# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=332

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 333

---

## [How to hide 3 dots on the top right of the pane](https://discuss.elastic.co/t/how-to-hide-3-dots-on-the-top-right-of-the-pane/339287)

<div class="topic-metadata">

**Author:** [@Jvv\_Satya](https://discuss.elastic.co/u/Jvv_Satya)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 2:04pm UTC](https://discuss.elastic.co/t/how-to-hide-3-dots-on-the-top-right-of-the-pane/339287 "2023-07-27T14:04:27Z")

</div>

I am using Kibana 8.6.2. I have developed a dashboard and embedded the URL in an iFrame in my application. However, I see the 3 dots on the top right of every pane. Is it possible to disable it. Also, can we hide the (…

---

## [What's the number of Elser parameter?](https://discuss.elastic.co/t/whats-the-number-of-elser-parameter/339446)

<div class="topic-metadata">

**Author:** [@Ernest\_Dong](https://discuss.elastic.co/u/Ernest_Dong)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 1:40pm UTC](https://discuss.elastic.co/t/whats-the-number-of-elser-parameter/339446 "2023-07-27T13:40:58Z")

</div>

The model binary is 400M in size. Looks like BERT. But I believe Elser must be quantized or distilled, since it took much more time to run in my laptop

---

## [Is it always necessary to use size attribute in DSL query?](https://discuss.elastic.co/t/is-it-always-necessary-to-use-size-attribute-in-dsl-query/339377)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 3\
**Last updated:** [July 27, 2023, 1:23pm UTC](https://discuss.elastic.co/t/is-it-always-necessary-to-use-size-attribute-in-dsl-query/339377 "2023-07-27T13:23:26Z")

</div>

Hi, Is it always necessary to use the size attribute in Elasticsearch DSL query? What if there are many documents and I do not know the exact no of documents that I would need? I am trying to get the last poll data fr…

---

## [Elastic Enterprise Pricing](https://discuss.elastic.co/t/elastic-enterprise-pricing/339439)

<div class="topic-metadata">

**Author:** [@mahan\_masih](https://discuss.elastic.co/u/mahan_masih)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 1:06pm UTC](https://discuss.elastic.co/t/elastic-enterprise-pricing/339439 "2023-07-27T13:06:24Z")

</div>

Hi, How is Elastic licensing priced? Is it per node, per eps, which parameter affects the price? This is for an on-prem cluster. Does anybody have an idea of the Enterprise license price? This is for an 8 nodes clust…

---

## [Does Elasticsearch capture audit logs for Query DSL, EQL and SQL or Not?](https://discuss.elastic.co/t/does-elasticsearch-capture-audit-logs-for-query-dsl-eql-and-sql-or-not/339398)

<div class="topic-metadata">

**Author:** [@Subrato1](https://discuss.elastic.co/u/Subrato1)\
**Replies:** 12\
**Last updated:** [July 27, 2023, 12:43pm UTC](https://discuss.elastic.co/t/does-elasticsearch-capture-audit-logs-for-query-dsl-eql-and-sql-or-not/339398 "2023-07-27T12:43:41Z")

</div>

Does Elasticsearch capture audit logs for Query DSL, EQL and SQL or Not???

---

## [Mimecast integration](https://discuss.elastic.co/t/mimecast-integration/339431)

<div class="topic-metadata">

**Author:** [@ElastiRCT](https://discuss.elastic.co/u/ElastiRCT)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 12:24pm UTC](https://discuss.elastic.co/t/mimecast-integration/339431 "2023-07-27T12:24:10Z")

</div>

Hi, I am completely new to Elastic and trying to integrate Mimecast into my cloud deployment to collect logs. I have inserted all of the relevant keys for the API but now I am unsure on what to do next to collect the lo…

---

## [How to switch y-axis to x-axis](https://discuss.elastic.co/t/how-to-switch-y-axis-to-x-axis/339393)

<div class="topic-metadata">

**Author:** [@hananz](https://discuss.elastic.co/u/hananz)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 11:23am UTC](https://discuss.elastic.co/t/how-to-switch-y-axis-to-x-axis/339393 "2023-07-27T11:23:51Z")

