# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=374

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 375

---

## [Micrometer metrics not showing on Kibana](https://discuss.elastic.co/t/micrometer-metrics-not-showing-on-kibana/334050)

<div class="topic-metadata">

**Author:** [@missael.denadai](https://discuss.elastic.co/u/missael.denadai)\
**Replies:** 2\
**Last updated:** [May 23, 2023, 5:15pm UTC](https://discuss.elastic.co/t/micrometer-metrics-not-showing-on-kibana/334050 "2023-05-23T17:15:35Z")

</div>

Hello, everyone. We are trying to make our Micronaut app push metrics to our APM server without using a Java agent. For that we are using this Elasticsearch Registry as the Micrometer metrics reporter. This lib first c…

---

## [Find 2 following ES entry](https://discuss.elastic.co/t/find-2-following-es-entry/334137)

<div class="topic-metadata">

**Author:** [@Kim2000](https://discuss.elastic.co/u/Kim2000)\
**Replies:** 0\
**Last updated:** [May 23, 2023, 2:57pm UTC](https://discuss.elastic.co/t/find-2-following-es-entry/334137 "2023-05-23T14:57:02Z")

</div>

Hi, i have seen some info online about this and search about entity centric event but I can't figure out how to implement all of this. I am a newbie in the field. I am working with logstash and winlogbeat. I want to se…

---

## [Runtime Field Intermittently Working?](https://discuss.elastic.co/t/runtime-field-intermittently-working/334052)

<div class="topic-metadata">

**Author:** [@wwalker](https://discuss.elastic.co/u/wwalker)\
**Replies:** 1\
**Last updated:** [May 23, 2023, 2:56pm UTC](https://discuss.elastic.co/t/runtime-field-intermittently-working/334052 "2023-05-23T14:56:32Z")

</div>

I've configured a runtime field in Kibana 8.7.1 under index template and named it drive.used emit(doc\['drive.capacity'\].value - doc\['drive.free'\].value) However, looking in Discover, the field doesn't always show up: …

---

## [Heartbeat Uptime Email Alert](https://discuss.elastic.co/t/heartbeat-uptime-email-alert/334126)

<div class="topic-metadata">

**Author:** [@Jivraj\_Dahake](https://discuss.elastic.co/u/Jivraj_Dahake)\
**Replies:** 1\
**Last updated:** [May 23, 2023, 2:42pm UTC](https://discuss.elastic.co/t/heartbeat-uptime-email-alert/334126 "2023-05-23T14:42:50Z")

</div>

I have given 2 URLs in inline heartbeat monitor and in Uptime dashboard it is showing 2 monitors. But when I'm running a rule for Email connector, it is showing data of only 1 monitor i.e. 1 URL only. Can somebody help m…

---

## [Elastic license query](https://discuss.elastic.co/t/elastic-license-query/334120)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 2\
**Last updated:** [May 23, 2023, 2:33pm UTC](https://discuss.elastic.co/t/elastic-license-query/334120 "2023-05-23T14:33:43Z")

</div>

Hello All, Can some please let me know when elastic paid/license is bought then license is bought only for elastic nodes or kibana as well. Though I use beats,logstash also,here license for these are not required.Curre…

---

## [: max virtual memory areas vm.max\_map\_count \[65530\] is too low, increase to at least \[262144\]](https://discuss.elastic.co/t/max-virtual-memory-areas-vm-max-map-count-65530-is-too-low-increase-to-at-least-262144/334132)

<div class="topic-metadata">

**Author:** [@Ramon\_Moraga](https://discuss.elastic.co/u/Ramon_Moraga)\
**Replies:** 0\
**Last updated:** [May 23, 2023, 2:16pm UTC](https://discuss.elastic.co/t/max-virtual-memory-areas-vm-max-map-count-65530-is-too-low-increase-to-at-least-262144/334132 "2023-05-23T14:16:10Z")

</div>

I'm trying to mount elk in an aws ecs fargate container but I can't put the vm.max\_map\_count on it. And I get this error (bootstrap check failure \[1\] of \[1\]: max virtual memory areas vm.max\_map\_count \[65530\] is too low ,…

