# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=363

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 364

---

## [Plugin in Elasticsearch to find the term Dictionary](https://discuss.elastic.co/t/plugin-in-elasticsearch-to-find-the-term-dictionary/335630)

<div class="topic-metadata">

**Author:** [@Atomic\_Structure](https://discuss.elastic.co/u/Atomic_Structure)\
**Replies:** 0\
**Last updated:** [June 9, 2023, 11:47am UTC](https://discuss.elastic.co/t/plugin-in-elasticsearch-to-find-the-term-dictionary/335630 "2023-06-09T11:47:53Z")

</div>

I am writing a plugin to find the term dictionary. It creates a new REST endpoint. I am not able to get leafreader, any idea how could I proceed. By getting the leafreader I could directly use it to get terms.

---

## [Connect Kibana with Elastic running with self-signed certifinate using ECK](https://discuss.elastic.co/t/connect-kibana-with-elastic-running-with-self-signed-certifinate-using-eck/335628)

<div class="topic-metadata">

**Author:** [@Lathi](https://discuss.elastic.co/u/Lathi)\
**Replies:** 0\
**Last updated:** [June 9, 2023, 11:41am UTC](https://discuss.elastic.co/t/connect-kibana-with-elastic-running-with-self-signed-certifinate-using-eck/335628 "2023-06-09T11:41:04Z")

</div>

Hi All, We have recently replaced the default certificate in Elastic with self-signed one using a Kubenetes secret but now Kibana is not able to connect with Elastic due to this. What I found on web is to add the same …

---

## [Kibana can't work with Elasticsearch explicit date format as input](https://discuss.elastic.co/t/kibana-cant-work-with-elasticsearch-explicit-date-format-as-input/334941)

<div class="topic-metadata">

**Author:** [@ggomez](https://discuss.elastic.co/u/ggomez)\
**Replies:** 5\
**Last updated:** [June 9, 2023, 11:27am UTC](https://discuss.elastic.co/t/kibana-cant-work-with-elasticsearch-explicit-date-format-as-input/334941 "2023-06-09T11:27:56Z")

</div>

Hello. In the company that I work for, we are currently using Elasticsearch 8.6.2 + Kibana 8.6.2 (both with authentication enabled) for create a custom dashboard where we are showing some metrics that we need. As the T…

---

## [Connecting Filebeat to and ECK from outside the K8s with ingress](https://discuss.elastic.co/t/connecting-filebeat-to-and-eck-from-outside-the-k8s-with-ingress/335526)

<div class="topic-metadata">

**Author:** [@Carlos\_T](https://discuss.elastic.co/u/Carlos_T)\
**Replies:** 2\
**Last updated:** [June 9, 2023, 10:50am UTC](https://discuss.elastic.co/t/connecting-filebeat-to-and-eck-from-outside-the-k8s-with-ingress/335526 "2023-06-09T10:50:07Z")

</div>

Good morning. From a Linux server out of the K8s where my ES is running, Im trying to setup the filebeat so it connects to the Service using the ingress. If from the linux where I run the filebeat I run a curl to check…

---

## [Kibana - TypeError: Failed to fetch](https://discuss.elastic.co/t/kibana-typeerror-failed-to-fetch/335612)

<div class="topic-metadata">

**Author:** [@YaroslavSh](https://discuss.elastic.co/u/YaroslavSh)\
**Replies:** 0\
**Last updated:** [June 9, 2023, 10:10am UTC](https://discuss.elastic.co/t/kibana-typeerror-failed-to-fetch/335612 "2023-06-09T10:10:45Z")

</div>

Hi. I cannot find referenced anywhere. I was wondering if anyone has come across this? An internal server error occurred. Version: 7.17.7 Build: 47059 Error at fetch\_Fetch.fetchResponse (https://development-kibana.…

---

## [How to limit logs ingestion into Elastic?](https://discuss.elastic.co/t/how-to-limit-logs-ingestion-into-elastic/335527)

<div class="topic-metadata">

**Author:** [@irshadalam](https://discuss.elastic.co/u/irshadalam)\
**Replies:** 4\
**Last updated:** [June 9, 2023, 9:40am UTC](https://discuss.elastic.co/t/how-to-limit-logs-ingestion-into-elastic/335527 "2023-06-09T09:40:55Z")

</div>

How to limit logs ingestion into Elastic ?

