sbottura](https://discuss.elastic.co/u/sbottura)\
**Replies:** 4\
**Last updated:** [August 1, 2023, 10:40am UTC](https://discuss.elastic.co/t/pivot-table/339318 "2023-08-01T10:40:29Z")

</div>

Hello, I am fairly new to the Elastic Stack and I was wondering whether it would be possible to create a pivot table in Kibana. Thanks, S.

---

## [How to query 3 indexes in logstash](https://discuss.elastic.co/t/how-to-query-3-indexes-in-logstash/339785)

<div class="topic-metadata">

**Author:** [@willsy](https://discuss.elastic.co/u/willsy)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 10:41am UTC](https://discuss.elastic.co/t/how-to-query-3-indexes-in-logstash/339785 "2023-08-01T10:41:50Z")

</div>

In logstash i am trying to forward all of the logs in elasticsearch into logstash and then to a third party. What is the correct configuration for the index query? # Sample Logstash configuration for creating a simple #…

---

## [Kibana console is running very slow](https://discuss.elastic.co/t/kibana-console-is-running-very-slow/339766)

<div class="topic-metadata">

**Author:** [@Vartika\_Singh](https://discuss.elastic.co/u/Vartika_Singh)\
**Replies:** 2\
**Last updated:** [August 1, 2023, 10:10am UTC](https://discuss.elastic.co/t/kibana-console-is-running-very-slow/339766 "2023-08-01T10:10:36Z")

</div>

in kibana console sub tabs were working very slow...what is reason behind that?

---

## [Getting Null Pointer while using reloadable synonyms](https://discuss.elastic.co/t/getting-null-pointer-while-using-reloadable-synonyms/339775)

<div class="topic-metadata">

**Author:** [@Siddharth\_Gupta1](https://discuss.elastic.co/u/Siddharth_Gupta1)\
**Replies:** 2\
**Last updated:** [August 1, 2023, 10:06am UTC](https://discuss.elastic.co/t/getting-null-pointer-while-using-reloadable-synonyms/339775 "2023-08-01T10:06:17Z")

</div>

Hi Team I am currently facing an issue while utilizing readable synonyms from a file with my completion suggestor. The problem seems to be related to the search\_analyzers in my mappings. Strangely, the completion sugges…

---

## [\[API Logs\] - Pulling Latest Logs to Power BI](https://discuss.elastic.co/t/api-logs-pulling-latest-logs-to-power-bi/339657)

<div class="topic-metadata">

**Author:** [@aisyaharifin](https://discuss.elastic.co/u/aisyaharifin)\
**Replies:** 3\
**Last updated:** [August 1, 2023, 9:46am UTC](https://discuss.elastic.co/t/api-logs-pulling-latest-logs-to-power-bi/339657 "2023-08-01T09:46:01Z")

</div>

Hi Elastic, I want to ask is there a way we can continuously pulling the Elasticsearch data to Power BI Cloud for dashboard purposes? The team currently using Azure Data Factory to pull the data from our Elastic. Curr…

---

## [Standard Cloud Deployment unresponsive +12h](https://discuss.elastic.co/t/standard-cloud-deployment-unresponsive-12h/339765)

<div class="topic-metadata">

**Author:** [@Novel\_one](https://discuss.elastic.co/u/Novel_one)\
**Replies:** 1\
**Last updated:** [August 1, 2023, 9:41am UTC](https://discuss.elastic.co/t/standard-cloud-deployment-unresponsive-12h/339765 "2023-08-01T09:41:12Z")

</div>

Hi, thanks for any early response, I have been running a small deployment for almost a year. Yesterday I activated sending the internal logs and metrics to the same deployment, and during the last 12h any attempt on sto…

---

## [How to remove a user from role mapping](https://discuss.elastic.co/t/how-to-remove-a-user-from-role-mapping/339688)

<div class="topic-metadata">

**Author:** [@Ganesh2303](https://discuss.elastic.co/u/Ganesh2303)\
**Replies:** 3\
**Last updated:** [August 1, 2023, 8:59am UTC](https://discuss.elastic.co/t/how-to-remove-a-user-from-role-mapping/339688 "2023-08-01T08:59:17Z")

