# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=417

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 418

---

## [Elastic Engineer On Demand - File Repository Issue](https://discuss.elastic.co/t/elastic-engineer-on-demand-file-repository-issue/327890)

<div class="topic-metadata">

**Author:** [@Ladygadget](https://discuss.elastic.co/u/Ladygadget)\
**Replies:** 0\
**Last updated:** [March 16, 2023, 11:04pm UTC](https://discuss.elastic.co/t/elastic-engineer-on-demand-file-repository-issue/327890 "2023-03-16T23:04:03Z")

</div>

Course: Elastic Engineering On Demand Version: Version 8.1 Question: I just enrolled in the Elastic Engineering on demand training. The file repository is showing a document and a zip file in Japanese. Is there an Eng…

---

## [How to return more than 10k hits in spring boot without changing the index.max\_result\_window from elasticsearch 8.6](https://discuss.elastic.co/t/how-to-return-more-than-10k-hits-in-spring-boot-without-changing-the-index-max-result-window-from-elasticsearch-8-6/327888)

<div class="topic-metadata">

**Author:** [@BEY\_MEHREZ](https://discuss.elastic.co/u/BEY_MEHREZ)\
**Replies:** 0\
**Last updated:** [March 16, 2023, 10:00pm UTC](https://discuss.elastic.co/t/how-to-return-more-than-10k-hits-in-spring-boot-without-changing-the-index-max-result-window-from-elasticsearch-8-6/327888 "2023-03-16T22:00:33Z")

</div>

Hello ! I want to return all the documents matching my query but the limit is set to 10k ? What can I do to return all the documents ( they are so much higher than 10k documents) without changing the index.max\_result\_wi…

---

## [Add field with same value for all docs in the index](https://discuss.elastic.co/t/add-field-with-same-value-for-all-docs-in-the-index/327880)

<div class="topic-metadata">

**Author:** [@fzar](https://discuss.elastic.co/u/fzar)\
**Replies:** 0\
**Last updated:** [March 16, 2023, 8:25pm UTC](https://discuss.elastic.co/t/add-field-with-same-value-for-all-docs-in-the-index/327880 "2023-03-16T20:25:01Z")

</div>

Hello, I am writing to ask you about a question regarding the correct approach to take in these cases. We have reports that have a country by default (it is defined when the report is defined) and we have an index that …

---

## [Is there any way to monitor machine using machine name rather than monitor.ip?](https://discuss.elastic.co/t/is-there-any-way-to-monitor-machine-using-machine-name-rather-than-monitor-ip/327042)

<div class="topic-metadata">

**Author:** [@Nitin08bisht](https://discuss.elastic.co/u/Nitin08bisht)\
**Replies:** 8\
**Last updated:** [March 16, 2023, 7:42pm UTC](https://discuss.elastic.co/t/is-there-any-way-to-monitor-machine-using-machine-name-rather-than-monitor-ip/327042 "2023-03-16T19:42:28Z")

</div>

Hi @Andrew\_Cholakian1 , I am trying to create alert to monitor server for specific machine by using the machine name rather than using the machine.ip but not getting any key value. Please let me know, How can I do this…

---

## [Add new fields based on hostname substring](https://discuss.elastic.co/t/add-new-fields-based-on-hostname-substring/327845)

<div class="topic-metadata">

**Author:** [@lemospt](https://discuss.elastic.co/u/lemospt)\
**Replies:** 4\
**Last updated:** [March 16, 2023, 7:41pm UTC](https://discuss.elastic.co/t/add-new-fields-based-on-hostname-substring/327845 "2023-03-16T19:41:53Z")

</div>

Hi guys, i want to add new fields based on the information in hostname. Below the examples of what i need, hostname=alfrdnsresolverfixed01 new fields: site=alfr, dns\_type=fixed hostname=boavdnsresolvermbbnat01 new f…

---

## [The get api for kibana spaces doesn't seem to work for python script](https://discuss.elastic.co/t/the-get-api-for-kibana-spaces-doesnt-seem-to-work-for-python-script/327872)

