# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=440

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 441

---

## [Elasticsearch](https://discuss.elastic.co/t/elasticsearch/325023)

<div class="topic-metadata">

**Author:** [@MahithaSarala](https://discuss.elastic.co/u/MahithaSarala)\
**Replies:** 3\
**Last updated:** [February 8, 2023, 3:58pm UTC](https://discuss.elastic.co/t/elasticsearch/325023 "2023-02-08T15:58:42Z")

</div>

Hi Team, Is there any major changes and Features in the elasticsearch V7.14 to 8.5.3 Thanks&Regards, SM

---

## [Add description to my logstas index based on another csv field](https://discuss.elastic.co/t/add-description-to-my-logstas-index-based-on-another-csv-field/325002)

<div class="topic-metadata">

**Author:** [@Miriam](https://discuss.elastic.co/u/Miriam)\
**Replies:** 3\
**Last updated:** [February 8, 2023, 3:58pm UTC](https://discuss.elastic.co/t/add-description-to-my-logstas-index-based-on-another-csv-field/325002 "2023-02-08T15:58:21Z")

</div>

I have my index created using logstah config file. Reading from log file following information: id, iduser,datetimInit, dateTimeends 0001 210 2023-02-03 04:45:16.78 2023-02-03 04:46:16.78 0002 1003 2023-02-03 08:45:16.7…

---

## [Rank based on rarity of a field value](https://discuss.elastic.co/t/rank-based-on-rarity-of-a-field-value/323546)

<div class="topic-metadata">

**Author:** [@pheeria](https://discuss.elastic.co/u/pheeria)\
**Replies:** 3\
**Last updated:** [February 8, 2023, 3:09pm UTC](https://discuss.elastic.co/t/rank-based-on-rarity-of-a-field-value/323546 "2023-02-08T15:09:34Z")

</div>

Hi :vulcan\_salute: I'd like to know how can I rank lower items, which have fields that are frequently appearing among the results. Say, we have a similar result set: "name": "Red T-Shirt" "store": "Zara" "name": "Yel…

---

## [Recovering data from a persistent queue page file](https://discuss.elastic.co/t/recovering-data-from-a-persistent-queue-page-file/325029)

<div class="topic-metadata">

**Author:** [@peter\_west](https://discuss.elastic.co/u/peter_west)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 2:10pm UTC](https://discuss.elastic.co/t/recovering-data-from-a-persistent-queue-page-file/325029 "2023-02-08T14:10:59Z")

</div>

Is there any means by which you can reprocess data from a page file into an Elasticsearch index? My instincts tell me not because the likelihood is that the page file will probably have a partial record at the start so …

---

## [Sum of a field in a parent node and grouping by a field in a child node](https://discuss.elastic.co/t/sum-of-a-field-in-a-parent-node-and-grouping-by-a-field-in-a-child-node/324948)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 4\
**Last updated:** [February 8, 2023, 1:46pm UTC](https://discuss.elastic.co/t/sum-of-a-field-in-a-parent-node-and-grouping-by-a-field-in-a-child-node/324948 "2023-02-08T13:46:55Z")

</div>

I'm trying to get the sum of a field in a parent node while aggregating on a field of a child node. For example, this is what I've setup: PUT order POST order/\_mapping { "properties": { "order\_items": { "t…

---

## [Kibana deprecated scripted fields](https://discuss.elastic.co/t/kibana-deprecated-scripted-fields/324657)

<div class="topic-metadata">

**Author:** [@YvorL](https://discuss.elastic.co/u/YvorL)\
**Replies:** 4\
**Last updated:** [February 8, 2023, 1:33pm UTC](https://discuss.elastic.co/t/kibana-deprecated-scripted-fields/324657 "2023-02-08T13:33:16Z")

</div>

Hi, My current setup uses scripted fields for the node name in the Metricbeat index. The goal is to be able to open a specific monitoring dashboard for that VM. As I see, this was deprecated from 7.13, but I'm not sure …

---

## [How to pick up certain Logstash events so I can ignore/work on them](https://discuss.elastic.co/t/how-to-pick-up-certain-logstash-events-so-i-can-ignore-work-on-them/324935)

<div class="topic-metadata">

**Author:** [@SamuelSMendes](https://discuss.elastic.co/u/SamuelSMendes)\
**Replies:** 4\
**Last updated:** [February 8, 2023, 12:25pm UTC](https://discuss.elastic.co/t/how-to-pick-up-certain-logstash-events-so-i-can-ignore-work-on-them/324935 "2023-02-08T12:25:00Z")

</div>

So I've been working with a Logstash pipeline which deals with creating and updating a few documents. And when the schedule hits and the creation repeats the following line pop up: \[2023-02-07T17:36:07,915\]\[WARN \]\[logst…

---

## [Install elastic agent on unmanaged AWS cluster to Secured Elastic cloud fleet](https://discuss.elastic.co/t/install-elastic-agent-on-unmanaged-aws-cluster-to-secured-elastic-cloud-fleet/325011)