</div>

HI Team, we are using ELK version 7.17.10 and we have created Roles to manage our indices. my question is if want to remove user from role mapping how do i perform by using Delete command. Looking forward your input. …

---

## [Cluster config](https://discuss.elastic.co/t/cluster-config/339767)

<div class="topic-metadata">

**Author:** [@gagidza](https://discuss.elastic.co/u/gagidza)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 8:21am UTC](https://discuss.elastic.co/t/cluster-config/339767 "2023-08-01T08:21:13Z")

</div>

Hi all. Expert help needed. I have a 1 node cluster with a 7.4 TB hard drive dedicated to it. The server has 32 GB of RAM. Elastic is configured automatically and here are some of its health/stats: health: { "cluster…

---

## [Tuning of index segmentation](https://discuss.elastic.co/t/tuning-of-index-segmentation/339763)

<div class="topic-metadata">

**Author:** [@INS](https://discuss.elastic.co/u/INS)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 8:11am UTC](https://discuss.elastic.co/t/tuning-of-index-segmentation/339763 "2023-08-01T08:11:11Z")

</div>

Hi I am curious if this is recommended or if there are any tips about set parameters for segmentation. In my case the index is refreshed frequently (new data is uploaded and old data is deleted) what values or segment…

---

## [Elasticsearch Python Lib](https://discuss.elastic.co/t/elasticsearch-python-lib/339751)

<div class="topic-metadata">

**Author:** [@Vivek\_Burman](https://discuss.elastic.co/u/Vivek_Burman)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 6:17am UTC](https://discuss.elastic.co/t/elasticsearch-python-lib/339751 "2023-08-01T06:17:58Z")

</div>

Hi, I'm using Elastic Search python lib (8.8.2) to bulk insert data into a index. There are almost 2lakh+ documents I need to insert. I'm using parallel\_bulk api to sync them, but as I track the process RAM usage I see …

---

## [At which step does Bulkresponse occur](https://discuss.elastic.co/t/at-which-step-does-bulkresponse-occur/339740)

<div class="topic-metadata">

**Author:** [@Logan-lxw](https://discuss.elastic.co/u/Logan-lxw)\
**Replies:** 0\
**Last updated:** [August 1, 2023, 3:40am UTC](https://discuss.elastic.co/t/at-which-step-does-bulkresponse-occur/339740 "2023-08-01T03:40:24Z")

</div>

At which stage does the BulkResponse corresponding to BulkRequest occur? Which step does this response specifically refer to before returning? Does it mean that the request was successfully written to the translog and fl…

---

## [Fetching substring from a string in kibana](https://discuss.elastic.co/t/fetching-substring-from-a-string-in-kibana/338203)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 8\
**Last updated:** [July 31, 2023, 8:58pm UTC](https://discuss.elastic.co/t/fetching-substring-from-a-string-in-kibana/338203 "2023-07-31T20:58:31Z")

</div>

Hi, I have a field called url in elasticsearch document. The sample value for the field is /3dpassport/login I want to extract only the first string before / that is 3dpassport and store it in a field. I am okay with …

---

## [Select latest docs for each transactions and apply filters on selections with pagination capability](https://discuss.elastic.co/t/select-latest-docs-for-each-transactions-and-apply-filters-on-selections-with-pagination-capability/339730)

<div class="topic-metadata">

**Author:** [@pramodbhade](https://discuss.elastic.co/u/pramodbhade)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 8:12pm UTC](https://discuss.elastic.co/t/select-latest-docs-for-each-transactions-and-apply-filters-on-selections-with-pagination-capability/339730 "2023-07-31T20:12:31Z")

</div>

I have a situation where I need to load 100 records per page with the latest values and be able to paginate as well. The selected latest records also get filtered for a set of filter values. I'm using aggregation in th…