<div class="topic-metadata">

**Author:** [@Bhrugu\_Sharma](https://discuss.elastic.co/u/Bhrugu_Sharma)\
**Replies:** 2\
**Last updated:** [March 16, 2023, 6:38pm UTC](https://discuss.elastic.co/t/the-get-api-for-kibana-spaces-doesnt-seem-to-work-for-python-script/327872 "2023-03-16T18:38:33Z")

</div>

i need to get the spaces from my kibana and i am writing my python code for that import requests response = requests.get('https://\<correct ELASTICSEARCH URL\>:443/api/spaces/space', auth=HTTPBasicAuth('elastic', 'CORREC…

---

## [Upgrade Assistant - Critical Errors!](https://discuss.elastic.co/t/upgrade-assistant-critical-errors/327650)

<div class="topic-metadata">

**Author:** [@Arunaps](https://discuss.elastic.co/u/Arunaps)\
**Replies:** 1\
**Last updated:** [March 16, 2023, 3:11pm UTC](https://discuss.elastic.co/t/upgrade-assistant-critical-errors/327650 "2023-03-16T15:11:17Z")

</div>

Hi, We are trying to upgrade our ELK from 7.17 to 8.6 using upgrade Assistant. It is showing critical alert in Kibana and as follows:- Configuring the "container ID" field has been deprecated and will be removed in 8.…

---

## [Analyze API in NodeJS](https://discuss.elastic.co/t/analyze-api-in-nodejs/327666)

<div class="topic-metadata">

**Author:** [@tirth\_pipalia](https://discuss.elastic.co/u/tirth_pipalia)\
**Replies:** 4\
**Last updated:** [March 16, 2023, 3:07pm UTC](https://discuss.elastic.co/t/analyze-api-in-nodejs/327666 "2023-03-16T15:07:17Z")

</div>

I added html\_strip ad analyzer in the settings of an index. const esObject = { analyzer: 'html\_analyzer', text: ' This is Bold , }; So as per documentation this work in my Kibana Console but I want to use GET \_index…

---

## [Logstash performance issues](https://discuss.elastic.co/t/logstash-performance-issues/327679)

<div class="topic-metadata">

**Author:** [@AKAM14](https://discuss.elastic.co/u/AKAM14)\
**Replies:** 9\
**Last updated:** [March 16, 2023, 1:50pm UTC](https://discuss.elastic.co/t/logstash-performance-issues/327679 "2023-03-16T13:50:28Z")

</div>

Hi , I Have a Logstash 7.17 version , i have two logstash servers in my Setup that gets connected to a 3 node ELK Cluster. One Kibana server We are experiencing less data getting populated in the kibana dashboards. wh…

---

## [Adding a low configuration server as an additional node to elasticsearch cluster?](https://discuss.elastic.co/t/adding-a-low-configuration-server-as-an-additional-node-to-elasticsearch-cluster/327794)

<div class="topic-metadata">

**Author:** [@Shreesh\_Narayanan](https://discuss.elastic.co/u/Shreesh_Narayanan)\
**Replies:** 6\
**Last updated:** [March 16, 2023, 1:16pm UTC](https://discuss.elastic.co/t/adding-a-low-configuration-server-as-an-additional-node-to-elasticsearch-cluster/327794 "2023-03-16T13:16:14Z")

</div>

Hi , I have a single node elasticsearch cluster that may be having slow indexing performance (we have logstash's batch size about 2000 and workers at 40 pushing data to elasticsearch single node), so we were thinking to…

---

## [Lag in Logs](https://discuss.elastic.co/t/lag-in-logs/327840)

<div class="topic-metadata">

**Author:** [@kriti\_dabas](https://discuss.elastic.co/u/kriti_dabas)\
**Replies:** 0\
**Last updated:** [March 16, 2023, 10:23am UTC](https://discuss.elastic.co/t/lag-in-logs/327840 "2023-03-16T10:23:29Z")

</div>

Why is there a lag in my logs that too for a particular group? I have four kafka consumer groups out of which one group is not giving real-time logs. There is a one hour delay in the working hours whenever I monitor th…

---

## [Monitoring index\_pressure](https://discuss.elastic.co/t/monitoring-index-pressure/327835)

<div class="topic-metadata">

**Author:** [@avnere](https://discuss.elastic.co/u/avnere)\
**Replies:** 0\
**Last updated:** [March 16, 2023, 9:12am UTC](https://discuss.elastic.co/t/monitoring-index-pressure/327835 "2023-03-16T09:12:49Z")

