# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=351

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 352

---

## [Data transfer from logstash to kibana](https://discuss.elastic.co/t/data-transfer-from-logstash-to-kibana/337055)

<div class="topic-metadata">

**Author:** [@kazuo](https://discuss.elastic.co/u/kazuo)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 8:49am UTC](https://discuss.elastic.co/t/data-transfer-from-logstash-to-kibana/337055 "2023-06-28T08:49:05Z")

</div>

Hello, Output drop occurs in L2SW when transferring data from logstash to kibana. Are there any parameters that control data transfer with logstash? Thank you in advance

---

## [Read a date of a file to add this property in Logstash to send a ElasticSearch](https://discuss.elastic.co/t/read-a-date-of-a-file-to-add-this-property-in-logstash-to-send-a-elasticsearch/335359)

<div class="topic-metadata">

**Author:** [@AlejandroVindel](https://discuss.elastic.co/u/AlejandroVindel)\
**Replies:** 2\
**Last updated:** [June 28, 2023, 8:36am UTC](https://discuss.elastic.co/t/read-a-date-of-a-file-to-add-this-property-in-logstash-to-send-a-elasticsearch/335359 "2023-06-28T08:36:09Z")

</div>

HI, I am collecting files with Logstash and sending them to an Elasticsearch database. But I'm running into the problem that I can't pick up the date that file was created or last modified. I'm working on Linux, and wh…

---

## [Face issues regarding data visualization](https://discuss.elastic.co/t/face-issues-regarding-data-visualization/337043)

<div class="topic-metadata">

**Author:** [@Rushi\_Bagul](https://discuss.elastic.co/u/Rushi_Bagul)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 6:30am UTC](https://discuss.elastic.co/t/face-issues-regarding-data-visualization/337043 "2023-06-28T06:30:56Z")

</div>

I have face challenges regarding data visualization in kibana dashboard because I am new on elasticsearch platform so help me for provided data. "parameter": { "name": "Disk Usage", "code": "DISK\_USAGE" }, "resource…

---

## [Kibana dashboard visualisation slowness while accessing the dashboard -](https://discuss.elastic.co/t/kibana-dashboard-visualisation-slowness-while-accessing-the-dashboard/336943)

<div class="topic-metadata">

**Author:** [@Praveen\_kr](https://discuss.elastic.co/u/Praveen_kr)\
**Replies:** 1\
**Last updated:** [June 28, 2023, 6:30am UTC](https://discuss.elastic.co/t/kibana-dashboard-visualisation-slowness-while-accessing-the-dashboard/336943 "2023-06-28T06:30:05Z")

</div>

Hello , We are using 7.17 version Elasticsearch and Kibana, We are facing browser locks up issue when access dashboard in our environment. While loading the dashboard visualisation is very slow for example : last 30 d…

---

## [CancelException with AsyncBulkLoad (Python helper)](https://discuss.elastic.co/t/cancelexception-with-asyncbulkload-python-helper/337038)

<div class="topic-metadata">

**Author:** [@ionFreeman](https://discuss.elastic.co/u/ionFreeman)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 5:58am UTC](https://discuss.elastic.co/t/cancelexception-with-asyncbulkload-python-helper/337038 "2023-06-28T05:58:19Z")

</div>

Hello! I have a little action generator, actually a bunch of coroutines I stich together with aiostream.merge(). I pass it into the AsyncBulkLoad. I haven't reproduced the behavior when I have a small number of test acti…

---

## [Elastic node crashing due to java.lang.OutOfMemoryError: Java heap space](https://discuss.elastic.co/t/elastic-node-crashing-due-to-java-lang-outofmemoryerror-java-heap-space/337034)

<div class="topic-metadata">

**Author:** [@sasvmware](https://discuss.elastic.co/u/sasvmware)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 5:22am UTC](https://discuss.elastic.co/t/elastic-node-crashing-due-to-java-lang-outofmemoryerror-java-heap-space/337034 "2023-06-28T05:22:56Z")

</div>

Hi Elasticsearch nodes are crashing due to java.lang.OutOfMemoryError: Java heap space. We have 10 GB memory in each node and as per formula total memory/2 -1 we have set JVM as 4. ava.lang.OutOfMemoryError: Java heap…