<div class="topic-metadata">

**Author:** [@venkatkumar229](https://discuss.elastic.co/u/venkatkumar229)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 11:42am UTC](https://discuss.elastic.co/t/install-elastic-agent-on-unmanaged-aws-cluster-to-secured-elastic-cloud-fleet/325011 "2023-02-08T11:42:00Z")

</div>

Hi Team, We are having a Elastic cloud secured cluster and we are trying to install an elastic agent on a unmanaged AWS cluster to send data to Elasticsearch. So we have crated a private link and added the same in our E…

---

## [Eland dataframe: search\_phase\_execution\_exception](https://discuss.elastic.co/t/eland-dataframe-search-phase-execution-exception/325006)

<div class="topic-metadata">

**Author:** [@mruiter](https://discuss.elastic.co/u/mruiter)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 11:02am UTC](https://discuss.elastic.co/t/eland-dataframe-search-phase-execution-exception/325006 "2023-02-08T11:02:27Z")

</div>

Hello everybody, For our ETL process we're loading multiple indices, however for the bigger ones with 10 million+ rows, we sometimes run into an error on our server. Other times all the indices will load correctly. The …

---

## [Elasticsearch query to SQL](https://discuss.elastic.co/t/elasticsearch-query-to-sql/324814)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 2\
**Last updated:** [February 8, 2023, 10:35am UTC](https://discuss.elastic.co/t/elasticsearch-query-to-sql/324814 "2023-02-08T10:35:42Z")

</div>

I know there is SQL API which can convert SQL query to REST is there a way around. convert REST query to SQL ?

---

## [Line Chart - How to filter for one single Term](https://discuss.elastic.co/t/line-chart-how-to-filter-for-one-single-term/324983)

<div class="topic-metadata">

**Author:** [@tinrik](https://discuss.elastic.co/u/tinrik)\
**Replies:** 1\
**Last updated:** [February 8, 2023, 10:29am UTC](https://discuss.elastic.co/t/line-chart-how-to-filter-for-one-single-term/324983 "2023-02-08T10:29:15Z")

</div>

Hi, I have a dataset where files can belong to categories a and b that looks like follows: { file: foo, category = \[a\], value = 123, timestamp = 1 } { file: bar, category = \[a, b\], value = 321, timestamp = 1 } ... …

---

## [Is there a limit on number of fields on which we can aggregate?](https://discuss.elastic.co/t/is-there-a-limit-on-number-of-fields-on-which-we-can-aggregate/324947)

<div class="topic-metadata">

**Author:** [@mattkallo](https://discuss.elastic.co/u/mattkallo)\
**Replies:** 3\
**Last updated:** [February 8, 2023, 7:13am UTC](https://discuss.elastic.co/t/is-there-a-limit-on-number-of-fields-on-which-we-can-aggregate/324947 "2023-02-08T07:13:06Z")

</div>

Is there a limit on number of fields on which we can aggregate? I could not find any specific info on this. I could find details on # of buckets for a given field, but not for the number of fields itself. Currently I h…

---

## [Dynamic Generate CSV in Logstash csv output plugin](https://discuss.elastic.co/t/dynamic-generate-csv-in-logstash-csv-output-plugin/324301)

<div class="topic-metadata">

**Author:** [@Rakhshunda\_Noorein\_J](https://discuss.elastic.co/u/Rakhshunda_Noorein_J)\
**Replies:** 2\
**Last updated:** [February 8, 2023, 6:09am UTC](https://discuss.elastic.co/t/dynamic-generate-csv-in-logstash-csv-output-plugin/324301 "2023-02-08T06:09:19Z")

</div>

Hello, I want to dynamically generate my csv file with current date. My conf---- csv { fields =\> \["id" , "name"\] path =\> "test-%{+YYYY-MM-dd}.csv" } but it is not working.. It is generating file as : test-.…

---

## [Compression algorithm for best Search Performance in Elastic](https://discuss.elastic.co/t/compression-algorithm-for-best-search-performance-in-elastic/324972)

<div class="topic-metadata">

**Author:** [@siddhartha\_c](https://discuss.elastic.co/u/siddhartha_c)\
**Replies:** 1\
**Last updated:** [February 8, 2023, 6:02am UTC](https://discuss.elastic.co/t/compression-algorithm-for-best-search-performance-in-elastic/324972 "2023-02-08T06:02:55Z")

</div>

Hi Team, Which is the best compression algorithm in Elastic for the best search performance. We have 100 TB of data to be indexed in an Index. The idea is to have best search performance as a trade off with the index s…

---

## [Problem in Metricbeat for kubernetes monitoring deployed by ECK](https://discuss.elastic.co/t/problem-in-metricbeat-for-kubernetes-monitoring-deployed-by-eck/324967)

<div class="topic-metadata">

**Author:** [@yesrenga](https://discuss.elastic.co/u/yesrenga)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 5:24am UTC](https://discuss.elastic.co/t/problem-in-metricbeat-for-kubernetes-monitoring-deployed-by-eck/324967 "2023-02-08T05:24:02Z")