</div>

Hi, I want to monitor index\_pressure (indexing\_pressure.memory.current.all\_in\_bytes) in Kibana. How can I add this graph? Thanks

---

## [Duplicate entries in elastic for the same message](https://discuss.elastic.co/t/duplicate-entries-in-elastic-for-the-same-message/327732)

<div class="topic-metadata">

**Author:** [@aks03](https://discuss.elastic.co/u/aks03)\
**Replies:** 3\
**Last updated:** [March 16, 2023, 8:58am UTC](https://discuss.elastic.co/t/duplicate-entries-in-elastic-for-the-same-message/327732 "2023-03-16T08:58:46Z")

</div>

Hey everyone, I have been trying to fix this error of duplicate entries into Elasticsearch through logstash Below is the example of the two entries Entry 1: { "\_index": "test-index", "\_type": "doc", "\_id": "3044350…

---

## [Is it possible to call a python script in logstash?](https://discuss.elastic.co/t/is-it-possible-to-call-a-python-script-in-logstash/327825)

<div class="topic-metadata">

**Author:** [@mruthyu](https://discuss.elastic.co/u/mruthyu)\
**Replies:** 1\
**Last updated:** [March 16, 2023, 8:44am UTC](https://discuss.elastic.co/t/is-it-possible-to-call-a-python-script-in-logstash/327825 "2023-03-16T08:44:11Z")

</div>

Is it possible to call a python script in logstash pipeline? or only the RUBY language is supported?

---

## [How to create mass amounts of test data in elasticsearch / Kibana](https://discuss.elastic.co/t/how-to-create-mass-amounts-of-test-data-in-elasticsearch-kibana/327637)

<div class="topic-metadata">

**Author:** [@shelby](https://discuss.elastic.co/u/shelby)\
**Replies:** 5\
**Last updated:** [March 16, 2023, 8:35am UTC](https://discuss.elastic.co/t/how-to-create-mass-amounts-of-test-data-in-elasticsearch-kibana/327637 "2023-03-16T08:35:49Z")

</div>

0 I need to test some logic I have written in Kibana (Vega scripts). For this I require quite a bit of data to generate the graphs. I am currently doing this manually with statements such as: post /metrics-hardware-xx…

---

## [Elasticsearch Master CPU being used 100% at times](https://discuss.elastic.co/t/elasticsearch-master-cpu-being-used-100-at-times/327801)

<div class="topic-metadata">

**Author:** [@aayush\_kumar](https://discuss.elastic.co/u/aayush_kumar)\
**Replies:** 8\
**Last updated:** [March 16, 2023, 6:54am UTC](https://discuss.elastic.co/t/elasticsearch-master-cpu-being-used-100-at-times/327801 "2023-03-16T06:54:43Z")

</div>

My elasticsearch active master node CPU usage rises to 100% at times and remains the same for few minutes/hours and then comes downs to normal 4-5%. I ran the "hot\_threads" API against the node and found below threads t…

---

## [Script based Bulk Update is not parsing the entire document into \_source](https://discuss.elastic.co/t/script-based-bulk-update-is-not-parsing-the-entire-document-into-source/327800)

<div class="topic-metadata">

**Author:** [@AnushaTalluri](https://discuss.elastic.co/u/AnushaTalluri)\
**Replies:** 0\
**Last updated:** [March 16, 2023, 4:52am UTC](https://discuss.elastic.co/t/script-based-bulk-update-is-not-parsing-the-entire-document-into-source/327800 "2023-03-16T04:52:00Z")

</div>

We have an elasticsearch index created in 6.8.23 version, and we used to use script based updates for the documents, which used to be working fine as expected. After upgrading the Elasticsearch version to 7.17, the scrip…

---

## [How to Export Specific Server System Data On Kibana?](https://discuss.elastic.co/t/how-to-export-specific-server-system-data-on-kibana/327712)

<div class="topic-metadata">

**Author:** [@Tw1cUser](https://discuss.elastic.co/u/Tw1cUser)\
**Replies:** 2\
**Last updated:** [March 16, 2023, 1:42am UTC](https://discuss.elastic.co/t/how-to-export-specific-server-system-data-on-kibana/327712 "2023-03-16T01:42:05Z")

</div>

I have 2 or more servers in kibana dashboard, and I want to export system data for a specific server. how to export system data for specific server?