---

## [What can go wrong in ES cluster without replicas](https://discuss.elastic.co/t/what-can-go-wrong-in-es-cluster-without-replicas/335595)

<div class="topic-metadata">

**Author:** [@Don\_Boscow](https://discuss.elastic.co/u/Don_Boscow)\
**Replies:** 6\
**Last updated:** [June 9, 2023, 9:19am UTC](https://discuss.elastic.co/t/what-can-go-wrong-in-es-cluster-without-replicas/335595 "2023-06-09T09:19:03Z")

</div>

Hi, the typical paradigm in ES is that sharding involves replica nodes, which serve two main purposes - act as a backup, so that in case one shard or one node is down, its replica continues to provide the same data until…

---

## [Single Elasticsearch node abruptly ran out of disk space (possibly due to a giant temp file)](https://discuss.elastic.co/t/single-elasticsearch-node-abruptly-ran-out-of-disk-space-possibly-due-to-a-giant-temp-file/335515)

<div class="topic-metadata">

**Author:** [@username11](https://discuss.elastic.co/u/username11)\
**Replies:** 5\
**Last updated:** [June 9, 2023, 6:21am UTC](https://discuss.elastic.co/t/single-elasticsearch-node-abruptly-ran-out-of-disk-space-possibly-due-to-a-giant-temp-file/335515 "2023-06-09T06:21:30Z")

</div>

Hi. I have recently observed that one of our Elasticsearch nodes ran out of disk space and fell out of the cluster. Upon investigating it, I found several things that are very, very weird about this situation: I haven'…

---

## [Elasticsearch user dictionary space include](https://discuss.elastic.co/t/elasticsearch-user-dictionary-space-include/335588)

<div class="topic-metadata">

**Author:** [@dms6978](https://discuss.elastic.co/u/dms6978)\
**Replies:** 0\
**Last updated:** [June 9, 2023, 6:07am UTC](https://discuss.elastic.co/t/elasticsearch-user-dictionary-space-include/335588 "2023-06-09T06:07:15Z")

</div>

Hello. I have problem with Nori user dictionary. I want to register words that include space, but it's not working. I tried to register in the dictionary by including words in double quotes or even in small quotes, but…

---

## [Kibana uses Client Side rendering or Server Side rendereing](https://discuss.elastic.co/t/kibana-uses-client-side-rendering-or-server-side-rendereing/335586)

<div class="topic-metadata">

**Author:** [@Suleman\_Ahmed](https://discuss.elastic.co/u/Suleman_Ahmed)\
**Replies:** 0\
**Last updated:** [June 9, 2023, 5:34am UTC](https://discuss.elastic.co/t/kibana-uses-client-side-rendering-or-server-side-rendereing/335586 "2023-06-09T05:34:46Z")

</div>

I am new to kibana and trying to understand that when highlight or search some text from logs, Kibana uses server side react rendering or client side react rendering and/or is there any way to reduce load on server side …

---

## [Removing extra characters in Grok](https://discuss.elastic.co/t/removing-extra-characters-in-grok/335375)

<div class="topic-metadata">

**Author:** [@Datt\_Mamon](https://discuss.elastic.co/u/Datt_Mamon)\
**Replies:** 5\
**Last updated:** [June 8, 2023, 9:27pm UTC](https://discuss.elastic.co/t/removing-extra-characters-in-grok/335375 "2023-06-08T21:27:11Z")

</div>

Hello, I am converting an original windows event log from json to syslog at the Logstash server. Here is a partial output: \<13\>May 31 14:27:55 {"name":'TEST'} LOGSTASH\[-\]: 2023-05-31T14:27:55.283Z {name=TEST} Permissi…

---

## [Logstash, remove all fields that contain a specific value](https://discuss.elastic.co/t/logstash-remove-all-fields-that-contain-a-specific-value/335569)

<div class="topic-metadata">

**Author:** [@kaismax](https://discuss.elastic.co/u/kaismax)\
**Replies:** 1\
**Last updated:** [June 8, 2023, 9:21pm UTC](https://discuss.elastic.co/t/logstash-remove-all-fields-that-contain-a-specific-value/335569 "2023-06-08T21:21:54Z")

