# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=408

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 409

---

## [Elatic-agent not sending any data](https://discuss.elastic.co/t/elatic-agent-not-sending-any-data/328868)

<div class="topic-metadata">

**Author:** [@ermilan2309](https://discuss.elastic.co/u/ermilan2309)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 9:34pm UTC](https://discuss.elastic.co/t/elatic-agent-not-sending-any-data/328868 "2023-03-29T21:34:35Z")

</div>

I have installed elastic agent with the same certificates that used for elasticsearch and kibana to communicate with each other. I have all in one deployment. I used the same certs for agents to communicate but not sure…

---

## [Custom UDP Logs](https://discuss.elastic.co/t/custom-udp-logs/328867)

<div class="topic-metadata">

**Author:** [@Thomas\_Baumann](https://discuss.elastic.co/u/Thomas_Baumann)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 9:10pm UTC](https://discuss.elastic.co/t/custom-udp-logs/328867 "2023-03-29T21:10:47Z")

</div>

Hello, we are using an Fleet Server, including Custom UDP logs integration. We observed an issue with data are not ingested with a load about 500 EPS. About 30% to 50 % messages are not ingested. Also netstat -ulpn …

---

## [Using ES as a back end DB for an APP with high transactions](https://discuss.elastic.co/t/using-es-as-a-back-end-db-for-an-app-with-high-transactions/328755)

<div class="topic-metadata">

**Author:** [@gstlouis](https://discuss.elastic.co/u/gstlouis)\
**Replies:** 5\
**Last updated:** [March 29, 2023, 8:54pm UTC](https://discuss.elastic.co/t/using-es-as-a-back-end-db-for-an-app-with-high-transactions/328755 "2023-03-29T20:54:25Z")

</div>

I am new to ES. I have been installing it and working with its REST API. I like it and I would like to use it in an APP. However, I have started watching some tutorials to understand the full stack, including beats to…

---

## [Elasticsearch connector react-search ui](https://discuss.elastic.co/t/elasticsearch-connector-react-search-ui/328849)

<div class="topic-metadata">

**Author:** [@VV1002](https://discuss.elastic.co/u/VV1002)\
**Replies:** 1\
**Last updated:** [March 29, 2023, 7:39pm UTC](https://discuss.elastic.co/t/elasticsearch-connector-react-search-ui/328849 "2023-03-29T19:39:26Z")

</div>

I have ES 8.4 with Mappings and data in the backend and trying to connect to react front-end with react-search-ui library to implement Title suggestions and autocomplete sample references : Search UI with Elasticsearch …

---

## [Certificates](https://discuss.elastic.co/t/certificates/328856)

<div class="topic-metadata">

**Author:** [@branden.heifner](https://discuss.elastic.co/u/branden.heifner)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 6:47pm UTC](https://discuss.elastic.co/t/certificates/328856 "2023-03-29T18:47:04Z")

</div>

Hello everyone, I need to switch the certificates for my elasticsearch nodes, and I was wondering if there is any specific guide or recommendation for switching them out. Currently the servers are using self signed cert…

---

## [Installing Elastic Agent on Kubernetes doesn't come up as healthy - managed by Elastic Fleet](https://discuss.elastic.co/t/installing-elastic-agent-on-kubernetes-doesnt-come-up-as-healthy-managed-by-elastic-fleet/328729)

<div class="topic-metadata">

**Author:** [@Alexios\_Polyzos](https://discuss.elastic.co/u/Alexios_Polyzos)\
**Replies:** 1\
**Last updated:** [March 29, 2023, 6:10pm UTC](https://discuss.elastic.co/t/installing-elastic-agent-on-kubernetes-doesnt-come-up-as-healthy-managed-by-elastic-fleet/328729 "2023-03-29T18:10:00Z")

</div>

So, I'm trying to install the elastic agent on Kubernetes via the daemonset manifest files found here. I'm providing the FLEET\_URL and FLEET\_ENROLLMENT\_TOKEN, and after the first seconds the agents show up as healthy on…

---

## [Browser monitor alert with the failed step screenshot attached](https://discuss.elastic.co/t/browser-monitor-alert-with-the-failed-step-screenshot-attached/328278)

<div class="topic-metadata">

**Author:** [@upcfrost](https://discuss.elastic.co/u/upcfrost)\
**Replies:** 1\
**Last updated:** [March 29, 2023, 4:50pm UTC](https://discuss.elastic.co/t/browser-monitor-alert-with-the-failed-step-screenshot-attached/328278 "2023-03-29T16:50:45Z")