---

## [How to check length of an array field in logstash](https://discuss.elastic.co/t/how-to-check-length-of-an-array-field-in-logstash/327625)

<div class="topic-metadata">

**Author:** [@yuswanul](https://discuss.elastic.co/u/yuswanul)\
**Replies:** 8\
**Last updated:** [March 16, 2023, 1:12am UTC](https://discuss.elastic.co/t/how-to-check-length-of-an-array-field-in-logstash/327625 "2023-03-16T01:12:14Z")

</div>

Hey everyone, can you give me some example about pipeline config to check if an array field is not null? and how i combine it with if else? i already made config like this and i want to create some if statement under…

---

## [How to change the data directory of a node in a cluster?](https://discuss.elastic.co/t/how-to-change-the-data-directory-of-a-node-in-a-cluster/327779)

<div class="topic-metadata">

**Author:** [@Wpq](https://discuss.elastic.co/u/Wpq)\
**Replies:** 2\
**Last updated:** [March 15, 2023, 10:27pm UTC](https://discuss.elastic.co/t/how-to-change-the-data-directory-of-a-node-in-a-cluster/327779 "2023-03-15T22:27:28Z")

</div>

I have a cluster of 8 nodes. This is an "under development but with real data" kind of project (the worst type of project) and I see that I will soon have problems with disk space of the default data store. path: data…

---

## [Default Sorting Criteria after custom criteria](https://discuss.elastic.co/t/default-sorting-criteria-after-custom-criteria/327207)

<div class="topic-metadata">

**Author:** [@MrIacono](https://discuss.elastic.co/u/MrIacono)\
**Replies:** 3\
**Last updated:** [March 15, 2023, 6:51pm UTC](https://discuss.elastic.co/t/default-sorting-criteria-after-custom-criteria/327207 "2023-03-15T18:51:09Z")

</div>

Hi, If I have these two sorting criteria: "\_score": "desc" "date": "desc" And the query result consists of two documents with same date and same score, What's the third defult criteria? Thank you, Manuel

---

## [Logstash date filter truncating milliseconds when they are set to 000](https://discuss.elastic.co/t/logstash-date-filter-truncating-milliseconds-when-they-are-set-to-000/327770)

<div class="topic-metadata">

**Author:** [@Samuel\_Delepiere](https://discuss.elastic.co/u/Samuel_Delepiere)\
**Replies:** 2\
**Last updated:** [March 15, 2023, 6:05pm UTC](https://discuss.elastic.co/t/logstash-date-filter-truncating-milliseconds-when-they-are-set-to-000/327770 "2023-03-15T18:05:44Z")

</div>

We use the following filter date { match =\> \[ "timestampInUtc" , "UNIX\_MS" \] target =\> "timestamp" timezone =\> "UTC" } This works correctly except when the milliseconds are set to 000. In that case, they get trun…

---

## [Metricbeat - unable to retrieve license information from license server no available connection](https://discuss.elastic.co/t/metricbeat-unable-to-retrieve-license-information-from-license-server-no-available-connection/327113)

<div class="topic-metadata">

**Author:** [@Mary2022](https://discuss.elastic.co/u/Mary2022)\
**Replies:** 5\
**Last updated:** [March 15, 2023, 5:50pm UTC](https://discuss.elastic.co/t/metricbeat-unable-to-retrieve-license-information-from-license-server-no-available-connection/327113 "2023-03-15T17:50:05Z")

</div>

This group has always been helpful and hopefully they can help me again. We created a new cluster and installed 8.6 We have a 3 nodes cluster for Elasticsearch, 2 Logstash and 2 Kibana. We completed the configuring in…

---

## [Terraform, Traffic Filters and Kibana](https://discuss.elastic.co/t/terraform-traffic-filters-and-kibana/327767)

<div class="topic-metadata">

**Author:** [@tensor](https://discuss.elastic.co/u/tensor)\
**Replies:** 0\
**Last updated:** [March 15, 2023, 3:48pm UTC](https://discuss.elastic.co/t/terraform-traffic-filters-and-kibana/327767 "2023-03-15T15:48:58Z")