---

## [ES Transactions](https://discuss.elastic.co/t/es-transactions/334093)

<div class="topic-metadata">

**Author:** [@sajeeda](https://discuss.elastic.co/u/sajeeda)\
**Replies:** 6\
**Last updated:** [May 23, 2023, 2:10pm UTC](https://discuss.elastic.co/t/es-transactions/334093 "2023-05-23T14:10:16Z")

</div>

Hi All, I am trying to do an partial update on the document for 7 different process. i have been getting version control conflict. Is there a way where ES supports transactions so that there is no data loss. I do not wa…

---

## [How to manage array with dynamic\_templates](https://discuss.elastic.co/t/how-to-manage-array-with-dynamic-templates/334109)

<div class="topic-metadata">

**Author:** [@Julien\_Revol](https://discuss.elastic.co/u/Julien_Revol)\
**Replies:** 2\
**Last updated:** [May 23, 2023, 1:00pm UTC](https://discuss.elastic.co/t/how-to-manage-array-with-dynamic-templates/334109 "2023-05-23T13:00:42Z")

</div>

hello, i want to use dynamic mapping an manage array of object by making them defined as arrays. it works when i define the field directly: "tx.chargingSessionEvents": { "type": "nested" }, but i w…

---

## [Elasticsearch returns 10000 rows even when only ~100 documents are relevant](https://discuss.elastic.co/t/elasticsearch-returns-10000-rows-even-when-only-100-documents-are-relevant/332425)

<div class="topic-metadata">

**Author:** [@bonyolult](https://discuss.elastic.co/u/bonyolult)\
**Replies:** 5\
**Last updated:** [May 23, 2023, 1:00pm UTC](https://discuss.elastic.co/t/elasticsearch-returns-10000-rows-even-when-only-100-documents-are-relevant/332425 "2023-05-23T13:00:25Z")

</div>

Hello, i need some help with the following issue. I run wildcard queries on an index in Kibana Dev Tools. If i run one query at a time it returns only the relevant hits. If the queries are run paralell (2 browser tabs),…

---

## [Kibana has a response "We couldn't log you in. Please try again."](https://discuss.elastic.co/t/kibana-has-a-response-we-couldnt-log-you-in-please-try-again/334069)

<div class="topic-metadata">

**Author:** [@Danuptraa](https://discuss.elastic.co/u/Danuptraa)\
**Replies:** 1\
**Last updated:** [May 23, 2023, 12:41pm UTC](https://discuss.elastic.co/t/kibana-has-a-response-we-couldnt-log-you-in-please-try-again/334069 "2023-05-23T12:41:08Z")

</div>

Hi everyone, Is there anyone who can help me? I have an issue with Kibana. When I try to log in, Kibana gives the response "We couldn't log you in. Please try again." I have read many forums, but none of them seem to ad…

---

## [Substring search NEST query](https://discuss.elastic.co/t/substring-search-nest-query/333980)

<div class="topic-metadata">

**Author:** [@LhamoDev](https://discuss.elastic.co/u/LhamoDev)\
**Replies:** 6\
**Last updated:** [May 23, 2023, 12:12pm UTC](https://discuss.elastic.co/t/substring-search-nest-query/333980 "2023-05-23T12:12:07Z")

</div>

Hello, I'm trying to search on an ID in my index with reservations for a test application. I can search on the full ID but when I search on the last part of the ID (something the PO requested), I don't get any results …

---

## [HELP, Interconnecting SentinelOne with Elasticsearch](https://discuss.elastic.co/t/help-interconnecting-sentinelone-with-elasticsearch/332774)

<div class="topic-metadata">

**Author:** [@Mdiouf01](https://discuss.elastic.co/u/Mdiouf01)\
**Replies:** 6\
**Last updated:** [May 23, 2023, 12:11pm UTC](https://discuss.elastic.co/t/help-interconnecting-sentinelone-with-elasticsearch/332774 "2023-05-23T12:11:34Z")

</div>

Hello, I need your help :face\_holding\_back\_tears::face\_holding\_back\_tears: I am a SOC analyst, and I want to interconnect SentinelOne with ELK SIEM. Could you help me to know if you have a tuto or clear documentation e…

---

## [Elastic agents are becoming offline after some time](https://discuss.elastic.co/t/elastic-agents-are-becoming-offline-after-some-time/334100)