</div>

Hi, Is it possible to create an alert for the browser monitor which will include the screenshot taken on the failed step? From what I see, screenshots and browser events are stored in two separate data streams, so targ…

---

## [Problem with my logstash file '.conf' for analyse syslog from my switchs](https://discuss.elastic.co/t/problem-with-my-logstash-file-conf-for-analyse-syslog-from-my-switchs/328750)

<div class="topic-metadata">

**Author:** [@Son\_Goku](https://discuss.elastic.co/u/Son_Goku)\
**Replies:** 4\
**Last updated:** [March 29, 2023, 3:29pm UTC](https://discuss.elastic.co/t/problem-with-my-logstash-file-conf-for-analyse-syslog-from-my-switchs/328750 "2023-03-29T15:29:43Z")

</div>

Hello, I have install ELK stack 8.6 with elasticsearch, Logstash, Kibana, Filebeat and Metricbeats; Well ! I tested my server with a Logstash file "syslog.conf" with a beats input, who listen on 5044 port. It works, I …

---

## [415 error when uploading ndjson to kibana](https://discuss.elastic.co/t/415-error-when-uploading-ndjson-to-kibana/328455)

<div class="topic-metadata">

**Author:** [@amesl](https://discuss.elastic.co/u/amesl)\
**Replies:** 10\
**Last updated:** [March 29, 2023, 3:00pm UTC](https://discuss.elastic.co/t/415-error-when-uploading-ndjson-to-kibana/328455 "2023-03-29T15:00:13Z")

</div>

I need to upload an ndjson dashboard file to the kibana endpoint in Java. The below command is successful with the ndjson files: curl -X POST api/saved\_objects/\_import?overwrite=true -H "kbn-xsrf: true" --form file=@fil…

---

## [Delete documents in Elasticsearch from Logstash](https://discuss.elastic.co/t/delete-documents-in-elasticsearch-from-logstash/328679)

<div class="topic-metadata">

**Author:** [@oo\_eyad](https://discuss.elastic.co/u/oo_eyad)\
**Replies:** 1\
**Last updated:** [March 29, 2023, 2:36pm UTC](https://discuss.elastic.co/t/delete-documents-in-elasticsearch-from-logstash/328679 "2023-03-29T14:36:53Z")

</div>

I have an index in Elasticsearch where the UID is automatically generated, I want to delete documents by query but from Logstash. I am trying different ways like http output plugin, is it the correct option to do so? or …

---

## [I got diffirent result with same filter between unique\_count and list-group-terms in kibana](https://discuss.elastic.co/t/i-got-diffirent-result-with-same-filter-between-unique-count-and-list-group-terms-in-kibana/327721)

<div class="topic-metadata">

**Author:** [@hiteny](https://discuss.elastic.co/u/hiteny)\
**Replies:** 2\
**Last updated:** [March 29, 2023, 2:29pm UTC](https://discuss.elastic.co/t/i-got-diffirent-result-with-same-filter-between-unique-count-and-list-group-terms-in-kibana/327721 "2023-03-29T14:29:57Z")

</div>

In the black rectangle of the picture,I have the TERMS result:461, But,the CARDINALITY result is 460! They both have the same filter,I don't know what makes these result.

---

## [Convert String to Date field](https://discuss.elastic.co/t/convert-string-to-date-field/328752)

<div class="topic-metadata">

**Author:** [@rubhamra](https://discuss.elastic.co/u/rubhamra)\
**Replies:** 2\
**Last updated:** [March 29, 2023, 2:11pm UTC](https://discuss.elastic.co/t/convert-string-to-date-field/328752 "2023-03-29T14:11:10Z")

</div>

I tried converting one of the string field to Date field , I can see in the logs that it could changed to date field because it's without quotes . but it's still showing the field is keyword. Logstash Config # "Submit …

---

## [Using stop-words in autocomplete search](https://discuss.elastic.co/t/using-stop-words-in-autocomplete-search/328840)

<div class="topic-metadata">

**Author:** [@Kolobok99](https://discuss.elastic.co/u/Kolobok99)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 2:08pm UTC](https://discuss.elastic.co/t/using-stop-words-in-autocomplete-search/328840 "2023-03-29T14:08:17Z")

