# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=359

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 360

---

## [Free license limitation for MSP](https://discuss.elastic.co/t/free-license-limitation-for-msp/336129)

<div class="topic-metadata">

**Author:** [@Rsinsta](https://discuss.elastic.co/u/Rsinsta)\
**Replies:** 5\
**Last updated:** [June 15, 2023, 7:44pm UTC](https://discuss.elastic.co/t/free-license-limitation-for-msp/336129 "2023-06-15T19:44:44Z")

</div>

Hi, We are a startup/MSP and we would like to provide services with the elastic stack. Is it possible to use the free license for that or do we have to buy a commercial one? Thanks!

---

## [Issues with converting standalone instance to cluster](https://discuss.elastic.co/t/issues-with-converting-standalone-instance-to-cluster/336071)

<div class="topic-metadata">

**Author:** [@111407](https://discuss.elastic.co/u/111407)\
**Replies:** 4\
**Last updated:** [June 15, 2023, 7:11pm UTC](https://discuss.elastic.co/t/issues-with-converting-standalone-instance-to-cluster/336071 "2023-06-15T19:11:03Z")

</div>

Hi, I cannot convert my standalone instance to cluster. Initially, I tried just to copy elastic data dir to new nodes, but after some googling I realized it won't work. Then I just brought up elastic daemon on new nod…

---

## [Number precision for 22 digit plus 6 digit decimal](https://discuss.elastic.co/t/number-precision-for-22-digit-plus-6-digit-decimal/334044)

<div class="topic-metadata">

**Author:** [@satyarajpc](https://discuss.elastic.co/u/satyarajpc)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 5:57pm UTC](https://discuss.elastic.co/t/number-precision-for-22-digit-plus-6-digit-decimal/334044 "2023-06-15T17:57:31Z")

</div>

We've a requirement to store and fetch a BigDecimal value (22digits + 6 decimals) in elasticsearch field. While fetching this below field, We're getting value as exponential notation. We would need it as we posted in b…

---

## [Apply grok pattern based on the log file path](https://discuss.elastic.co/t/apply-grok-pattern-based-on-the-log-file-path/334395)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 40\
**Last updated:** [June 15, 2023, 4:29pm UTC](https://discuss.elastic.co/t/apply-grok-pattern-based-on-the-log-file-path/334395 "2023-06-15T16:29:21Z")

</div>

Hi Here is my logstash config file input { beats { port =\> 5044 } } output { elasticsearch { hosts =\> "http://ip:9200" index =\> "%{type}-%{+YYYY.MM.dd}" user =\> "elastic" password =\> "pwd" } …

---

## [How to migrate elasticsearch to another VM](https://discuss.elastic.co/t/how-to-migrate-elasticsearch-to-another-vm/336120)

<div class="topic-metadata">

**Author:** [@UP\_NEWS](https://discuss.elastic.co/u/UP_NEWS)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 4:01pm UTC](https://discuss.elastic.co/t/how-to-migrate-elasticsearch-to-another-vm/336120 "2023-06-15T16:01:12Z")

</div>

Hello, i have 3 virtual machine in ESXI server nodes datahot&kibana , datawarm, logstash with version 7.14.1 how can i migrate this Virtual Machine with data to another ESXI server with new version of Elastic Thanks …

---

## [Can't see all the value of my field in kibana](https://discuss.elastic.co/t/cant-see-all-the-value-of-my-field-in-kibana/335947)

<div class="topic-metadata">

**Author:** [@Hanni](https://discuss.elastic.co/u/Hanni)\
**Replies:** 6\
**Last updated:** [June 15, 2023, 3:03pm UTC](https://discuss.elastic.co/t/cant-see-all-the-value-of-my-field-in-kibana/335947 "2023-06-15T15:03:06Z")

</div>

Hello, I'm currently working with Kibana. I try to filter my data according to a certain field but I notice that it does not display all the values of this field. just the first 10 values. How can I fix this?