</div>

Hi using Kibana 8.8 and lens my data is series of sample points (CSV file), trying to show a line graph: X-axis as counter and Y-axis as the data points. the best result is a graph with the axis in the wrong positions…

---

## [How to download platinum and enterprise version of elasticsearch for free trail](https://discuss.elastic.co/t/how-to-download-platinum-and-enterprise-version-of-elasticsearch-for-free-trail/339256)

<div class="topic-metadata">

**Author:** [@ashishshukla](https://discuss.elastic.co/u/ashishshukla)\
**Replies:** 19\
**Last updated:** [July 27, 2023, 10:23am UTC](https://discuss.elastic.co/t/how-to-download-platinum-and-enterprise-version-of-elasticsearch-for-free-trail/339256 "2023-07-27T10:23:59Z")

</div>

Please provide the link for download platinum or enterprise version of elasticsearch for free trail in Linux and rpm system.

---

## [Elasticsearch not capturing audit logs while I am executing index creation queries, SQL queries mention in ELASTICSEARCH documentation](https://discuss.elastic.co/t/elasticsearch-not-capturing-audit-logs-while-i-am-executing-index-creation-queries-sql-queries-mention-in-elasticsearch-documentation/339381)

<div class="topic-metadata">

**Author:** [@Subrato1](https://discuss.elastic.co/u/Subrato1)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 10:22am UTC](https://discuss.elastic.co/t/elasticsearch-not-capturing-audit-logs-while-i-am-executing-index-creation-queries-sql-queries-mention-in-elasticsearch-documentation/339381 "2023-07-27T10:22:00Z")

</div>

I am executing index creation queries and SQL queries mention in ELASTICSEARCH documentation, but I am not getting audit logs regarding these queries. Can anyone tell me which kind audit logs only we can get while execu…

---

## [Can't start elastic elasticsearch-8.9.0](https://discuss.elastic.co/t/cant-start-elastic-elasticsearch-8-9-0/339299)

<div class="topic-metadata">

**Author:** [@choilee](https://discuss.elastic.co/u/choilee)\
**Replies:** 10\
**Last updated:** [July 27, 2023, 10:00am UTC](https://discuss.elastic.co/t/cant-start-elastic-elasticsearch-8-9-0/339299 "2023-07-27T10:00:10Z")

</div>

I installed elasticsearch-8.9.0 on root account in centos 7 But couldn't start. i use this command "systemctl start elasticsearch.service" And i couldn't find any wrong Permission....help please...ㅠㅠ Jul 26 20:06:43 S…

---

## [Elastic Agent error out with log\_group\_arn, log\_group\_name and log\_group\_name\_prefix config cannot all be empty](https://discuss.elastic.co/t/elastic-agent-error-out-with-log-group-arn-log-group-name-and-log-group-name-prefix-config-cannot-all-be-empty/339414)

<div class="topic-metadata">

**Author:** [@The2](https://discuss.elastic.co/u/The2)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 9:56am UTC](https://discuss.elastic.co/t/elastic-agent-error-out-with-log-group-arn-log-group-name-and-log-group-name-prefix-config-cannot-all-be-empty/339414 "2023-07-27T09:56:01Z")

</div>

Hello, I'm trying to use elastic-agent to integrate with AWS to fetch cloudwatch logs. However i'm facing this issue: Unit state changed aws-cloudwatch-default-aws-cloudwatch-cloudwatch-481de7b4-7c2d-4fbf-9156-3acdd53…

---

## [Kibana - No results match your search criteria](https://discuss.elastic.co/t/kibana-no-results-match-your-search-criteria/339319)

<div class="topic-metadata">

**Author:** [@jsingleton71](https://discuss.elastic.co/u/jsingleton71)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 9:38am UTC](https://discuss.elastic.co/t/kibana-no-results-match-your-search-criteria/339319 "2023-07-27T09:38:26Z")

</div>

All, I have more than 1000 IIS access logs ingested into Elasticsearch 8.8.1. This amounts to around 100GB in actual storage. I can query the data from a Jupyter Notebook and get results using the same indexes. I have c…