</div>

how to remove all fields that contain a specific value or reg expression

---

## [Error using BulkEditAction\[\] object](https://discuss.elastic.co/t/error-using-bulkeditaction-object/335252)

<div class="topic-metadata">

**Author:** [@M\_S](https://discuss.elastic.co/u/M_S)\
**Replies:** 5\
**Last updated:** [June 8, 2023, 8:59pm UTC](https://discuss.elastic.co/t/error-using-bulkeditaction-object/335252 "2023-06-08T20:59:19Z")

</div>

Hi , I am using Elasticsearch - 8.7.1 and I am trying to update my security rules in EDR with a email action in bulk. I have tried the following -- PUT api/detection\_engine/rules/\_bulk\_action { "action": "edit", "edi…

---

## [Display data in 2nd index based dashboard based on 1st index value](https://discuss.elastic.co/t/display-data-in-2nd-index-based-dashboard-based-on-1st-index-value/335525)

<div class="topic-metadata">

**Author:** [@RahulWagh](https://discuss.elastic.co/u/RahulWagh)\
**Replies:** 1\
**Last updated:** [June 8, 2023, 8:29pm UTC](https://discuss.elastic.co/t/display-data-in-2nd-index-based-dashboard-based-on-1st-index-value/335525 "2023-06-08T20:29:56Z")

</div>

Hi, I have first index based on which filter control is created. It contains 1st field year-month and 2nd field contains date based on year-month selection. I have created 2nd index that contains completely different d…

---

## [ELSER - Elastic Learned Sparse EncodeR model is unable using Trial License](https://discuss.elastic.co/t/elser-elastic-learned-sparse-encoder-model-is-unable-using-trial-license/334643)

<div class="topic-metadata">

**Author:** [@Rahul\_Agarwal1](https://discuss.elastic.co/u/Rahul_Agarwal1)\
**Replies:** 8\
**Last updated:** [June 8, 2023, 7:21pm UTC](https://discuss.elastic.co/t/elser-elastic-learned-sparse-encoder-model-is-unable-using-trial-license/334643 "2023-06-08T19:21:18Z")

</div>

I want to play with the new ELSER model released by Elasticsearch in new release 8.8. I tried installing Elasticsearch 8.8 in my local system and tried with the trial license but the model is not available under: Stack M…

---

## [Can someone guide me where can I find prometheus exporter for Elasticsearch version 7.17.10](https://discuss.elastic.co/t/can-someone-guide-me-where-can-i-find-prometheus-exporter-for-elasticsearch-version-7-17-10/335549)

<div class="topic-metadata">

**Author:** [@Jasmine\_Blooms](https://discuss.elastic.co/u/Jasmine_Blooms)\
**Replies:** 2\
**Last updated:** [June 8, 2023, 5:38pm UTC](https://discuss.elastic.co/t/can-someone-guide-me-where-can-i-find-prometheus-exporter-for-elasticsearch-version-7-17-10/335549 "2023-06-08T17:38:50Z")

</div>

Hi All, We are trying to integrate prometheus exporter plugin in elasticsearch for health and monitoring and I could find Releases · vvanholl/elasticsearch-prometheus-exporter · GitHub which has 7.17.7 as the latest ver…

---

## [I cant add an agent](https://discuss.elastic.co/t/i-cant-add-an-agent/335547)

<div class="topic-metadata">

**Author:** [@Charnpreet\_Singh](https://discuss.elastic.co/u/Charnpreet_Singh)\
**Replies:** 1\
**Last updated:** [June 8, 2023, 3:41pm UTC](https://discuss.elastic.co/t/i-cant-add-an-agent/335547 "2023-06-08T15:41:38Z")

</div>

I am trying to enroll agent onto my fleet server, the server is live but whenever I try to connect my agent it doesn't work. I keep encountering the same error ,{"log.level":"warn","@timestamp":"2023-06-06T19:28:55.258+…

---

## [Index\_not\_found\_exception Root causes: index\_not\_found\_exception: no such index \[apm-\*\]](https://discuss.elastic.co/t/index-not-found-exception-root-causes-index-not-found-exception-no-such-index-apm/335463)

<div class="topic-metadata">

**Author:** [@zx8086](https://discuss.elastic.co/u/zx8086)\
**Replies:** 6\
**Last updated:** [June 8, 2023, 3:25pm UTC](https://discuss.elastic.co/t/index-not-found-exception-root-causes-index-not-found-exception-no-such-index-apm/335463 "2023-06-08T15:25:44Z")

</div>

I get this error in Kibana and cannot trace the root or find a simple resolution. Checked all the views.... thinking of just creating it, but would like to know where it is trying to be called. Using traces-apm-default f…