---

## [Highlight does not work correctly?](https://discuss.elastic.co/t/highlight-does-not-work-correctly/336109)

<div class="topic-metadata">

**Author:** [@Nurm](https://discuss.elastic.co/u/Nurm)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 2:47pm UTC](https://discuss.elastic.co/t/highlight-does-not-work-correctly/336109 "2023-06-15T14:47:45Z")

</div>

query = 'Ivan Atamanchuk Ivanovich' highlighter is not working correctly when I put text above, it is just highlighting "Ivan Atamanchuk Ivanovich" ignoring last "ovich", I approximately know why it is not highlightin…

---

## [ES cloud - CA certificates](https://discuss.elastic.co/t/es-cloud-ca-certificates/336085)

<div class="topic-metadata">

**Author:** [@leonid\_fayngold](https://discuss.elastic.co/u/leonid_fayngold)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 1:48pm UTC](https://discuss.elastic.co/t/es-cloud-ca-certificates/336085 "2023-06-15T13:48:39Z")

</div>

Hi, Our team is moving from ES on prem to ES on cloud. I have created ES instance in Azure and I want to send some requests to my Elasticsearch endpoint. I have tried to send add user request however the request is re…

---

## [Get request with query yields result in Firefox, but nowhere else](https://discuss.elastic.co/t/get-request-with-query-yields-result-in-firefox-but-nowhere-else/334422)

<div class="topic-metadata">

**Author:** [@Fiothiel](https://discuss.elastic.co/u/Fiothiel)\
**Replies:** 7\
**Last updated:** [June 15, 2023, 2:33pm UTC](https://discuss.elastic.co/t/get-request-with-query-yields-result-in-firefox-but-nowhere-else/334422 "2023-06-15T14:33:32Z")

</div>

Hello, I have a rather strange issue I would love to get some help with. I am running Elastic Search 7.7 locally and I'm trying to implement a very basic search call to it. When I call it without any query parameters i…

---

## [Voting-only node in azure](https://discuss.elastic.co/t/voting-only-node-in-azure/336108)

<div class="topic-metadata">

**Author:** [@Shushan\_Nigoyan](https://discuss.elastic.co/u/Shushan_Nigoyan)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 2:19pm UTC](https://discuss.elastic.co/t/voting-only-node-in-azure/336108 "2023-06-15T14:19:33Z")

</div>

Can I use azure storage account as a voting-only node in my elasticsearch cluster? My Cluster is self managed and has 4 nodes(2 in DC1 and 2 in DC2), fifth will be in azure as witness.

---

## [How can I identify new elements in an array via Logstash/Elasticsearch?](https://discuss.elastic.co/t/how-can-i-identify-new-elements-in-an-array-via-logstash-elasticsearch/336105)

<div class="topic-metadata">

**Author:** [@SamuelSMendes](https://discuss.elastic.co/u/SamuelSMendes)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 2:01pm UTC](https://discuss.elastic.co/t/how-can-i-identify-new-elements-in-an-array-via-logstash-elasticsearch/336105 "2023-06-15T14:01:38Z")

</div>

For the context, I have an API request that returns a few devices and the apps installed in them. here is an example of what the result looks like in the elasticsearch: "hits": \[ { "\_index": "devices\_xxxx", "\_…

---

## [Can't get rid of warning "this node is locked into cluster UUID but \[cluster.initial\_master\_nodes\] is set to \[Z56EEW81\]; remove this setting to avoid possible data loss caused by subsequent cluster bootstrap attempts"](https://discuss.elastic.co/t/cant-get-rid-of-warning-this-node-is-locked-into-cluster-uuid-but-cluster-initial-master-nodes-is-set-to-z56eew81-remove-this-setting-to-avoid-possible-data-loss-caused-by-subsequent-cluster-bootstrap-attempts/335889)

<div class="topic-metadata">

**Author:** [@CodeTradition](https://discuss.elastic.co/u/CodeTradition)\
**Replies:** 4\
**Last updated:** [June 15, 2023, 1:57pm UTC](https://discuss.elastic.co/t/cant-get-rid-of-warning-this-node-is-locked-into-cluster-uuid-but-cluster-initial-master-nodes-is-set-to-z56eew81-remove-this-setting-to-avoid-possible-data-loss-caused-by-subsequent-cluster-bootstrap-attempts/335889 "2023-06-15T13:57:15Z")