---

## [How to migrate data older than 30 day from a cluster to another cluster](https://discuss.elastic.co/t/how-to-migrate-data-older-than-30-day-from-a-cluster-to-another-cluster/337029)

<div class="topic-metadata">

**Author:** [@Tai\_Nguyen\_Huu](https://discuss.elastic.co/u/Tai_Nguyen_Huu)\
**Replies:** 0\
**Last updated:** [June 28, 2023, 2:48am UTC](https://discuss.elastic.co/t/how-to-migrate-data-older-than-30-day-from-a-cluster-to-another-cluster/337029 "2023-06-28T02:48:51Z")

</div>

Hi guys, I have a elasticsearch cluster, I wan to migrate data older than 30 day from a cluster to another cluster by automatic .

---

## [How to check total required heap for ES 8.8](https://discuss.elastic.co/t/how-to-check-total-required-heap-for-es-8-8/336821)

<div class="topic-metadata">

**Author:** [@Geunmoon\_Oh](https://discuss.elastic.co/u/Geunmoon_Oh)\
**Replies:** 13\
**Last updated:** [June 28, 2023, 2:46am UTC](https://discuss.elastic.co/t/how-to-check-total-required-heap-for-es-8-8/336821 "2023-06-28T02:46:06Z")

</div>

To set my ES node's heap minimum, I referenced Size your shards (Size your shards | Elasticsearch Guide \[8.8\] | Elastic). "total\_deduplicated\_mapping\_size" : "4.1kb“ "total\_estimated\_overhead" : “13.5mb“ "extra heap f…

---

## [ES migration from 6.8 to 7.17. Data type change in template for "date" type](https://discuss.elastic.co/t/es-migration-from-6-8-to-7-17-data-type-change-in-template-for-date-type/337022)

<div class="topic-metadata">

**Author:** [@Abhilashsr2008](https://discuss.elastic.co/u/Abhilashsr2008)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 11:19pm UTC](https://discuss.elastic.co/t/es-migration-from-6-8-to-7-17-data-type-change-in-template-for-date-type/337022 "2023-06-27T23:19:59Z")

</div>

Hi Team We are planning to move from ES 6.8 to 7.17 server migration . But in 7.17 -ve values are not supported for date field. So am thinking to change the index template for that specific field from date to long type …

---

## [New to ELK & Kibana, Error Message: "security\_exception: missing authentication credentials for REST request "](https://discuss.elastic.co/t/new-to-elk-kibana-error-message-security-exception-missing-authentication-credentials-for-rest-request/336961)

<div class="topic-metadata">

**Author:** [@General-Trident](https://discuss.elastic.co/u/General-Trident)\
**Replies:** 2\
**Last updated:** [June 27, 2023, 8:14pm UTC](https://discuss.elastic.co/t/new-to-elk-kibana-error-message-security-exception-missing-authentication-credentials-for-rest-request/336961 "2023-06-27T20:14:18Z")

</div>

I'm new to ELK & Kibana. Haven't made any recommendable configs apart from just installing the instances (which are only Elasticsearch & Kibana so far). Elasticsearch status is ready and running, but I still can't access…

---

## [Gathering Top Values Through Elk API](https://discuss.elastic.co/t/gathering-top-values-through-elk-api/337019)

<div class="topic-metadata">

**Author:** [@hi\_xavier](https://discuss.elastic.co/u/hi_xavier)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 6:52pm UTC](https://discuss.elastic.co/t/gathering-top-values-through-elk-api/337019 "2023-06-27T18:52:15Z")

</div>

Hi, Is it possible, with the combination of Elk API and Aggregations , to gather top values. For example, the top 5 error messages from a set of results?

---

## [Which nodes to have logstash send to cluster](https://discuss.elastic.co/t/which-nodes-to-have-logstash-send-to-cluster/337018)

<div class="topic-metadata">

**Author:** [@eh2021-elastic](https://discuss.elastic.co/u/eh2021-elastic)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 6:37pm UTC](https://discuss.elastic.co/t/which-nodes-to-have-logstash-send-to-cluster/337018 "2023-06-27T18:37:00Z")

</div>

I have an elastic 7.16 cluster that consist of 4 dedicated masterand 16 data nodes. I have logstash sending syslog data from various network systems, firewalls, etc and just noticed the logstash config on some devices di…

