# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=410

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 411

---

## [Several configuration files for one pipeline](https://discuss.elastic.co/t/several-configuration-files-for-one-pipeline/328640)

<div class="topic-metadata">

**Author:** [@Daniel\_Lopez](https://discuss.elastic.co/u/Daniel_Lopez)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 6:34pm UTC](https://discuss.elastic.co/t/several-configuration-files-for-one-pipeline/328640 "2023-03-27T18:34:23Z")

</div>

I'm trying to reduce high cpu consumption in our logstash, so i decide to join several pipelines in one and run these configuration files as only one pipeline I'm testing with only two files without filter, only input a…

---

## [Elastic Search First Query is always slow and shards not getting distributed properly](https://discuss.elastic.co/t/elastic-search-first-query-is-always-slow-and-shards-not-getting-distributed-properly/328639)

<div class="topic-metadata">

**Author:** [@Gaurav\_Sachdeva](https://discuss.elastic.co/u/Gaurav_Sachdeva)\
**Replies:** 1\
**Last updated:** [March 27, 2023, 6:29pm UTC](https://discuss.elastic.co/t/elastic-search-first-query-is-always-slow-and-shards-not-getting-distributed-properly/328639 "2023-03-27T18:29:39Z")

</div>

I am creating per day index in Elastic Search ( version: 7.5.1 ). I have 3 nodes in total and 2 shards with one replica each, total disk: 5.6 TB and JVM Heap: 95.8 GB per day index size is 40 GB with 110m documents. I …

---

## [Case\_insensitive not working on wildcard field type with cyrilic data](https://discuss.elastic.co/t/case-insensitive-not-working-on-wildcard-field-type-with-cyrilic-data/326839)

<div class="topic-metadata">

**Author:** [@irfan94](https://discuss.elastic.co/u/irfan94)\
**Replies:** 3\
**Last updated:** [March 27, 2023, 6:27pm UTC](https://discuss.elastic.co/t/case-insensitive-not-working-on-wildcard-field-type-with-cyrilic-data/326839 "2023-03-27T18:27:12Z")

</div>

Hello, When you have an index with field that its type is wildcard and its filled with Cyrillic data and then when you perform wildcard query with case\_insensitive: true, no documents are found. Note: we are currently …

---

## [Comparison between index size and doc source size](https://discuss.elastic.co/t/comparison-between-index-size-and-doc-source-size/328596)

<div class="topic-metadata">

**Author:** [@AlessandroKP](https://discuss.elastic.co/u/AlessandroKP)\
**Replies:** 4\
**Last updated:** [March 27, 2023, 6:18pm UTC](https://discuss.elastic.co/t/comparison-between-index-size-and-doc-source-size/328596 "2023-03-27T18:18:20Z")

</div>

Hello, I have some questions regarding the mapper size plugin and how the size of the source of documents relate to the size of the index. So, I installed the mapper size plugin on a single-node Elasticsearch cluster, …

---

## [JSON KIBANA mapeo de campos](https://discuss.elastic.co/t/json-kibana-mapeo-de-campos/328525)

<div class="topic-metadata">

**Author:** [@Whazaza](https://discuss.elastic.co/u/Whazaza)\
**Replies:** 10\
**Last updated:** [March 27, 2023, 5:32pm UTC](https://discuss.elastic.co/t/json-kibana-mapeo-de-campos/328525 "2023-03-27T17:32:37Z")

</div>

Hola buenas tengo un inconveniente con logstash y kibana. Estoy intentado tomar campos de un JSON que lo tomo de un input TCP y lo mando a kibana ahora mi inconveniente es a la hora de generar un filtro en “logstash.con…

---

## [Discover - eager loading](https://discuss.elastic.co/t/discover-eager-loading/328458)

<div class="topic-metadata">

**Author:** [@Kamil\_Zielinski](https://discuss.elastic.co/u/Kamil_Zielinski)\
**Replies:** 3\
**Last updated:** [March 27, 2023, 3:56pm UTC](https://discuss.elastic.co/t/discover-eager-loading/328458 "2023-03-27T15:56:46Z")

</div>

Hey, Is there a way to enable the eager loading of the logs in the Kibana/Discovery tab? I'm using Kibana 8.6v. Currently, When I type some query into the Discover search box I get around 400 rows with various JSONs. …