</div>

Hello all, I am using Elasticsearch v8.8.0 on a Windows Server 2019. Below is my Elasticsearch configuration file "elasticsearch.yml" : cluster.name: MyCOMPANY-R7 node.name: ${HOSTNAME} node.roles : \[master, data, ing…

---

## [Response time vs took](https://discuss.elastic.co/t/response-time-vs-took/336065)

<div class="topic-metadata">

**Author:** [@Faisal\_Afzal](https://discuss.elastic.co/u/Faisal_Afzal)\
**Replies:** 3\
**Last updated:** [June 15, 2023, 1:50pm UTC](https://discuss.elastic.co/t/response-time-vs-took/336065 "2023-06-15T13:50:46Z")

</div>

Elastic search performing very slow it will almost took 3 seconds to return a response, however when i look to took attribute it's within 100 ms. Not sure why response time is higher? and what does it mean?.

---

## [Security: Machine Learning jobs stop](https://discuss.elastic.co/t/security-machine-learning-jobs-stop/335851)

<div class="topic-metadata">

**Author:** [@hermlam](https://discuss.elastic.co/u/hermlam)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 1:15pm UTC](https://discuss.elastic.co/t/security-machine-learning-jobs-stop/335851 "2023-06-15T13:15:14Z")

</div>

Hi, Some ML jobs, provided with the standard rules stop after a while. For example: " \`\`\` Machine learning job(s) are not started: job id: "rare\_destination\_country", job name: "Network Traffic to Rare Destination Coun…

---

## [Collecting logs from Azure EH](https://discuss.elastic.co/t/collecting-logs-from-azure-eh/336088)

<div class="topic-metadata">

**Author:** [@wedkarz014](https://discuss.elastic.co/u/wedkarz014)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 12:05pm UTC](https://discuss.elastic.co/t/collecting-logs-from-azure-eh/336088 "2023-06-15T12:05:00Z")

</div>

Hello, My question is, which tool should i use to collect data from Eh, logstash: Azure Event Hubs plugin | Logstash Reference \[8.8\] | Elastic or filebeat: Azure eventhub input | Filebeat Reference \[8.8\] | Elastic ? Whi…

---

## [8 - Anomaly Hunt](https://discuss.elastic.co/t/8-anomaly-hunt/336086)

<div class="topic-metadata">

**Author:** [@peat](https://discuss.elastic.co/u/peat)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 11:46am UTC](https://discuss.elastic.co/t/8-anomaly-hunt/336086 "2023-06-15T11:46:18Z")

</div>

I am having trouble with the Data Analysis with Kibana 24hrs course on module 8. I am asked to make an Index Pattern from the Elasticlogs data set, the question doesn't mention time, as it often does, I think it leaves …

---

## [Master not discovered, even though quorum is fulfilled](https://discuss.elastic.co/t/master-not-discovered-even-though-quorum-is-fulfilled/336079)

<div class="topic-metadata">

**Author:** [@kley](https://discuss.elastic.co/u/kley)\
**Replies:** 2\
**Last updated:** [June 15, 2023, 11:39am UTC](https://discuss.elastic.co/t/master-not-discovered-even-though-quorum-is-fulfilled/336079 "2023-06-15T11:39:13Z")

</div>

Hey! So, I have this 12 node cluster with elastic 7.17.5 running. During the upgrade process to this version the cluster had issues finding the master node: master not discovered or elected yet, an election requires at…

---

## [DORA kind of metrics](https://discuss.elastic.co/t/dora-kind-of-metrics/336074)

<div class="topic-metadata">

**Author:** [@hegdeshashi](https://discuss.elastic.co/u/hegdeshashi)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 9:50am UTC](https://discuss.elastic.co/t/dora-kind-of-metrics/336074 "2023-06-15T09:50:17Z")

</div>

Hi, Is there option to add DORA kind of metrics ? if anyone enabled, can you provide me more inputs..