---

## [Elastic agent showing disable in windows services. How to resolved this issue](https://discuss.elastic.co/t/elastic-agent-showing-disable-in-windows-services-how-to-resolved-this-issue/339401)

<div class="topic-metadata">

**Author:** [@Tushar02](https://discuss.elastic.co/u/Tushar02)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 8:28am UTC](https://discuss.elastic.co/t/elastic-agent-showing-disable-in-windows-services-how-to-resolved-this-issue/339401 "2023-07-27T08:28:59Z")

</div>

elastic agent showing disable in windows services. How to resolved this issue

---

## [Char\_filter doesn't work properly](https://discuss.elastic.co/t/char-filter-doesnt-work-properly/339218)

<div class="topic-metadata">

**Author:** [@Vladimir\_Talabko](https://discuss.elastic.co/u/Vladimir_Talabko)\
**Replies:** 12\
**Last updated:** [July 27, 2023, 8:01am UTC](https://discuss.elastic.co/t/char-filter-doesnt-work-properly/339218 "2023-07-27T08:01:25Z")

</div>

Hello! I have an index with a char\_filter for avoiding special symbols like "-\_.": curl -X PUT "localhost:9200/test\_index?pretty" -H 'Content-Type: application/json' -d' { "settings": { "analysis": { …

---

## [How to read indexed binary field data from doc values (in custom Query plugin)](https://discuss.elastic.co/t/how-to-read-indexed-binary-field-data-from-doc-values-in-custom-query-plugin/339387)

<div class="topic-metadata">

**Author:** [@Pyppe](https://discuss.elastic.co/u/Pyppe)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 6:19am UTC](https://discuss.elastic.co/t/how-to-read-indexed-binary-field-data-from-doc-values-in-custom-query-plugin/339387 "2023-07-27T06:19:40Z")

</div>

Hi! We're trying to write a custom query-plugin for Elasticsearch where we would use binary data for calculating scores (disclaimer: I've never written one before). Each document can have multiple vectors, so we cannot …

---

## [Extract fields from a field and add the total count](https://discuss.elastic.co/t/extract-fields-from-a-field-and-add-the-total-count/339386)

<div class="topic-metadata">

**Author:** [@joshuskarki](https://discuss.elastic.co/u/joshuskarki)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 6:09am UTC](https://discuss.elastic.co/t/extract-fields-from-a-field-and-add-the-total-count/339386 "2023-07-27T06:09:12Z")

</div>

I have this logs (json format) imported into elastic via logstash. "fields.models": "{'msp': '1', 'tcl': '1'}", with logstash, how do we extract the model name and calculate the total count The desired output should a…

---

## [Hardware Requiremenr](https://discuss.elastic.co/t/hardware-requiremenr/339383)

<div class="topic-metadata">

**Author:** [@umangpatel](https://discuss.elastic.co/u/umangpatel)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 5:51am UTC](https://discuss.elastic.co/t/hardware-requiremenr/339383 "2023-07-27T05:51:06Z")

</div>

Hello There!!! I have one question about Elasticsearch hardware requiremnet. So let's say if i want to setup Elasticsearch cluster in on-premises data center and i have daily 20 TB of data is ingress or i would say inge…

---

## [Watcher alert status](https://discuss.elastic.co/t/watcher-alert-status/339374)

<div class="topic-metadata">

**Author:** [@jaja](https://discuss.elastic.co/u/jaja)\
**Replies:** 0\
**Last updated:** [July 27, 2023, 5:16am UTC](https://discuss.elastic.co/t/watcher-alert-status/339374 "2023-07-27T05:16:10Z")

</div>

Hi Team, We have tried with the watcher it worked for us but we can't go as in watcher the alert status does not change like as in alert we have active , recover options we have. I tried with Index Threshold alert but …

---

## [Elastic Agent GUI Installation](https://discuss.elastic.co/t/elastic-agent-gui-installation/334780)

<div class="topic-metadata">

**Author:** [@xqaiviwjxzw](https://discuss.elastic.co/u/xqaiviwjxzw)\
**Replies:** 3\
**Last updated:** [May 31, 2023, 10:50pm UTC](https://discuss.elastic.co/t/elastic-agent-gui-installation/334780 "2023-05-31T22:50:56Z")

</div>

Elastic Will the elastic agent be installed in a way that supports gui in the future?