<div class="topic-metadata">

**Author:** [@Malik\_Bilal](https://discuss.elastic.co/u/Malik_Bilal)\
**Replies:** 0\
**Last updated:** [May 23, 2023, 10:25am UTC](https://discuss.elastic.co/t/elastic-agents-are-becoming-offline-after-some-time/334100 "2023-05-23T10:25:46Z")

</div>

Elastic agents installed in the aks cluster are online for 3 minutes and then they become offline after every that . This loop keeps on continuing and therefore I have alot of elastic agents in the offline state. I see…

---

## [Kibana Log File not created](https://discuss.elastic.co/t/kibana-log-file-not-created/334099)

<div class="topic-metadata">

**Author:** [@Oriya](https://discuss.elastic.co/u/Oriya)\
**Replies:** 3\
**Last updated:** [May 23, 2023, 11:36am UTC](https://discuss.elastic.co/t/kibana-log-file-not-created/334099 "2023-05-23T11:36:53Z")

</div>

Hi, Recently we notice that kibana log file that should be written to the path : /var/log/kibana/kibana.log was not written for a long time. this is the kibana.yml : # Kibana is served by a back end server. This set…

---

## [How to close HighLevelClient in thread pool](https://discuss.elastic.co/t/how-to-close-highlevelclient-in-thread-pool/334108)

<div class="topic-metadata">

**Author:** [@CatLoveFishma](https://discuss.elastic.co/u/CatLoveFishma)\
**Replies:** 0\
**Last updated:** [May 23, 2023, 11:03am UTC](https://discuss.elastic.co/t/how-to-close-highlevelclient-in-thread-pool/334108 "2023-05-23T11:03:19Z")

</div>

Hi,I use the thread pool to batch query the data in the es cluster.It is performant and gives me good parallelization. However I am not able to figure out how to close the client. Actually, I do client.close() in child t…

---

## [How do I disconnect a host in order to delete it?](https://discuss.elastic.co/t/how-do-i-disconnect-a-host-in-order-to-delete-it/334096)

<div class="topic-metadata">

**Author:** [@steman-provinzial](https://discuss.elastic.co/u/steman-provinzial)\
**Replies:** 1\
**Last updated:** [May 23, 2023, 9:55am UTC](https://discuss.elastic.co/t/how-do-i-disconnect-a-host-in-order-to-delete-it/334096 "2023-05-23T09:55:09Z")

</div>

Hi there, I want to delete a host. I am following the documentation. In the ece GUI I could now push the button: Manage host -\> delete host Then comes the popup: Delete Host? The button is grayed out and I get the fo…

---

## [Duplication in logstash pipeline (input elasticsearch and output sql database)](https://discuss.elastic.co/t/duplication-in-logstash-pipeline-input-elasticsearch-and-output-sql-database/333982)

<div class="topic-metadata">

**Author:** [@alex\_petrov](https://discuss.elastic.co/u/alex_petrov)\
**Replies:** 2\
**Last updated:** [May 23, 2023, 8:27am UTC](https://discuss.elastic.co/t/duplication-in-logstash-pipeline-input-elasticsearch-and-output-sql-database/333982 "2023-05-23T08:27:35Z")

</div>

Hi , I am using elasicsearch index as my input in my logstash config and the output is jdbc-output plugin logstash that send logs to sql database table columns , and the problem is I have duplication in sql database , I…

---

## [How to calculate the no. of hours between the selected time range in Kibana?](https://discuss.elastic.co/t/how-to-calculate-the-no-of-hours-between-the-selected-time-range-in-kibana/332855)

<div class="topic-metadata">

**Author:** [@subash](https://discuss.elastic.co/u/subash)\
**Replies:** 1\
**Last updated:** [May 23, 2023, 7:55am UTC](https://discuss.elastic.co/t/how-to-calculate-the-no-of-hours-between-the-selected-time-range-in-kibana/332855 "2023-05-23T07:55:16Z")

</div>

Hello, I would like to know how I can get the number of hours in the selected time range. For example, If last 2 days is selected in kibana time picker, then I want to get the no. of hours in 2 days (ie., 48 hours). We…