</div>

Hi all. On our project, we use elastic to search for products through the autocomplete function using something like this query GET food/\_search { "suggest": { "autocomplete": { "prefix": "apple", "com…

---

## [How to forward index from filebeat to elasticsearch via logstash using http output](https://discuss.elastic.co/t/how-to-forward-index-from-filebeat-to-elasticsearch-via-logstash-using-http-output/328587)

<div class="topic-metadata">

**Author:** [@majan3k](https://discuss.elastic.co/u/majan3k)\
**Replies:** 3\
**Last updated:** [March 29, 2023, 1:54pm UTC](https://discuss.elastic.co/t/how-to-forward-index-from-filebeat-to-elasticsearch-via-logstash-using-http-output/328587 "2023-03-29T13:54:23Z")

</div>

Hello, Hello, I am starting my journey with elasticsearch and I have a couple of questions. I tried to find answers in documentation but some areas are not clear for me and I am confused. If I understood correct, in o…

---

## [Unable to start elastic search on Ubuntu AWS EC2 Instance](https://discuss.elastic.co/t/unable-to-start-elastic-search-on-ubuntu-aws-ec2-instance/328343)

<div class="topic-metadata">

**Author:** [@Vivek\_Burman](https://discuss.elastic.co/u/Vivek_Burman)\
**Replies:** 4\
**Last updated:** [March 29, 2023, 1:52pm UTC](https://discuss.elastic.co/t/unable-to-start-elastic-search-on-ubuntu-aws-ec2-instance/328343 "2023-03-29T13:52:35Z")

</div>

Hi, so following the link getting the following error. Here's my elasticsearch.yml config # ======================== Elasticsearch Configuration ========================= # # NOTE: Elasticsearch comes with reasonabl…

---

## [Parsing json inside json](https://discuss.elastic.co/t/parsing-json-inside-json/328496)

<div class="topic-metadata">

**Author:** [@eirik](https://discuss.elastic.co/u/eirik)\
**Replies:** 2\
**Last updated:** [March 29, 2023, 1:42pm UTC](https://discuss.elastic.co/t/parsing-json-inside-json/328496 "2023-03-29T13:42:14Z")

</div>

I'm new to logstash and wanted to test using it reading loglines from IBM Cloud and struggling with parsing this log record using logstash. The log line is a json object, and inside this one of the fields starts with pla…

---

## [Does there exist a Helm chart for the Elastic agent for on-prem Elasticsearch?](https://discuss.elastic.co/t/does-there-exist-a-helm-chart-for-the-elastic-agent-for-on-prem-elasticsearch/328675)

<div class="topic-metadata">

**Author:** [@catalin.bulancea](https://discuss.elastic.co/u/catalin.bulancea)\
**Replies:** 2\
**Last updated:** [March 29, 2023, 1:22pm UTC](https://discuss.elastic.co/t/does-there-exist-a-helm-chart-for-the-elastic-agent-for-on-prem-elasticsearch/328675 "2023-03-29T13:22:29Z")

</div>

Hello Elastic gurus, I guess the question is in the subject. I am trying to find a helm chart for the Elastic agent, but it's not in the below list: I found the k8s ymls for the Elastic agent here: and converted th…

---

## [Query Url - Date field not works](https://discuss.elastic.co/t/query-url-date-field-not-works/328816)

<div class="topic-metadata">

**Author:** [@SalvoDM91](https://discuss.elastic.co/u/SalvoDM91)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 12:12pm UTC](https://discuss.elastic.co/t/query-url-date-field-not-works/328816 "2023-03-29T12:12:03Z")

</div>

Hi guys, I'm trying to create a url query with a date field. Currently in the index I have 2 date fields "@timestamp" and "CALL\_DATE" both correctly recognized as "date". Index mapping: { "cgw\_calls" : { "mappi…

---

## [Probleme dashboard font size in visualization in kibana after migration from 7.10 to 7.17](https://discuss.elastic.co/t/probleme-dashboard-font-size-in-visualization-in-kibana-after-migration-from-7-10-to-7-17/328721)

<div class="topic-metadata">

**Author:** [@elaydi\_elagal](https://discuss.elastic.co/u/elaydi_elagal)\
**Replies:** 9\
**Last updated:** [March 29, 2023, 10:46am UTC](https://discuss.elastic.co/t/probleme-dashboard-font-size-in-visualization-in-kibana-after-migration-from-7-10-to-7-17/328721 "2023-03-29T10:46:23Z")