---

## [Pipeline error "pipeline-id" :exception=\>#\<Psych::DisallowedClass: Tried to load unspecified class: Time](https://discuss.elastic.co/t/pipeline-error-pipeline-id-exception-psych-tried-to-load-unspecified-class-time/336786)

<div class="topic-metadata">

**Author:** [@Gelinski](https://discuss.elastic.co/u/Gelinski)\
**Replies:** 2\
**Last updated:** [June 27, 2023, 6:29pm UTC](https://discuss.elastic.co/t/pipeline-error-pipeline-id-exception-psych-tried-to-load-unspecified-class-time/336786 "2023-06-27T18:29:20Z")

</div>

Hello folks, I have a logstash pipeline that is using a jdbc input and is configured with a schedule (0/1 \* \* \* \*) and after change its schedule to any other schedule the following error starts to happen: \[2023-06-23T…

---

## [Configure limit.conf for ElasticSearch server](https://discuss.elastic.co/t/configure-limit-conf-for-elasticsearch-server/336930)

<div class="topic-metadata">

**Author:** [@TomTom](https://discuss.elastic.co/u/TomTom)\
**Replies:** 3\
**Last updated:** [June 27, 2023, 12:43pm UTC](https://discuss.elastic.co/t/configure-limit-conf-for-elasticsearch-server/336930 "2023-06-27T12:43:19Z")

</div>

The Elasticsearch documentation says that I should configure nofile and nproc for better performance. But the documentation is a bit confusing. First, do I set it to the "elastic" user that was created by Elasticsearch…

---

## [BACnet - ingest data from field devices](https://discuss.elastic.co/t/bacnet-ingest-data-from-field-devices/337015)

<div class="topic-metadata">

**Author:** [@Ostaseski](https://discuss.elastic.co/u/Ostaseski)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 3:46pm UTC](https://discuss.elastic.co/t/bacnet-ingest-data-from-field-devices/337015 "2023-06-27T15:46:00Z")

</div>

I cannot read the responses on how to ingest data from field devices that talk Modbus TCP and BACnet IP to Elastic Logstash. Were there any suggestions or perhaps an update? Any help would be appreciated. Thanks

---

## [Preventing/identifying credit card breach in elastic using SIEM](https://discuss.elastic.co/t/preventing-identifying-credit-card-breach-in-elastic-using-siem/337014)

<div class="topic-metadata">

**Author:** [@searchwithme](https://discuss.elastic.co/u/searchwithme)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 3:45pm UTC](https://discuss.elastic.co/t/preventing-identifying-credit-card-breach-in-elastic-using-siem/337014 "2023-06-27T15:45:09Z")

</div>

Hi! I see elastic has a rich array of security features (SIEM, security analytics, endpoint detection, etc). Is there a way to identify/detect if credit card details were crawled by hackers for online transactions? Gi…

---

## ["target\_prefix" equivalent for ingest pipeline?](https://discuss.elastic.co/t/target-prefix-equivalent-for-ingest-pipeline/337009)

<div class="topic-metadata">

**Author:** [@andrew.klaassen](https://discuss.elastic.co/u/andrew.klaassen)\
**Replies:** 2\
**Last updated:** [June 27, 2023, 3:28pm UTC](https://discuss.elastic.co/t/target-prefix-equivalent-for-ingest-pipeline/337009 "2023-06-27T15:28:19Z")

</div>

The filebeat dissect processor has a handy "target\_prefix" option, which allows everything it extracts to be placed under a common prefix. Is there any equivalent for the dissect or grok processors in an ingest pipeline…

---

## [Dynamic instances of Elastic Agent](https://discuss.elastic.co/t/dynamic-instances-of-elastic-agent/337005)

<div class="topic-metadata">

**Author:** [@hti](https://discuss.elastic.co/u/hti)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 2:14pm UTC](https://discuss.elastic.co/t/dynamic-instances-of-elastic-agent/337005 "2023-06-27T14:14:11Z")

</div>

Hello, we are spawning multiple Windows Server instances from a golden image. These instances get destroyed and recreated daily. For log collection we installed and enrolled the Elastic Agent in the golden image. We do…

---

## [I have a problem with EL and Xenforo](https://discuss.elastic.co/t/i-have-a-problem-with-el-and-xenforo/336872)

<div class="topic-metadata">

**Author:** [@Hi\_Welt](https://discuss.elastic.co/u/Hi_Welt)\
**Replies:** 4\
**Last updated:** [June 27, 2023, 2:08pm UTC](https://discuss.elastic.co/t/i-have-a-problem-with-el-and-xenforo/336872 "2023-06-27T14:08:47Z")