---

## [No Login Page to Access Kibana](https://discuss.elastic.co/t/no-login-page-to-access-kibana/336070)

<div class="topic-metadata">

**Author:** [@jact](https://discuss.elastic.co/u/jact)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 9:09am UTC](https://discuss.elastic.co/t/no-login-page-to-access-kibana/336070 "2023-06-15T09:09:51Z")

</div>

Hi, I installed Elastic Logstash and Kibana in 3 diferent server. everything running well. when i access kibana web, directly in the dashboard without a login page. How to add login page in kibana? I have enabled th…

---

## [Search.max\_async\_search\_response\_size](https://discuss.elastic.co/t/search-max-async-search-response-size/336060)

<div class="topic-metadata">

**Author:** [@pavlod](https://discuss.elastic.co/u/pavlod)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 8:39am UTC](https://discuss.elastic.co/t/search-max-async-search-response-size/336060 "2023-06-15T08:39:09Z")

</div>

Hi! I got the mistake: Can't store an async search response larger than \[10485760\] bytes. This limit can be set by changing the \[search.max\_async\_search\_response\_size\] setting. I have a Deployment in Elastic.co (Elast…

---

## [Does versions of logstash\>7.3.0 support addKeyValue() in the slf4j fluent API?](https://discuss.elastic.co/t/does-versions-of-logstash-7-3-0-support-addkeyvalue-in-the-slf4j-fluent-api/336058)

<div class="topic-metadata">

**Author:** [@Steinar\_Bang](https://discuss.elastic.co/u/Steinar_Bang)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 8:23am UTC](https://discuss.elastic.co/t/does-versions-of-logstash-7-3-0-support-addkeyvalue-in-the-slf4j-fluent-api/336058 "2023-06-15T08:23:38Z")

</div>

I just discovered slf4j's fluent API yesterday, and tried to use it. Unfortunately the key/value pairs I added with addKeyValue() in slf4j 2.0.7/logstash 7.3.0 were lost from the output. I had hoped for at least the de…

---

## [Unable to launch Kibana Portal](https://discuss.elastic.co/t/unable-to-launch-kibana-portal/336056)

<div class="topic-metadata">

**Author:** [@rohit.tps123](https://discuss.elastic.co/u/rohit.tps123)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 8:19am UTC](https://discuss.elastic.co/t/unable-to-launch-kibana-portal/336056 "2023-06-15T08:19:38Z")

</div>

Hi I am not able to launch the Kibana portal. although I all the 3 ELK containers are up . I have check the logs, no error is showing up. Can anyone please help. Attaching the log files Kibana Logs sudo podman log…

---

## [Elastic Agent Cloudwatch is not fetching all data](https://discuss.elastic.co/t/elastic-agent-cloudwatch-is-not-fetching-all-data/336047)

<div class="topic-metadata">

**Author:** [@slogger](https://discuss.elastic.co/u/slogger)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 7:21am UTC](https://discuss.elastic.co/t/elastic-agent-cloudwatch-is-not-fetching-all-data/336047 "2023-06-15T07:21:11Z")

</div>

Hello I have our elastic agents collecting metrics about a MSK Kafka cluster using the following config: - namespace: AWS/Kafka And I am filtering by eu-central-1 Thats it. It used to work 100%, but now it is not pu…

---

## [Exists does not seem to work for Object type fields](https://discuss.elastic.co/t/exists-does-not-seem-to-work-for-object-type-fields/336042)

<div class="topic-metadata">

**Author:** [@Vivek\_Burman](https://discuss.elastic.co/u/Vivek_Burman)\
**Replies:** 2\
**Last updated:** [June 15, 2023, 6:59am UTC](https://discuss.elastic.co/t/exists-does-not-seem-to-work-for-object-type-fields/336042 "2023-06-15T06:59:26Z")

</div>

Hi, so my query looks like this { "query": { "bool": { "must\_not": \[ { "exists": { "field": "custom\_fields" } …