---

## [Aggregate filter plugin](https://discuss.elastic.co/t/aggregate-filter-plugin/339709)

<div class="topic-metadata">

**Author:** [@pero](https://discuss.elastic.co/u/pero)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 8:06pm UTC](https://discuss.elastic.co/t/aggregate-filter-plugin/339709 "2023-07-31T20:06:22Z")

</div>

I have these two json documents Document 1 is { "\_index": "auditbeat-2023.07.31", "\_type": "\_doc", "\_id": "KhknrIkBBEGDHOFEynSE", "\_version": 1, "\_score": null, "\_source": { "ecs": { "version": "1…

---

## [It is that possible to I return in my Elasticsearch query a new field , that does not exist in the mapping . With a new format from other field?](https://discuss.elastic.co/t/it-is-that-possible-to-i-return-in-my-elasticsearch-query-a-new-field-that-does-not-exist-in-the-mapping-with-a-new-format-from-other-field/339616)

<div class="topic-metadata">

**Author:** [@Murilo\_Livorato](https://discuss.elastic.co/u/Murilo_Livorato)\
**Replies:** 4\
**Last updated:** [July 31, 2023, 6:46pm UTC](https://discuss.elastic.co/t/it-is-that-possible-to-i-return-in-my-elasticsearch-query-a-new-field-that-does-not-exist-in-the-mapping-with-a-new-format-from-other-field/339616 "2023-07-31T18:46:41Z")

</div>

It is that possible to I return in my Elasticsearch query a new field ( that does not exist in the mapping ), with a new format from other field ? something like that - This is my Mapping - PUT /user-product-2023-06…

---

## [I want to create kibana dashboard with clickable field](https://discuss.elastic.co/t/i-want-to-create-kibana-dashboard-with-clickable-field/339682)

<div class="topic-metadata">

**Author:** [@fenixon](https://discuss.elastic.co/u/fenixon)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 5:48pm UTC](https://discuss.elastic.co/t/i-want-to-create-kibana-dashboard-with-clickable-field/339682 "2023-07-31T17:48:13Z")

</div>

This is one of my dashboard.I want to create this field(I marked with red colour round) as clickable and open the popup and show details of this number.

---

## [Add multiple filters based on geo distance on same index](https://discuss.elastic.co/t/add-multiple-filters-based-on-geo-distance-on-same-index/339623)

<div class="topic-metadata">

**Author:** [@alchemist23](https://discuss.elastic.co/u/alchemist23)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 5:27pm UTC](https://discuss.elastic.co/t/add-multiple-filters-based-on-geo-distance-on-same-index/339623 "2023-07-31T17:27:16Z")

</div>

Hello , I have a single index containing starbucks location data , a data view is based on an index from Elasticsearch I wish to display results on kibana visualization based on the distance with different color coding …

---

## [Cardinality Limitation Work Around](https://discuss.elastic.co/t/cardinality-limitation-work-around/339453)

<div class="topic-metadata">

**Author:** [@edang](https://discuss.elastic.co/u/edang)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 2:44pm UTC](https://discuss.elastic.co/t/cardinality-limitation-work-around/339453 "2023-07-27T14:44:22Z")

</div>

Hi All, With my data set I have seen a mismatch of data between ELK and my DB. For my purpose, I have used the cardinality aggregation to count the unique ids of a field but ran into some issues. The issues comes from t…

---

## [Autocomplete using Completion Suggesters](https://discuss.elastic.co/t/autocomplete-using-completion-suggesters/338823)

<div class="topic-metadata">

**Author:** [@Senchok](https://discuss.elastic.co/u/Senchok)\
**Replies:** 7\
**Last updated:** [July 31, 2023, 5:12pm UTC](https://discuss.elastic.co/t/autocomplete-using-completion-suggesters/338823 "2023-07-31T17:12:04Z")

</div>

Hello, I want to write Autocomplete using Elasticsearch. I use Completion Suggesters and I have problems with it. For example I have fullName and title fields "fullName": "John Smith" "title": "Python Developer" B…