</div>

HI I have been using EL in xenforo for a longtime but now I randomly starts shutingdown since updating from EL7 to EL8. cat /var/log/elasticsearch/elasticsearch.log \[2023-06-26T03:24:33,901\]\[INFO \]\[o.e.n.Node …

---

## [Stopping logstash](https://discuss.elastic.co/t/stopping-logstash/336586)

<div class="topic-metadata">

**Author:** [@Hanni](https://discuss.elastic.co/u/Hanni)\
**Replies:** 13\
**Last updated:** [June 27, 2023, 1:06pm UTC](https://discuss.elastic.co/t/stopping-logstash/336586 "2023-06-27T13:06:11Z")

</div>

Hello, i'm currently working on logstash and i have a question. To launch my logtash script, i use this command: sudo /usr/share/logstash/bin/logstash -f /etc/logstash/conf.d/test.conf When I run it in my terminal, to…

---

## [8.1, some confusion about successfulShardExecution in AbstractSearchAsyncAction](https://discuss.elastic.co/t/8-1-some-confusion-about-successfulshardexecution-in-abstractsearchasyncaction/336987)

<div class="topic-metadata">

**Author:** [@cm\_z](https://discuss.elastic.co/u/cm_z)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 12:32pm UTC](https://discuss.elastic.co/t/8-1-some-confusion-about-successfulshardexecution-in-abstractsearchasyncaction/336987 "2023-06-27T12:32:34Z")

</div>

"Every response of shard result will trigger the successfulShardExecution method of AbstractSearchAsyncAction. I am confused about why we use shardsIt.remaining() + 1 to calculate ops, shouldn't it be +1 for each shard?" …

---

## [Elastic search upgrade from 7.16.2 to 7.17.7](https://discuss.elastic.co/t/elastic-search-upgrade-from-7-16-2-to-7-17-7/336579)

<div class="topic-metadata">

**Author:** [@Bibhutibhusan\_Sahoo](https://discuss.elastic.co/u/Bibhutibhusan_Sahoo)\
**Replies:** 2\
**Last updated:** [June 27, 2023, 10:25am UTC](https://discuss.elastic.co/t/elastic-search-upgrade-from-7-16-2-to-7-17-7/336579 "2023-06-27T10:25:52Z")

</div>

Hi Team, we are trying to upgrade Elasticsearch from 7.16.2 to 7.17.7 through rpm package and getting following error One or more requisite failed: service.elastic.elasticsearch.service, Can someone help here? What is …

---

## [Logstash HTTP filter shows ruby exception NoMethodError strip for nil class](https://discuss.elastic.co/t/logstash-http-filter-shows-ruby-exception-nomethoderror-strip-for-nil-class/336947)

<div class="topic-metadata">

**Author:** [@Disha\_Bodade](https://discuss.elastic.co/u/Disha_Bodade)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 7:28am UTC](https://discuss.elastic.co/t/logstash-http-filter-shows-ruby-exception-nomethoderror-strip-for-nil-class/336947 "2023-06-27T07:28:30Z")

</div>

Hi Team, I am extracting contents of thousands of URLs using http filter. But some urls throws below error which is stopping pipeline. Pipeline worker error, the pipeline will be stopped {:pipeline\_id=\>"new-english-pd…

---

## [Need help in how to rebuild the node\_modules present in kibana source code with code changes](https://discuss.elastic.co/t/need-help-in-how-to-rebuild-the-node-modules-present-in-kibana-source-code-with-code-changes/335934)

<div class="topic-metadata">

**Author:** [@Ashigha\_JR](https://discuss.elastic.co/u/Ashigha_JR)\
**Replies:** 2\
**Last updated:** [June 27, 2023, 6:21am UTC](https://discuss.elastic.co/t/need-help-in-how-to-rebuild-the-node-modules-present-in-kibana-source-code-with-code-changes/335934 "2023-06-27T06:21:19Z")

</div>

I have changed some CSS properties like button color, text color etc.. present inside "kibana-8.1.1/node\_modules/@kbn/ui-shared-deps-npm/shared\_built\_assets/kibana-ui-shared-deps-npm.v8.light.css" file, that changes need…