---

## [If I omit an field from Document can i still search documents where field is not present](https://discuss.elastic.co/t/if-i-omit-an-field-from-document-can-i-still-search-documents-where-field-is-not-present/336037)

<div class="topic-metadata">

**Author:** [@Vivek\_Burman](https://discuss.elastic.co/u/Vivek_Burman)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 5:07am UTC](https://discuss.elastic.co/t/if-i-omit-an-field-from-document-can-i-still-search-documents-where-field-is-not-present/336037 "2023-06-15T05:07:01Z")

</div>

Hi @Christian\_Dahlqvist, so I re mentioned omit the field from document. So my query regarding this is can I perform searches like: Give me the list / aggregate of documents where a field is not present?

---

## [Remove of Twitter as an authentication method on 1st July 2023](https://discuss.elastic.co/t/remove-of-twitter-as-an-authentication-method-on-1st-july-2023/336029)

<div class="topic-metadata">

**Author:** [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 2:39am UTC](https://discuss.elastic.co/t/remove-of-twitter-as-an-authentication-method-on-1st-july-2023/336029 "2023-06-15T02:39:44Z")

</div>

We are deprecating Twitter authentication as of the 1st July 2023. If you are using this method you two immediate options available; Use Google or GitHub authentication by heading to your account and connecting either…

---

## [Enriching log data with database or other sources](https://discuss.elastic.co/t/enriching-log-data-with-database-or-other-sources/336016)

<div class="topic-metadata">

**Author:** [@Tomahawk](https://discuss.elastic.co/u/Tomahawk)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 2:27am UTC](https://discuss.elastic.co/t/enriching-log-data-with-database-or-other-sources/336016 "2023-06-15T02:27:02Z")

</div>

Hey, I could use some help please. I have two questions I have log data coming in (Log4J, Log4Net etc etc) and this contains a user ID, for example “12345” I want to enrich each log line with more information about th…

---

## [seqNo generation strategy - seqNo question](https://discuss.elastic.co/t/seqno-generation-strategy-seqno-question/336027)

<div class="topic-metadata">

**Author:** [@SnowFlakeLeaf](https://discuss.elastic.co/u/SnowFlakeLeaf)\
**Replies:** 0\
**Last updated:** [June 15, 2023, 2:06am UTC](https://discuss.elastic.co/t/seqno-generation-strategy-seqno-question/336027 "2023-06-15T02:06:24Z")

</div>

The source of the problem is that we request in multiple concurrent modification in production in a lot of the same document VersionConflictEngineException, And we didn't include if\_seq\_no in the request, so we wanted to…

---

## [How to calculate the user growth rate in Kibana?](https://discuss.elastic.co/t/how-to-calculate-the-user-growth-rate-in-kibana/335945)

<div class="topic-metadata">

**Author:** [@Amber](https://discuss.elastic.co/u/Amber)\
**Replies:** 2\
**Last updated:** [June 15, 2023, 1:12am UTC](https://discuss.elastic.co/t/how-to-calculate-the-user-growth-rate-in-kibana/335945 "2023-06-15T01:12:05Z")

</div>

How can I make a growth rate from Kibana, searched for all the posted discuss, I find it could be implemented in TSVB, but I still cannot figure out how to make it... Here is my idea: I want to make day as the inter…

---

## [How to create multiple separate index using single conf file in logstash through filebeat?](https://discuss.elastic.co/t/how-to-create-multiple-separate-index-using-single-conf-file-in-logstash-through-filebeat/335949)

<div class="topic-metadata">

**Author:** [@KRISHNA\_KUMAR1](https://discuss.elastic.co/u/KRISHNA_KUMAR1)\
**Replies:** 1\
**Last updated:** [June 15, 2023, 12:49am UTC](https://discuss.elastic.co/t/how-to-create-multiple-separate-index-using-single-conf-file-in-logstash-through-filebeat/335949 "2023-06-15T00:49:24Z")

</div>

Hi, I want to create separate indices based on the condition of the logs, for example if my log consist of api1 then it should create index named "api1" and if it consist api2 then create another index named "api2". Pl…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=358)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=360)