---

## [The indexing or search request send to down node](https://discuss.elastic.co/t/the-indexing-or-search-request-send-to-down-node/339022)

<div class="topic-metadata">

**Author:** [@Chimu](https://discuss.elastic.co/u/Chimu)\
**Replies:** 10\
**Last updated:** [July 27, 2023, 3:35am UTC](https://discuss.elastic.co/t/the-indexing-or-search-request-send-to-down-node/339022 "2023-07-27T03:35:03Z")

</div>

I have an Elasticsearch (v5.6.10) cluster with 3 nodes. Node A : Master Node B : Master + Data Node C : Master + Data There are 6 shards per data node with replication set as 1. All 6 primary nodes are in Node B and a…

---

## [How to test for indexes NOT being created?](https://discuss.elastic.co/t/how-to-test-for-indexes-not-being-created/339346)

<div class="topic-metadata">

**Author:** [@McJava1967](https://discuss.elastic.co/u/McJava1967)\
**Replies:** 1\
**Last updated:** [July 27, 2023, 2:08am UTC](https://discuss.elastic.co/t/how-to-test-for-indexes-not-being-created/339346 "2023-07-27T02:08:27Z")

</div>

Hi all. My ELK should be receiving data regularly, and creating a new index daily. Is there any way to automatically test if either of those is NOT happening?

---

## [Struggling with '-' into field as value](https://discuss.elastic.co/t/struggling-with-into-field-as-value/339230)

<div class="topic-metadata">

**Author:** [@yquirion](https://discuss.elastic.co/u/yquirion)\
**Replies:** 3\
**Last updated:** [July 26, 2023, 10:51pm UTC](https://discuss.elastic.co/t/struggling-with-into-field-as-value/339230 "2023-07-26T22:51:09Z")

</div>

Greetings, For very long time, I'm struggling with those errors into my logstash server: \[2023-07-25T17:13:15,009\]\[WARN \]\[logstash.outputs.elasticsearch\]\[5555\_winlogbeat\]\[413af53fed5d62fe27389e3c6e0cc4781e6d3cffc048c8a…

---

## [ELK storage on prem](https://discuss.elastic.co/t/elk-storage-on-prem/339348)

<div class="topic-metadata">

**Author:** [@carl56846453](https://discuss.elastic.co/u/carl56846453)\
**Replies:** 0\
**Last updated:** [July 26, 2023, 9:03pm UTC](https://discuss.elastic.co/t/elk-storage-on-prem/339348 "2023-07-26T21:03:54Z")

</div>

ELK is not storing much log data. The log seem to keep turning over. ELK is consuming a lot of syslog data. how do I increase the storge of data.

---

## [ECE fundamentals lab 3 step 7](https://discuss.elastic.co/t/ece-fundamentals-lab-3-step-7/339227)

<div class="topic-metadata">

**Author:** [@mbowman](https://discuss.elastic.co/u/mbowman)\
**Replies:** 3\
**Last updated:** [July 26, 2023, 8:15pm UTC](https://discuss.elastic.co/t/ece-fundamentals-lab-3-step-7/339227 "2023-07-26T20:15:54Z")

</div>

Course: ECE Fundamentals Version: E-E04NO1 Question: On lab 3, step 7, it's wanting me to test the accessibility of the API with the "elastic" user. The solution states to use this: https://:9243 I have tried the i…

---

## [Post data to elasticsearch sometimes throws error 429](https://discuss.elastic.co/t/post-data-to-elasticsearch-sometimes-throws-error-429/339345)

<div class="topic-metadata">

**Author:** [@111407](https://discuss.elastic.co/u/111407)\
**Replies:** 1\
**Last updated:** [July 26, 2023, 7:37pm UTC](https://discuss.elastic.co/t/post-data-to-elasticsearch-sometimes-throws-error-429/339345 "2023-07-26T19:37:00Z")