---

## [Logstash filter mutate problem](https://discuss.elastic.co/t/logstash-filter-mutate-problem/339690)

<div class="topic-metadata">

**Author:** [@pero](https://discuss.elastic.co/u/pero)\
**Replies:** 12\
**Last updated:** [July 31, 2023, 3:01pm UTC](https://discuss.elastic.co/t/logstash-filter-mutate-problem/339690 "2023-07-31T15:01:14Z")

</div>

I have created a filter as shown below filter { if \[application\] == "today" { if field1 { mutate { add\_field =\> { mynewfield =\> "%{\[field1\]}" } …

---

## [ECE Fundamentals - step 3.13](https://discuss.elastic.co/t/ece-fundamentals-step-3-13/339479)

<div class="topic-metadata">

**Author:** [@mbowman](https://discuss.elastic.co/u/mbowman)\
**Replies:** 1\
**Last updated:** [July 31, 2023, 2:42pm UTC](https://discuss.elastic.co/t/ece-fundamentals-step-3-13/339479 "2023-07-31T14:42:18Z")

</div>

Course: ECE Fundamental Version: E-E04NO1 Question: When trying to access Kibana on lab 3 step 13, I am receiving a SAML related error and that the endpoint is not reachable. I have tried restarting my\_cluster but it …

---

## [Hide black bar in iframe](https://discuss.elastic.co/t/hide-black-bar-in-iframe/339698)

<div class="topic-metadata">

**Author:** [@Rushi\_Bagul](https://discuss.elastic.co/u/Rushi_Bagul)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 1:54pm UTC](https://discuss.elastic.co/t/hide-black-bar-in-iframe/339698 "2023-07-31T13:54:29Z")

</div>

I have Python application in which I want render iframe kibana dashboard and want hide black bar in which elastic logo also view. I am attach photo please suggest how can I hide this black bar .

---

## [Removing prefix from field names](https://discuss.elastic.co/t/removing-prefix-from-field-names/339674)

<div class="topic-metadata">

**Author:** [@VirusProtect](https://discuss.elastic.co/u/VirusProtect)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 1:39pm UTC](https://discuss.elastic.co/t/removing-prefix-from-field-names/339674 "2023-07-31T13:39:33Z")

</div>

Hi, I have fields in Kibana such as fw.ip, fw.name, fw.test.old, and so on. I am trying to remove the "fw" prefix from all these fields using a Ruby filter in Logstash. Here's the code I'm using: ruby { code =\> " …

---

## [It is possible to set (logstash.conf )output for particular file location in logstash server](https://discuss.elastic.co/t/it-is-possible-to-set-logstash-conf-output-for-particular-file-location-in-logstash-server/339664)

<div class="topic-metadata">

**Author:** [@rkannan](https://discuss.elastic.co/u/rkannan)\
**Replies:** 2\
**Last updated:** [July 31, 2023, 12:47pm UTC](https://discuss.elastic.co/t/it-is-possible-to-set-logstash-conf-output-for-particular-file-location-in-logstash-server/339664 "2023-07-31T12:47:17Z")

</div>

It is possible to set (logstash.conf )output for particular file location in logstash server

---

## [Getting No config files found in path in the cmd](https://discuss.elastic.co/t/getting-no-config-files-found-in-path-in-the-cmd/339684)

<div class="topic-metadata">

**Author:** [@ItsGautam](https://discuss.elastic.co/u/ItsGautam)\
**Replies:** 0\
**Last updated:** [July 31, 2023, 11:23am UTC](https://discuss.elastic.co/t/getting-no-config-files-found-in-path-in-the-cmd/339684 "2023-07-31T11:23:41Z")

</div>

Logstash stopped processing because of an error: (SystemExit) exit in the cmd prompt conf file: input { file { type =\> "logs" path =\> "C:\\elk\\elk-stack" start\_position=\>"beginning" codec =\> multiline { pattern…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=328)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=330)