---

## [How to change elasticsearch.slowlog.id?](https://discuss.elastic.co/t/how-to-change-elasticsearch-slowlog-id/335184)

<div class="topic-metadata">

**Author:** [@Ghouneim](https://discuss.elastic.co/u/Ghouneim)\
**Replies:** 3\
**Last updated:** [June 8, 2023, 3:25pm UTC](https://discuss.elastic.co/t/how-to-change-elasticsearch-slowlog-id/335184 "2023-06-08T15:25:07Z")

</div>

Hello, I want to be able to track the user who send the \_bulk request for indexing some data so I am trying to use X-Opaque-Id in bulk requests to be displayed in \*\_index\_indexing\_slowlog.json but I always get a differe…

---

## [Increased memory requirements for geo search queries in Elasticsearch 8](https://discuss.elastic.co/t/increased-memory-requirements-for-geo-search-queries-in-elasticsearch-8/334594)

<div class="topic-metadata">

**Author:** [@Tomas\_Bartek](https://discuss.elastic.co/u/Tomas_Bartek)\
**Replies:** 15\
**Last updated:** [June 8, 2023, 2:33pm UTC](https://discuss.elastic.co/t/increased-memory-requirements-for-geo-search-queries-in-elasticsearch-8/334594 "2023-06-08T14:33:30Z")

</div>

After upgrading from Elasticsearch 7.17.10 to Elasticsearch 8.7.1, our geosearch workloads started to hit memory circuitbreaker leading to the unstable cluster (cluster rejecting requests which leads to degradation of …

---

## [Reverse word search in Elastic](https://discuss.elastic.co/t/reverse-word-search-in-elastic/334173)

<div class="topic-metadata">

**Author:** [@Rakhshunda\_Noorein\_J](https://discuss.elastic.co/u/Rakhshunda_Noorein_J)\
**Replies:** 7\
**Last updated:** [May 31, 2023, 10:09am UTC](https://discuss.elastic.co/t/reverse-word-search-in-elastic/334173 "2023-05-31T10:09:32Z")

</div>

Hello, I want to search words in reverse also in Elasticsearch. for Example - "Tpp Info" and "Info Tpp" should give the same result. while in my db the document present is "Tpp Infotech" in the field title. My query is…

---

## [Reindexing using Java Client - What happens when one or both of the index do not exist](https://discuss.elastic.co/t/reindexing-using-java-client-what-happens-when-one-or-both-of-the-index-do-not-exist/335505)

<div class="topic-metadata">

**Author:** [@sanskarfc](https://discuss.elastic.co/u/sanskarfc)\
**Replies:** 5\
**Last updated:** [June 8, 2023, 10:06am UTC](https://discuss.elastic.co/t/reindexing-using-java-client-what-happens-when-one-or-both-of-the-index-do-not-exist/335505 "2023-06-08T10:06:24Z")

</div>

What happens when one or both of the index do not exist if we do reindexing using Java Client? When I tested on local, it completes successfully without throwing exception. How does one test if an index already exists o…

---

## [Problem "filter on maximum of timestamp"](https://discuss.elastic.co/t/problem-filter-on-maximum-of-timestamp/335518)

<div class="topic-metadata">

**Author:** [@elteraxya](https://discuss.elastic.co/u/elteraxya)\
**Replies:** 2\
**Last updated:** [June 8, 2023, 9:37am UTC](https://discuss.elastic.co/t/problem-filter-on-maximum-of-timestamp/335518 "2023-06-08T09:37:45Z")

</div>

Hello everyone, I'd like to tell you about my problem. I have data coming up every day with logstash on my kibana, this data comes up either "ok" or "other" in a "status" field with the @timestamp of the day. I'd like t…

---

## [Elastic agent](https://discuss.elastic.co/t/elastic-agent/335360)

<div class="topic-metadata">

**Author:** [@kafikone](https://discuss.elastic.co/u/kafikone)\
**Replies:** 1\
**Last updated:** [June 8, 2023, 9:28am UTC](https://discuss.elastic.co/t/elastic-agent/335360 "2023-06-08T09:28:56Z")

</div>

J'ai deployé elasticsearch,kibana et logstash sur une machine virtuel CentOS 7, tout fonctionne correctement. puis j'ai créé un serveur fleet et installé un agent elastic sur une Vm windows 11. Le satatut de mon agent es…