</div>

How can I change font size of labels in visualization in kibana 7.17 for all dashboard or kept my dashboards format in 7.10 without change in 7.17

---

## [Elastic search fails during restart with unknown setting \[metadata.labels.app\]](https://discuss.elastic.co/t/elastic-search-fails-during-restart-with-unknown-setting-metadata-labels-app/328804)

<div class="topic-metadata">

**Author:** [@sunil\_s](https://discuss.elastic.co/u/sunil_s)\
**Replies:** 4\
**Last updated:** [March 29, 2023, 10:20am UTC](https://discuss.elastic.co/t/elastic-search-fails-during-restart-with-unknown-setting-metadata-labels-app/328804 "2023-03-29T10:20:56Z")

</div>

.plugins.PluginsService","elasticsearch.node.name":"es-cluster-1","elasticsearch.cluster.name":"k8s-logs"} {"@timestamp":"2023-03-29T06:06:49.266Z", "log.level":"ERROR", "message":"fatal exception while booting Elasticse…

---

## [How to change field name in all events in a list of json objects without splitting/with getting again a list of json objects in logstash?](https://discuss.elastic.co/t/how-to-change-field-name-in-all-events-in-a-list-of-json-objects-without-splitting-with-getting-again-a-list-of-json-objects-in-logstash/328807)

<div class="topic-metadata">

**Author:** [@fosota8](https://discuss.elastic.co/u/fosota8)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 9:57am UTC](https://discuss.elastic.co/t/how-to-change-field-name-in-all-events-in-a-list-of-json-objects-without-splitting-with-getting-again-a-list-of-json-objects-in-logstash/328807 "2023-03-29T09:57:00Z")

</div>

For example if i give logstash the following input: \[{"a": 1, "b": 2}, {"a": 14, "b": 65}\] and I want to change all "b" field names to "c", so I will get the following output: \[{"a": 1, "c": 2}, {"a": 14, "c": 65}\] The …

---

## [Issue for connection from proxy server to kibana](https://discuss.elastic.co/t/issue-for-connection-from-proxy-server-to-kibana/328783)

<div class="topic-metadata">

**Author:** [@minkiyo](https://discuss.elastic.co/u/minkiyo)\
**Replies:** 2\
**Last updated:** [March 29, 2023, 9:10am UTC](https://discuss.elastic.co/t/issue-for-connection-from-proxy-server-to-kibana/328783 "2023-03-29T09:10:25Z")

</div>

Hello Nowadays, I am building proxy server in front of Elastic cluster(k List item ibana). Broswer --\> new proxy server (nginx --\> express) --\> Elastic cluster(kibana). All the Kibana url will be passing in new pr…

---

## [Elasticsearch for Windows 10 - arrghh](https://discuss.elastic.co/t/elasticsearch-for-windows-10-arrghh/328629)

<div class="topic-metadata">

**Author:** [@AndyJay1](https://discuss.elastic.co/u/AndyJay1)\
**Replies:** 3\
**Last updated:** [March 29, 2023, 9:10am UTC](https://discuss.elastic.co/t/elasticsearch-for-windows-10-arrghh/328629 "2023-03-29T09:10:11Z")

</div>

Hi all. I'm trying to install (run) elasticsearch 8.6.2 on my local Windows 10 machine. I'm installing Magento 2.4.5 whcih requires elasticsearch. Starting elasticsearch.bat as the administrator (and a user) just won'…

---

## [CircuitBreakingException: \[parent\] Data too large IN ES 7.3.2](https://discuss.elastic.co/t/circuitbreakingexception-parent-data-too-large-in-es-7-3-2/328788)

<div class="topic-metadata">

**Author:** [@Rahul\_Sen](https://discuss.elastic.co/u/Rahul_Sen)\
**Replies:** 4\
**Last updated:** [March 29, 2023, 9:01am UTC](https://discuss.elastic.co/t/circuitbreakingexception-parent-data-too-large-in-es-7-3-2/328788 "2023-03-29T09:01:59Z")

</div>

Hi, We recently started to get multiple shards failures in one of our Kibana dashboards, and on checking the response it was found that we getting CircuitBreakingException: \[parent\] Data too large, exact error is given …