---

## [Synthetic Logs](https://discuss.elastic.co/t/synthetic-logs/328598)

<div class="topic-metadata">

**Author:** [@aisyaharifin](https://discuss.elastic.co/u/aisyaharifin)\
**Replies:** 1\
**Last updated:** [March 27, 2023, 3:54pm UTC](https://discuss.elastic.co/t/synthetic-logs/328598 "2023-03-27T15:54:17Z")

</div>

Hello, I noticed from my synthetic logs about this 403 error. How do I authorized the API key id? {"log.level":"warn","@timestamp":"2023-03-24T09:08:57.835Z","message":"could not load last externally recorded state, w…

---

## [Managed Elasticsearch service in AZURE, GCP and AWC](https://discuss.elastic.co/t/managed-elasticsearch-service-in-azure-gcp-and-awc/328590)

<div class="topic-metadata">

**Author:** [@mruthyu](https://discuss.elastic.co/u/mruthyu)\
**Replies:** 3\
**Last updated:** [March 27, 2023, 3:24pm UTC](https://discuss.elastic.co/t/managed-elasticsearch-service-in-azure-gcp-and-awc/328590 "2023-03-27T15:24:04Z")

</div>

Would like to know which license - Platinum or Enterprise is considered for the managed elasticsearch service on Azure, AWS and GCP?

---

## [Custom Plugins in Elasticsearch](https://discuss.elastic.co/t/custom-plugins-in-elasticsearch/328432)

<div class="topic-metadata">

**Author:** [@JAYAVARDHAN\_VEJENDLA](https://discuss.elastic.co/u/JAYAVARDHAN_VEJENDLA)\
**Replies:** 7\
**Last updated:** [March 27, 2023, 3:05pm UTC](https://discuss.elastic.co/t/custom-plugins-in-elasticsearch/328432 "2023-03-27T15:05:32Z")

</div>

Hello everyone! We are using Elasticsearch in the Legal and Investigation area. We need to perform Proximity and Wildcard Search in a single query-string query, and we found out that elasticsearch is not providing that f…

---

## [ELK version 8.6.2 - custom data-stream and index name](https://discuss.elastic.co/t/elk-version-8-6-2-custom-data-stream-and-index-name/328382)

<div class="topic-metadata">

**Author:** [@nunex\_17](https://discuss.elastic.co/u/nunex_17)\
**Replies:** 2\
**Last updated:** [March 27, 2023, 2:53pm UTC](https://discuss.elastic.co/t/elk-version-8-6-2-custom-data-stream-and-index-name/328382 "2023-03-27T14:53:13Z")

</div>

Hi. Since i updated to this new version, i can´t configure a custom name to my index and data-stream. By default, filebeat creates a Data Stream named "filebeat-8.6.2" and a index ".ds-filebeat-8.6.2-2023.03.23-000001"…

---

## [Slowlog will not show specific document searches](https://discuss.elastic.co/t/slowlog-will-not-show-specific-document-searches/328628)

<div class="topic-metadata">

**Author:** [@rschirin](https://discuss.elastic.co/u/rschirin)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 2:41pm UTC](https://discuss.elastic.co/t/slowlog-will-not-show-specific-document-searches/328628 "2023-03-27T14:41:45Z")

</div>

Hey there, I was trying to get the slowlog for every search operations sent to ES. I saw that I can trace only standard search query, while I cannot see any GET operation of a specific and unique document. is this correc…

---

## [Assign a role to multiple users](https://discuss.elastic.co/t/assign-a-role-to-multiple-users/328462)

<div class="topic-metadata">

**Author:** [@artax\_sb](https://discuss.elastic.co/u/artax_sb)\
**Replies:** 2\
**Last updated:** [March 27, 2023, 1:59pm UTC](https://discuss.elastic.co/t/assign-a-role-to-multiple-users/328462 "2023-03-27T13:59:29Z")

</div>

I want to assign a new role to my users, but i have 150 users.... there is a way to assign the role to all users at the same time thanks in advance

---

## [Create fleet agent status table for a particular space](https://discuss.elastic.co/t/create-fleet-agent-status-table-for-a-particular-space/328620)