</div>

command: curl -u username:pw -X POST 'http://sd-4531-6c55:9200/testindex/\_doc' -H 'Content-type: application/json' -d '{"test":11234}' response: {"error":{"root\_cause":\[{"type":"remote\_transport\_exception","reason":"\[…

---

## [Kibana is not working](https://discuss.elastic.co/t/kibana-is-not-working/338991)

<div class="topic-metadata">

**Author:** [@Miguel2](https://discuss.elastic.co/u/Miguel2)\
**Replies:** 11\
**Last updated:** [July 26, 2023, 7:29pm UTC](https://discuss.elastic.co/t/kibana-is-not-working/338991 "2023-07-26T19:29:34Z")

</div>

Hello I'm trying to learn the ELK stack from scratch, I'm currently having problems with kibana not getting active as shown below: myuser@myuser-pc:~$ systemctl status kibana × kibana.service - Kibana Loaded: loade…

---

## [Logstash pipeline is getting killed with jnr.enxio.channels.NativeException: Error closing fd 272: Stale file handle"](https://discuss.elastic.co/t/logstash-pipeline-is-getting-killed-with-jnr-enxio-channels-nativeexception-error-closing-fd-272-stale-file-handle/339328)

<div class="topic-metadata">

**Author:** [@jayanthi\_c](https://discuss.elastic.co/u/jayanthi_c)\
**Replies:** 2\
**Last updated:** [July 26, 2023, 6:23pm UTC](https://discuss.elastic.co/t/logstash-pipeline-is-getting-killed-with-jnr-enxio-channels-nativeexception-error-closing-fd-272-stale-file-handle/339328 "2023-07-26T18:23:59Z")

</div>

I am using filebeat to transfer log to logstash but we see that pipeline is getting killed with the below error jnr.enxio.channels.NativeException: Error closing fd 272: Stale file handle" Can someone please help

---

## [How to view the backend log of the Python class \`Elasticsearch\`?](https://discuss.elastic.co/t/how-to-view-the-backend-log-of-the-python-class-elasticsearch/339133)

<div class="topic-metadata">

**Author:** [@Mike\_Z](https://discuss.elastic.co/u/Mike_Z)\
**Replies:** 1\
**Last updated:** [July 26, 2023, 6:21pm UTC](https://discuss.elastic.co/t/how-to-view-the-backend-log-of-the-python-class-elasticsearch/339133 "2023-07-26T18:21:22Z")

</div>

We are using an instance of the Python class Elasticsearch, e.g., by es = Elasticsearch(hosts="http://test-elastic-host:9200"). For example, when calling the search() method, we need to know what exactly the request is,…

---

## [I want to know why the indices.id\_field\_data.enabled configuration is turned off by default](https://discuss.elastic.co/t/i-want-to-know-why-the-indices-id-field-data-enabled-configuration-is-turned-off-by-default/339338)

<div class="topic-metadata">

**Author:** [@Kurt\_Rudolph](https://discuss.elastic.co/u/Kurt_Rudolph)\
**Replies:** 1\
**Last updated:** [July 26, 2023, 5:50pm UTC](https://discuss.elastic.co/t/i-want-to-know-why-the-indices-id-field-data-enabled-configuration-is-turned-off-by-default/339338 "2023-07-26T17:50:36Z")

</div>

This topic got automatically closed without an answer I want to know why the indices.id\_field\_data.enabled configuration is turned off by default I'm evaluating the impacts of upgrading from v7 -\> v8 and found an issue…

---

## [How can i send logs from Elastic to another SIEM?](https://discuss.elastic.co/t/how-can-i-send-logs-from-elastic-to-another-siem/339154)

<div class="topic-metadata">

**Author:** [@Ck1f](https://discuss.elastic.co/u/Ck1f)\
**Replies:** 7\
**Last updated:** [July 26, 2023, 5:39pm UTC](https://discuss.elastic.co/t/how-can-i-send-logs-from-elastic-to-another-siem/339154 "2023-07-26T17:39:54Z")

</div>

Good morning, We have installed elastic-agents throughout our environment with everything setup for filebeat and metricbeat monitoring. And now i'm trying to understand how can i send logs to another SIEM?

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=331)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=333)