---

## [There is a problem with installing elastic agent 8.7.1 on Windows Server](https://discuss.elastic.co/t/there-is-a-problem-with-installing-elastic-agent-8-7-1-on-windows-server/335517)

<div class="topic-metadata">

**Author:** [@xqaiviwjxzw](https://discuss.elastic.co/u/xqaiviwjxzw)\
**Replies:** 2\
**Last updated:** [June 8, 2023, 9:24am UTC](https://discuss.elastic.co/t/there-is-a-problem-with-installing-elastic-agent-8-7-1-on-windows-server/335517 "2023-06-08T09:24:03Z")

</div>

After installing elastic agent 8.7.1 on Windows Server 2016 Standard, there is no file.path related information in the log. What is the reason?Hope to reply and help, thank you. endpoint.log show： "message":"AgentCo…

---

## [Select data based on timestamp](https://discuss.elastic.co/t/select-data-based-on-timestamp/335496)

<div class="topic-metadata">

**Author:** [@laurijssen](https://discuss.elastic.co/u/laurijssen)\
**Replies:** 1\
**Last updated:** [June 8, 2023, 9:22am UTC](https://discuss.elastic.co/t/select-data-based-on-timestamp/335496 "2023-06-08T09:22:34Z")

</div>

Im trying to select data in a timestamp range (plus somie more criteria: @timestamp: \[ "2023-06-07T:07:00:00" TO "2023-06-07T09:00:00" \] but this gives the error: Expected AND, OR, end of input, whitespace but """ fou…

---

## [How to read the log file continuously and make it as key value in elastic UI](https://discuss.elastic.co/t/how-to-read-the-log-file-continuously-and-make-it-as-key-value-in-elastic-ui/335521)

<div class="topic-metadata">

**Author:** [@subash\_k](https://discuss.elastic.co/u/subash_k)\
**Replies:** 0\
**Last updated:** [June 8, 2023, 9:10am UTC](https://discuss.elastic.co/t/how-to-read-the-log-file-continuously-and-make-it-as-key-value-in-elastic-ui/335521 "2023-06-08T09:10:34Z")

</div>

Hi, How can i read the log file continuously and make it as readable in elastic UI, Below example is sample log. I tried with grok but it's not helping that much before few fields rolling in between lines (few log line …

---

## [Compatible s3 plugin for my ES](https://discuss.elastic.co/t/compatible-s3-plugin-for-my-es/335510)

<div class="topic-metadata">

**Author:** [@EshaSingh32000](https://discuss.elastic.co/u/EshaSingh32000)\
**Replies:** 1\
**Last updated:** [June 8, 2023, 7:34am UTC](https://discuss.elastic.co/t/compatible-s3-plugin-for-my-es/335510 "2023-06-08T07:34:49Z")

</div>

Hello, My elasticsearch version is elasticsearch -6.4.2-1, what would be suitable s3 plugin for my es, as 6.4.3 version is not compatible with my es, please suggest.

---

## [Generate service token button does not work](https://discuss.elastic.co/t/generate-service-token-button-does-not-work/335458)

<div class="topic-metadata">

**Author:** [@Marcos\_Ivan\_Robles\_H](https://discuss.elastic.co/u/Marcos_Ivan_Robles_H)\
**Replies:** 0\
**Last updated:** [June 7, 2023, 6:06pm UTC](https://discuss.elastic.co/t/generate-service-token-button-does-not-work/335458 "2023-06-07T18:06:02Z")

</div>

If you are asking about a problem you are experiencing, please use the following template, as it will help us help you. If you have a different problem, please delete all of this text :slight\_smile: TIP 1: select at lea…

---

## [Failed to start Elasticsearch 7.11.2](https://discuss.elastic.co/t/failed-to-start-elasticsearch-7-11-2/334680)

<div class="topic-metadata">

**Author:** [@Nik1](https://discuss.elastic.co/u/Nik1)\
**Replies:** 35\
**Last updated:** [June 8, 2023, 5:43am UTC](https://discuss.elastic.co/t/failed-to-start-elasticsearch-7-11-2/334680 "2023-06-08T05:43:28Z")

</div>

Elasticsearch service is not starting on the ubuntu machine. Getting the below error. Anybody having idea? ~# systemctl start elasticsearch Job for elasticsearch.service failed because the control process exited with e…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=362)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=364)