<div class="topic-metadata">

**Author:** [@niveditakathal](https://discuss.elastic.co/u/niveditakathal)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 1:37pm UTC](https://discuss.elastic.co/t/create-fleet-agent-status-table-for-a-particular-space/328620 "2023-03-27T13:37:51Z")

</div>

Hi Experts, I want to create a custom dashboard for a space in my Kibana to show all agents registered to a particular fleet agent policy. In order to achieve this I used Index pattern .fleet-agents\* with appropriate…

---

## [Logstash could not index event, how to view what server send the event](https://discuss.elastic.co/t/logstash-could-not-index-event-how-to-view-what-server-send-the-event/328619)

<div class="topic-metadata">

**Author:** [@ginokok1996](https://discuss.elastic.co/u/ginokok1996)\
**Replies:** 2\
**Last updated:** [March 27, 2023, 1:28pm UTC](https://discuss.elastic.co/t/logstash-could-not-index-event-how-to-view-what-server-send-the-event/328619 "2023-03-27T13:28:27Z")

</div>

Hi, We are currently receiving quite some errors relating to the same issue: \[2023-03-27T15:13:43,994\]\[WARN \]\[logstash.outputs.elasticsearch\] Could not index event to Elasticsearch. {:status=\>400, :action=\>\["index", {:…

---

## [Best way to count documents in index](https://discuss.elastic.co/t/best-way-to-count-documents-in-index/328610)

<div class="topic-metadata">

**Author:** [@SalvoDM91](https://discuss.elastic.co/u/SalvoDM91)\
**Replies:** 2\
**Last updated:** [March 27, 2023, 12:37pm UTC](https://discuss.elastic.co/t/best-way-to-count-documents-in-index/328610 "2023-03-27T12:37:33Z")

</div>

Hi Guys, I'm creating a pipeline to calculate a price. I need to multiply the number of documents of my index (with a filter like room = red) with a constant 1.27€. Could you please help me about the best way in order…

---

## [Not able to scroll and sort in drop down control visual in the Kibana 8.6 version](https://discuss.elastic.co/t/not-able-to-scroll-and-sort-in-drop-down-control-visual-in-the-kibana-8-6-version/328476)

<div class="topic-metadata">

**Author:** [@Kibana\_User](https://discuss.elastic.co/u/Kibana_User)\
**Replies:** 1\
**Last updated:** [March 27, 2023, 12:02pm UTC](https://discuss.elastic.co/t/not-able-to-scroll-and-sort-in-drop-down-control-visual-in-the-kibana-8-6-version/328476 "2023-03-27T12:02:15Z")

</div>

Regarding the drop down control option in the Kibana 8.6 version. We are not able to scroll down the list of items in the drop down and it is showing only 10 items by default. We couldn’t find any sort option here to s…

---

## [Is cloudfront codec for logstash working?](https://discuss.elastic.co/t/is-cloudfront-codec-for-logstash-working/328614)

<div class="topic-metadata">

**Author:** [@soumyajk](https://discuss.elastic.co/u/soumyajk)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 11:55am UTC](https://discuss.elastic.co/t/is-cloudfront-codec-for-logstash-working/328614 "2023-03-27T11:55:48Z")

</div>

Hello, Is Cloudfront codec working? logstash\[575080\]: \[2023-03-27T11:50:05,811\]\[ERROR\]\[logstash.inputs.s3 \]\[main\]\[cloudfront\] Failed to read file, processing skipped {:exception=\>Java::JavaLang::IllegalArgumentExc…

---

## [What is the difference between 7.17.8 and 7.17.9](https://discuss.elastic.co/t/what-is-the-difference-between-7-17-8-and-7-17-9/326698)

<div class="topic-metadata">

**Author:** [@Jayasree\_N](https://discuss.elastic.co/u/Jayasree_N)\
**Replies:** 2\
**Last updated:** [March 27, 2023, 10:43am UTC](https://discuss.elastic.co/t/what-is-the-difference-between-7-17-8-and-7-17-9/326698 "2023-03-27T10:43:33Z")

</div>

Hi Team, My current elasticsearch version is 7.17.8, it seems there is a new patch version released 7.17.9. Trying to figure the differences between 7.17.8 and 7.17.9 versions, are there any security vulnerabilities that…

---

## [How to configure these secure headers on the ELK stack hosted on nginx server](https://discuss.elastic.co/t/how-to-configure-these-secure-headers-on-the-elk-stack-hosted-on-nginx-server/328613)