---

## [Possability to use ELK-Stack for SNMP Monitoring like PRTG, CheckMK](https://discuss.elastic.co/t/possability-to-use-elk-stack-for-snmp-monitoring-like-prtg-checkmk/334073)

<div class="topic-metadata">

**Author:** [@tweak19](https://discuss.elastic.co/u/tweak19)\
**Replies:** 0\
**Last updated:** [May 23, 2023, 5:49am UTC](https://discuss.elastic.co/t/possability-to-use-elk-stack-for-snmp-monitoring-like-prtg-checkmk/334073 "2023-05-23T05:49:21Z")

</div>

Hi, I would like to ask if there is a way to use ELK stack for SNMP polling of a large number of different devices with different SNMP v3 settings and different OIDs. The idea behind this is that I would have a system …

---

## [Unable to parse "message"](https://discuss.elastic.co/t/unable-to-parse-message/333635)

<div class="topic-metadata">

**Author:** [@bsauvage1](https://discuss.elastic.co/u/bsauvage1)\
**Replies:** 9\
**Last updated:** [May 23, 2023, 3:41am UTC](https://discuss.elastic.co/t/unable-to-parse-message/333635 "2023-05-23T03:41:55Z")

</div>

Hello. New user of logstash here so please bear with me! Sending over TCP from python using logstash\_async, I receive the item in logstash (see bottom of message). How can I parse the "message" into fields? I have tri…

---

## [Retrieve items sorted by mutual-terms match](https://discuss.elastic.co/t/retrieve-items-sorted-by-mutual-terms-match/333604)

<div class="topic-metadata">

**Author:** [@K\_K2](https://discuss.elastic.co/u/K_K2)\
**Replies:** 1\
**Last updated:** [May 23, 2023, 12:06am UTC](https://discuss.elastic.co/t/retrieve-items-sorted-by-mutual-terms-match/333604 "2023-05-23T00:06:08Z")

</div>

We have index mapping like this: { "mappings": { "\_source": { "includes": \[ "uid" \] }, "properties": { "follow": { "doc\_values": true, …

---

## [8.7.1: Stand Alone Kubernetes Deployment - filestream input with ID '' already exists](https://discuss.elastic.co/t/8-7-1-stand-alone-kubernetes-deployment-filestream-input-with-id-already-exists/333148)

<div class="topic-metadata">

**Author:** [@berg](https://discuss.elastic.co/u/berg)\
**Replies:** 1\
**Last updated:** [May 22, 2023, 11:33pm UTC](https://discuss.elastic.co/t/8-7-1-stand-alone-kubernetes-deployment-filestream-input-with-id-already-exists/333148 "2023-05-22T23:33:29Z")

</div>

I've used the example K8s manifest to deploy Elastic Agent on our AWS EKS cluster. I followed the documentation in the EKS section to comment out modules that are unavailable in AWS EKS. Recently, I upgraded to 8.7.0 an…

---

## [Add day in Add fields](https://discuss.elastic.co/t/add-day-in-add-fields/333164)

<div class="topic-metadata">

**Author:** [@M.Naim](https://discuss.elastic.co/u/M.Naim)\
**Replies:** 1\
**Last updated:** [May 22, 2023, 6:35pm UTC](https://discuss.elastic.co/t/add-day-in-add-fields/333164 "2023-05-22T18:35:03Z")

</div>

Hi All, I am trying to add a derived date field by adding days into exiting date fields using the below query. ZonedDateTime origValue = doc\['body.dates.dispenseDate'\].value; ZonedDateTime newValue = origValue.plusDays…

---

## [Exporting over 10K objects in Kibana](https://discuss.elastic.co/t/exporting-over-10k-objects-in-kibana/332845)

<div class="topic-metadata">

**Author:** [@Francisco\_Yanez](https://discuss.elastic.co/u/Francisco_Yanez)\
**Replies:** 1\
**Last updated:** [May 22, 2023, 6:18pm UTC](https://discuss.elastic.co/t/exporting-over-10k-objects-in-kibana/332845 "2023-05-22T18:18:25Z")

</div>

Hello Everyone, I have to export from saved objects (Stack Management \>\> Saved Objects) over 10,000 objects. So when I tried to export them I get an error message, is there a way to export over 10K? Thanks

---

## [I want to remove nested elements from logs](https://discuss.elastic.co/t/i-want-to-remove-nested-elements-from-logs/333979)