</div>

Hi! We have been successfully using Terraform to set up Elasticcloud instances, and using traffic filtering to allow only access via private link to our own Azure serup - almost too successful, as it turns out, as it me…

---

## [Certified Analyst practice exam issues](https://discuss.elastic.co/t/certified-analyst-practice-exam-issues/324946)

<div class="topic-metadata">

**Author:** [@ja.carvajal](https://discuss.elastic.co/u/ja.carvajal)\
**Replies:** 2\
**Last updated:** [March 15, 2023, 2:59pm UTC](https://discuss.elastic.co/t/certified-analyst-practice-exam-issues/324946 "2023-03-15T14:59:05Z")

</div>

Continuing the discussion from Certified Analyst practice exam issues: Hello, I am having the same issues that Baron reported. What can I do about it? From a small search I saw that there is data from October until Dec…

---

## [Logs Deprecaction](https://discuss.elastic.co/t/logs-deprecaction/327760)

<div class="topic-metadata">

**Author:** [@LeonardoCord](https://discuss.elastic.co/u/LeonardoCord)\
**Replies:** 0\
**Last updated:** [March 15, 2023, 2:22pm UTC](https://discuss.elastic.co/t/logs-deprecaction/327760 "2023-03-15T14:22:01Z")

</div>

Hola Me esta sacando este error y quisiera saber como podria solucionarlo this request accesses system indices: \[.apm-agent-configuration, .apm-custom-link, .async-search, .fleet-enrollment-api-keys-7, .fleet-policies-…

---

## [Do we have lookup similar to Splunk lookup](https://discuss.elastic.co/t/do-we-have-lookup-similar-to-splunk-lookup/327550)

<div class="topic-metadata">

**Author:** [@Saurabhpandey](https://discuss.elastic.co/u/Saurabhpandey)\
**Replies:** 5\
**Last updated:** [March 15, 2023, 2:19pm UTC](https://discuss.elastic.co/t/do-we-have-lookup-similar-to-splunk-lookup/327550 "2023-03-15T14:19:02Z")

</div>

Do we have lookup similar to Splunk lookup

---

## [Best Web crawler to index data to elasticsearch](https://discuss.elastic.co/t/best-web-crawler-to-index-data-to-elasticsearch/327759)

<div class="topic-metadata">

**Author:** [@Disha\_Bodade](https://discuss.elastic.co/u/Disha_Bodade)\
**Replies:** 0\
**Last updated:** [March 15, 2023, 1:55pm UTC](https://discuss.elastic.co/t/best-web-crawler-to-index-data-to-elasticsearch/327759 "2023-03-15T13:55:05Z")

</div>

Hi Team, As elastic appsearch supports to crawl websites which uses basic auth alone. Any suggestions which web crawler we can use with elasticsearch to crawl the SSO, SAML, NTLM protected websites? Thanks, Disha

---

## [Mapping directly in Logstash Pipeline](https://discuss.elastic.co/t/mapping-directly-in-logstash-pipeline/327757)

<div class="topic-metadata">

**Author:** [@\_Thomas](https://discuss.elastic.co/u/_Thomas)\
**Replies:** 2\
**Last updated:** [March 15, 2023, 1:49pm UTC](https://discuss.elastic.co/t/mapping-directly-in-logstash-pipeline/327757 "2023-03-15T13:49:24Z")

</div>

Hi Guys, since I didn't find anything helpful on the net - I need to ask here: Is it possible to do the Mapping of fields directly in the Logstash Pipeline - either in the Input or in the Filter section? As I do have …

---

## [Actual use of join type field](https://discuss.elastic.co/t/actual-use-of-join-type-field/327627)

<div class="topic-metadata">

**Author:** [@SheetalM](https://discuss.elastic.co/u/SheetalM)\
**Replies:** 5\
**Last updated:** [March 15, 2023, 12:39pm UTC](https://discuss.elastic.co/t/actual-use-of-join-type-field/327627 "2023-03-15T12:39:28Z")

</div>

Hello Experts, We have a use case with a one-to-many relation scenario where number of documents of a child type are huge for one parent type of document. Something similar to a log store where all the events/messages f…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=416)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=418)