---

## [Need help to how to customize the theme color of the kibana dashboard](https://discuss.elastic.co/t/need-help-to-how-to-customize-the-theme-color-of-the-kibana-dashboard/335824)

<div class="topic-metadata">

**Author:** [@Ashigha\_JR](https://discuss.elastic.co/u/Ashigha_JR)\
**Replies:** 5\
**Last updated:** [June 27, 2023, 6:20am UTC](https://discuss.elastic.co/t/need-help-to-how-to-customize-the-theme-color-of-the-kibana-dashboard/335824 "2023-06-27T06:20:50Z")

</div>

Is it possible to customize the theme color of the kibana dashboard apart from default light and dark theme. I need to change the kibana dashboard theme color into purple , also need to change the color of the time filt…

---

## [Nested queries that refer to an expression on the parent](https://discuss.elastic.co/t/nested-queries-that-refer-to-an-expression-on-the-parent/336938)

<div class="topic-metadata">

**Author:** [@DaveG](https://discuss.elastic.co/u/DaveG)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 3:11am UTC](https://discuss.elastic.co/t/nested-queries-that-refer-to-an-expression-on-the-parent/336938 "2023-06-27T03:11:20Z")

</div>

Hi All, I wish to write a query on nested data where there are expressions on the parent data as wells as expressions on the nested data all mixed together. For example, get me all the records that have id = 1 and exis…

---

## [.security-7 can't create replicas in elasticsearch 7.17.10](https://discuss.elastic.co/t/security-7-cant-create-replicas-in-elasticsearch-7-17-10/336936)

<div class="topic-metadata">

**Author:** [@Han2](https://discuss.elastic.co/u/Han2)\
**Replies:** 0\
**Last updated:** [June 27, 2023, 2:06am UTC](https://discuss.elastic.co/t/security-7-cant-create-replicas-in-elasticsearch-7-17-10/336936 "2023-06-27T02:06:59Z")

</div>

My cluster statu is yellow ,When i add new node to my cluster I use this order \_cluster/allocation/explain to exlpian this error and i don't know how to do someone can help me? PLZ

---

## [Excluding all fields from object property except for one (4096 byte limit error for large URI)](https://discuss.elastic.co/t/excluding-all-fields-from-object-property-except-for-one-4096-byte-limit-error-for-large-uri/336934)

<div class="topic-metadata">

**Author:** [@Akaash\_Mukherjee](https://discuss.elastic.co/u/Akaash_Mukherjee)\
**Replies:** 4\
**Last updated:** [June 26, 2023, 11:37pm UTC](https://discuss.elastic.co/t/excluding-all-fields-from-object-property-except-for-one-4096-byte-limit-error-for-large-uri/336934 "2023-06-26T23:37:07Z")

</div>

Hi, I'm trying to get ES to return me only currency in the example below in a concise way. The currency field: hits.hits.\_source.attributes.currency For the sake of the example I also have properties like this: hits…

---

## [Converting filebeat message with logstash](https://discuss.elastic.co/t/converting-filebeat-message-with-logstash/336931)

<div class="topic-metadata">

**Author:** [@fizem](https://discuss.elastic.co/u/fizem)\
**Replies:** 1\
**Last updated:** [June 26, 2023, 9:32pm UTC](https://discuss.elastic.co/t/converting-filebeat-message-with-logstash/336931 "2023-06-26T21:32:37Z")

</div>

Hi, I have setup filebeat to parse my API logs and send messages to a centralized logstash cluster. filebeat will collect all the logs with a minimum CPU consumption. logstash can transform the data, define multiple …

---

## [Logs does not show in kibana](https://discuss.elastic.co/t/logs-does-not-show-in-kibana/334519)

<div class="topic-metadata">

**Author:** [@yash2](https://discuss.elastic.co/u/yash2)\
**Replies:** 13\
**Last updated:** [June 26, 2023, 7:54pm UTC](https://discuss.elastic.co/t/logs-does-not-show-in-kibana/334519 "2023-06-26T19:54:18Z")

</div>

Hi - I am having a little trouble pulling the logs to my Elasticsearch; currently, as I am on the main page, from the Discover menu , nothing shows up. I have Winlogbeat and sysmon installed as a service on my Windows ma…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=350)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=352)