<div class="topic-metadata">

**Author:** [@Ayushi\_bhardwaj](https://discuss.elastic.co/u/Ayushi_bhardwaj)\
**Replies:** 1\
**Last updated:** [May 22, 2023, 5:49pm UTC](https://discuss.elastic.co/t/i-want-to-remove-nested-elements-from-logs/333979 "2023-05-22T17:49:11Z")

</div>

i want to remove nested elements from logs "x": { "test": { "rulesetname": "eq", "operation": { "name": "diagnosticresult", "version": "235" }, "device": "string…

---

## [Logstash and AWS Cloudtrail](https://discuss.elastic.co/t/logstash-and-aws-cloudtrail/333927)

<div class="topic-metadata">

**Author:** [@mgotechlock](https://discuss.elastic.co/u/mgotechlock)\
**Replies:** 3\
**Last updated:** [May 22, 2023, 5:33pm UTC](https://discuss.elastic.co/t/logstash-and-aws-cloudtrail/333927 "2023-05-22T17:33:57Z")

</div>

Help please. It appears that AWS cloudtrail puts multiple log records under one top level field, like this: "Records": \[ { "eventName": "AssumeRole", "requestParameters": { "durationSeconds": 1500, "role…

---

## [Synonyms in kibana discover](https://discuss.elastic.co/t/synonyms-in-kibana-discover/333961)

<div class="topic-metadata">

**Author:** [@Bav\_Tech](https://discuss.elastic.co/u/Bav_Tech)\
**Replies:** 3\
**Last updated:** [May 22, 2023, 5:01pm UTC](https://discuss.elastic.co/t/synonyms-in-kibana-discover/333961 "2023-05-22T17:01:55Z")

</div>

i am able to create a synonym analyzer and use it to query and get result using the kibana dev tool. is it possible that i use that same custom synonym analyzer when searching for a text in kibana discover? or bet…

---

## [I want to sort items by the array of numbers](https://discuss.elastic.co/t/i-want-to-sort-items-by-the-array-of-numbers/333981)

<div class="topic-metadata">

**Author:** [@CookiesPrompt](https://discuss.elastic.co/u/CookiesPrompt)\
**Replies:** 1\
**Last updated:** [May 22, 2023, 3:07pm UTC](https://discuss.elastic.co/t/i-want-to-sort-items-by-the-array-of-numbers/333981 "2023-05-22T15:07:50Z")

</div>

Hello! I am using elasticsearch version 7.11 and I want to sort items by the array of numbers: lucky\_numbers.number\_list A have a lot of elements like below and arrays have a dynamic length, example: \_source { "ga…

---

## [POSTGRESQL 9.6 Y ELASTICSEARCH 8.7.0](https://discuss.elastic.co/t/postgresql-9-6-y-elasticsearch-8-7-0/333711)

<div class="topic-metadata">

**Author:** [@Giancarlo\_Huapaya\_Ra](https://discuss.elastic.co/u/Giancarlo_Huapaya_Ra)\
**Replies:** 2\
**Last updated:** [May 22, 2023, 1:54pm UTC](https://discuss.elastic.co/t/postgresql-9-6-y-elasticsearch-8-7-0/333711 "2023-05-22T13:54:15Z")

</div>

Hello everyone, I have a problem with the logs that I receive from postgresql version 9.6 to my elasticseach version 8.7.0. I have configured as instructed but I get the error shown in the image: I have another serv…

---

## [Elasticsearch is not working and gives " all shards not available" using the version 6.4.1](https://discuss.elastic.co/t/elasticsearch-is-not-working-and-gives-all-shards-not-available-using-the-version-6-4-1/334005)

<div class="topic-metadata">

**Author:** [@Shadi\_Almasri](https://discuss.elastic.co/u/Shadi_Almasri)\
**Replies:** 1\
**Last updated:** [May 22, 2023, 1:51pm UTC](https://discuss.elastic.co/t/elasticsearch-is-not-working-and-gives-all-shards-not-available-using-the-version-6-4-1/334005 "2023-05-22T13:51:34Z")

</div>

elasticsearch is not working and gives " all shards not available" using the version 6.4.1

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=373)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=375)