<div class="topic-metadata">

**Author:** [@theacodes](https://discuss.elastic.co/u/theacodes)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 11:52am UTC](https://discuss.elastic.co/t/how-to-configure-these-secure-headers-on-the-elk-stack-hosted-on-nginx-server/328613 "2023-03-27T11:52:27Z")

</div>

Any thoughts on how to configure the following HTTP secure headers:

---

## [Requests to Elasticsearch 8 in ECK freeze for an abnormally long time (caused by Kibana?)](https://discuss.elastic.co/t/requests-to-elasticsearch-8-in-eck-freeze-for-an-abnormally-long-time-caused-by-kibana/328609)

<div class="topic-metadata">

**Author:** [@username11](https://discuss.elastic.co/u/username11)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 11:06am UTC](https://discuss.elastic.co/t/requests-to-elasticsearch-8-in-eck-freeze-for-an-abnormally-long-time-caused-by-kibana/328609 "2023-03-27T11:06:37Z")

</div>

Hi. We are currently working on implementing an Elastic Stack-based SIEM in Kubernetes, and I switched from standalone ES 7 to ECK+ES 8 for easier orchestration. ECK configuration was done entirely in accordance with the…

---

## [Asking About Dashboard In Kibana](https://discuss.elastic.co/t/asking-about-dashboard-in-kibana/328122)

<div class="topic-metadata">

**Author:** [@Tw1cUser](https://discuss.elastic.co/u/Tw1cUser)\
**Replies:** 5\
**Last updated:** [March 27, 2023, 10:56am UTC](https://discuss.elastic.co/t/asking-about-dashboard-in-kibana/328122 "2023-03-27T10:56:50Z")

</div>

Hi I want to know how packetloss works on the kibana dashboard? if I use the system module, will packet loss display data? i always get 0 packetloss and i once tried to shut down one of my vm to try to get the packetlos…

---

## [Set Size in Elastic Java Client 8.6](https://discuss.elastic.co/t/set-size-in-elastic-java-client-8-6/328599)

<div class="topic-metadata">

**Author:** [@shravan](https://discuss.elastic.co/u/shravan)\
**Replies:** 2\
**Last updated:** [March 27, 2023, 10:24am UTC](https://discuss.elastic.co/t/set-size-in-elastic-java-client-8-6/328599 "2023-03-27T10:24:14Z")

</div>

Hi! I was trying to connect to Elasticsearch using Java Client 8.6. I was unable to find this in docs or code - How would I be able to set "size" to limit the result set in Java? Thank You for your help!!

---

## [\[spring-data-elasticsearch\] how to dynamically assign index by argument column value](https://discuss.elastic.co/t/spring-data-elasticsearch-how-to-dynamically-assign-index-by-argument-column-value/328594)

<div class="topic-metadata">

**Author:** [@dan\_kim](https://discuss.elastic.co/u/dan_kim)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 9:20am UTC](https://discuss.elastic.co/t/spring-data-elasticsearch-how-to-dynamically-assign-index-by-argument-column-value/328594 "2023-03-27T09:20:41Z")

</div>

Hello I'm trying to save transactional data of product on elasticsearch and building spring boot as data-pipe line server . there are lots of index with same column like CategoryA\_Trasaction and CategoryB\_Transaction..…

---

## [Dynamic buckets ranges?](https://discuss.elastic.co/t/dynamic-buckets-ranges/328584)

<div class="topic-metadata">

**Author:** [@henrilabarre](https://discuss.elastic.co/u/henrilabarre)\
**Replies:** 0\
**Last updated:** [March 27, 2023, 8:02am UTC](https://discuss.elastic.co/t/dynamic-buckets-ranges/328584 "2023-03-27T08:02:31Z")

</div>

Hi all I have a list a properties with zip code, square meter, number of rooms, sale price... in ES and with an input I want to build a query to get the optimal price range for a new property which depend of course of a…

---

## [Logstash: replacement of the Coralogix/Ruby output plugin with http output plugin requires x2 resources](https://discuss.elastic.co/t/logstash-replacement-of-the-coralogix-ruby-output-plugin-with-http-output-plugin-requires-x2-resources/327558)