---

## [How ssl handshake will be happening for logstash output syslog client and syslog server side](https://discuss.elastic.co/t/how-ssl-handshake-will-be-happening-for-logstash-output-syslog-client-and-syslog-server-side/328795)

<div class="topic-metadata">

**Author:** [@teja\_tata](https://discuss.elastic.co/u/teja_tata)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 8:50am UTC](https://discuss.elastic.co/t/how-ssl-handshake-will-be-happening-for-logstash-output-syslog-client-and-syslog-server-side/328795 "2023-03-29T08:50:20Z")

</div>

How should we configure Syslog ssl certiificate at logstash(client) and syslog server end. From document what I understood is we will be having ssl\_cacert , ssl\_cert, ssl\_key at client end that is logstash. How about Se…

---

## [Does es node prioritize local shard for searching?](https://discuss.elastic.co/t/does-es-node-prioritize-local-shard-for-searching/328790)

<div class="topic-metadata">

**Author:** [@clp991666](https://discuss.elastic.co/u/clp991666)\
**Replies:** 2\
**Last updated:** [March 29, 2023, 8:19am UTC](https://discuss.elastic.co/t/does-es-node-prioritize-local-shard-for-searching/328790 "2023-03-29T08:19:24Z")

</div>

Hi, I use es cluster to serve a small index (\<1G) for searching and aggregation and so only 1 shard is assigned and 1 replica. As 1 node does not able to serve all the request fast enough so the cluster scale to 10 node…

---

## [Cannot parse empty date](https://discuss.elastic.co/t/cannot-parse-empty-date/328687)

<div class="topic-metadata">

**Author:** [@yuswanul](https://discuss.elastic.co/u/yuswanul)\
**Replies:** 4\
**Last updated:** [March 29, 2023, 7:25am UTC](https://discuss.elastic.co/t/cannot-parse-empty-date/328687 "2023-03-29T07:25:25Z")

</div>

Hi there, i'm facing an issue about empty date field. so my data is ingested from csv file. and some row has a empty date field. i already made a condition like this but i keep getting error like this response=\>{"in…

---

## [Node enrollment token TTL?](https://discuss.elastic.co/t/node-enrollment-token-ttl/328762)

<div class="topic-metadata">

**Author:** [@DRW-ATCA](https://discuss.elastic.co/u/DRW-ATCA)\
**Replies:** 0\
**Last updated:** [March 29, 2023, 3:11am UTC](https://discuss.elastic.co/t/node-enrollment-token-ttl/328762 "2023-03-29T03:11:28Z")

</div>

Is there a time-to-live/expiration date for node enrollment tokens? If so, what is it?

---

## [ELK - 8.6 (Filebeat to logstash) - only write ops with an op\_type of create are allowed in data streams](https://discuss.elastic.co/t/elk-8-6-filebeat-to-logstash-only-write-ops-with-an-op-type-of-create-are-allowed-in-data-streams/328401)

<div class="topic-metadata">

**Author:** [@Kvoyce2023](https://discuss.elastic.co/u/Kvoyce2023)\
**Replies:** 12\
**Last updated:** [March 29, 2023, 1:54am UTC](https://discuss.elastic.co/t/elk-8-6-filebeat-to-logstash-only-write-ops-with-an-op-type-of-create-are-allowed-in-data-streams/328401 "2023-03-29T01:54:53Z")

</div>

Hello everyone: I got 2 physical server - one got elastic and 2nd one got Logstash & Kibana. I got filebeat running on our customer server from where I am harvesting data from the application log. Below is the error w…

---

## [Match with type phrase\_prefix doesn't work when words mix numbers and letters](https://discuss.elastic.co/t/match-with-type-phrase-prefix-doesnt-work-when-words-mix-numbers-and-letters/328743)

<div class="topic-metadata">

**Author:** [@Raphael\_Fidelis](https://discuss.elastic.co/u/Raphael_Fidelis)\
**Replies:** 3\
**Last updated:** [March 28, 2023, 10:44pm UTC](https://discuss.elastic.co/t/match-with-type-phrase-prefix-doesnt-work-when-words-mix-numbers-and-letters/328743 "2023-03-28T22:44:17Z")

</div>

I'm trying to query as such: { "match": { "query": "100", "fields": "description", "type": "phrase\_prefix" } } However, if I search for "100" wanting to find, for example, a document with the "d…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=407)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=409)