<div class="topic-metadata">

**Author:** [@AlexKonkin](https://discuss.elastic.co/u/AlexKonkin)\
**Replies:** 4\
**Last updated:** [March 27, 2023, 6:56am UTC](https://discuss.elastic.co/t/logstash-replacement-of-the-coralogix-ruby-output-plugin-with-http-output-plugin-requires-x2-resources/327558 "2023-03-27T06:56:31Z")

</div>

According to the Coralogix they are going to drop support of their Coralogix/Ruby based plugin. As the replacement it is proposed to use http output plugin. You can find the relevant details by navigating the URL below:…

---

## [Stack Monitoring does not show my added ES cluster](https://discuss.elastic.co/t/stack-monitoring-does-not-show-my-added-es-cluster/328562)

<div class="topic-metadata">

**Author:** [@stobbe](https://discuss.elastic.co/u/stobbe)\
**Replies:** 4\
**Last updated:** [March 27, 2023, 6:39am UTC](https://discuss.elastic.co/t/stack-monitoring-does-not-show-my-added-es-cluster/328562 "2023-03-27T06:39:38Z")

</div>

Hello, I have deployed an elastic-agent and included the elasticsearch integration. The agent runs without Fleet, and data is filling the indexes. The problem is that I so not see the cluster appear in my Stack Monito…

---

## [Ingress configuration to access Kibana from the internet](https://discuss.elastic.co/t/ingress-configuration-to-access-kibana-from-the-internet/328406)

<div class="topic-metadata">

**Author:** [@arazmi](https://discuss.elastic.co/u/arazmi)\
**Replies:** 1\
**Last updated:** [March 27, 2023, 6:33am UTC](https://discuss.elastic.co/t/ingress-configuration-to-access-kibana-from-the-internet/328406 "2023-03-27T06:33:48Z")

</div>

I've been following this guide here Deploy a Kibana instance | Elastic Cloud on Kubernetes \[master\] | Elastic, and I have also configured the following ingress: apiVersion: networking.k8s.io/v1 kind: Ingress metadata: …

---

## [Indices\_boost not work for has\_child query](https://discuss.elastic.co/t/indices-boost-not-work-for-has-child-query/328566)

<div class="topic-metadata">

**Author:** [@Tiago1515](https://discuss.elastic.co/u/Tiago1515)\
**Replies:** 0\
**Last updated:** [March 26, 2023, 7:57pm UTC](https://discuss.elastic.co/t/indices-boost-not-work-for-has-child-query/328566 "2023-03-26T19:57:33Z")

</div>

Context Elasticsearch version: 8.8.0-SNAPSHOT (Commit: 56633e0a2934b03090ab726c33e5289129c98bfe \[56633e0\]) Lucene version: lucene-join-9.6.0-SNAPSHOT I create two equals indices: PUT /question\_answer\_1 { "aliases": …

---

## [Search request's timeout doesn't work as expected](https://discuss.elastic.co/t/search-requests-timeout-doesnt-work-as-expected/328247)

<div class="topic-metadata">

**Author:** [@hari-ram-s](https://discuss.elastic.co/u/hari-ram-s)\
**Replies:** 17\
**Last updated:** [March 26, 2023, 7:24pm UTC](https://discuss.elastic.co/t/search-requests-timeout-doesnt-work-as-expected/328247 "2023-03-26T19:24:21Z")

</div>

ES Verson: 7.15.0 We were exploring the significant\_text plugin of ES (via REST API) for generating word cloud from our data. As the query took more time to execute, we decided to use a timeout. Here is what the officia…

---

## [Runing multiple Kibana Instances vs load balancing](https://discuss.elastic.co/t/runing-multiple-kibana-instances-vs-load-balancing/328550)

<div class="topic-metadata">

**Author:** [@stefws](https://discuss.elastic.co/u/stefws)\
**Replies:** 5\
**Last updated:** [March 26, 2023, 4:14pm UTC](https://discuss.elastic.co/t/runing-multiple-kibana-instances-vs-load-balancing/328550 "2023-03-26T16:14:56Z")

</div>

Want to load balancing multiple Kibana v.8.6 instances, wondering if login sessions are to be considered state-less or if we need to apply session stickyness and if rooted sticky on what, cookie...? Also what to do abou…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=409)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=411)