</div>

Hello, In order to monitor my k8s cluster, I deployed Elasticsearch, Kibana and Metricbeat referring to the article this yaml First I had issues since there was no kube-state-metrics enabled on the cluster, I then ref…

---

## [Zombie process continuous generated by elastic-agent](https://discuss.elastic.co/t/zombie-process-continuous-generated-by-elastic-agent/324966)

<div class="topic-metadata">

**Author:** [@Xu\_Danny](https://discuss.elastic.co/u/Xu_Danny)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 5:17am UTC](https://discuss.elastic.co/t/zombie-process-continuous-generated-by-elastic-agent/324966 "2023-02-08T05:17:12Z")

</div>

found zombie process which parent process is elastic-agent, after kill elastic-agent for a while, it automatically start and generate new zombie child process. root@cdh1:~# ps -A -ostat,ppid,pid,cmd|grep elastic-agent S…

---

## [Adding Custom processors with Elastic-Agent](https://discuss.elastic.co/t/adding-custom-processors-with-elastic-agent/324958)

<div class="topic-metadata">

**Author:** [@Blason](https://discuss.elastic.co/u/Blason)\
**Replies:** 3\
**Last updated:** [February 8, 2023, 3:47am UTC](https://discuss.elastic.co/t/adding-custom-processors-with-elastic-agent/324958 "2023-02-08T03:47:20Z")

</div>

Hi, I wrote a custom parser with dissect processor for collecting fail2ban-logs. Those are working fine for the servers where logs are being collected using filebeat however I am not sure how do I add those with where I…

---

## [Running percolate query against document date value](https://discuss.elastic.co/t/running-percolate-query-against-document-date-value/324950)

<div class="topic-metadata">

**Author:** [@Matthew\_Greenfield](https://discuss.elastic.co/u/Matthew_Greenfield)\
**Replies:** 0\
**Last updated:** [February 8, 2023, 1:49am UTC](https://discuss.elastic.co/t/running-percolate-query-against-document-date-value/324950 "2023-02-08T01:49:04Z")

</div>

I have a query that checks to see if a date is more than a year old with something like: "range": { "some\_date": { "gt": "now-1y" } } But I need to also figure out if that document WILL BE more than a year old …

---

## [Accent with edge ngram token filter](https://discuss.elastic.co/t/accent-with-edge-ngram-token-filter/324863)

<div class="topic-metadata">

**Author:** [@Bob\_Guo](https://discuss.elastic.co/u/Bob_Guo)\
**Replies:** 2\
**Last updated:** [February 8, 2023, 12:15am UTC](https://discuss.elastic.co/t/accent-with-edge-ngram-token-filter/324863 "2023-02-08T00:15:52Z")

</div>

Hi, I have a custom analyzer which uses the edge\_ngram token filer. Below is the setup: "analysis": { "filter": { "my\_filter": { "type": "edge\_ngram", "min\_gram": "1", …

---

## [Failed to index dataframe](https://discuss.elastic.co/t/failed-to-index-dataframe/324944)

<div class="topic-metadata">

**Author:** [@OnTheRoad](https://discuss.elastic.co/u/OnTheRoad)\
**Replies:** 1\
**Last updated:** [February 7, 2023, 11:29pm UTC](https://discuss.elastic.co/t/failed-to-index-dataframe/324944 "2023-02-07T23:29:25Z")

</div>

Hello everyone, I'm starting using ES and I'm really having trouble to index a dataframe. dataframe looks like : So far I wrote the following code : es\_client = Elasticsearch(hosts = "http://xxx.xxx.xxx.xxx:9200",…

---

## [Ssl\_certificate\_authorities seems to have no effect](https://discuss.elastic.co/t/ssl-certificate-authorities-seems-to-have-no-effect/324934)

<div class="topic-metadata">

**Author:** [@hexoffender](https://discuss.elastic.co/u/hexoffender)\
**Replies:** 1\
**Last updated:** [February 7, 2023, 10:44pm UTC](https://discuss.elastic.co/t/ssl-certificate-authorities-seems-to-have-no-effect/324934 "2023-02-07T22:44:36Z")

</div>

I'm getting an error in filebeat: ERROR \[publisher\_pipeline\_output\] pipeline/output.go:154 Failed to connect to backoff(async(tcp://localhost:5044)): x509: certificate signed by unknown authority Here is my logstash co…

---

## [Problems with ELK over EKS Amazon and kubernetes](https://discuss.elastic.co/t/problems-with-elk-over-eks-amazon-and-kubernetes/324851)

<div class="topic-metadata">

**Author:** [@Milton](https://discuss.elastic.co/u/Milton)\
**Replies:** 3\
**Last updated:** [February 7, 2023, 10:08pm UTC](https://discuss.elastic.co/t/problems-with-elk-over-eks-amazon-and-kubernetes/324851 "2023-02-07T22:08:15Z")

</div>

How can I configure an Elasticksearch ELK over EKS for claim persistent volumes, I have disk problems. kubectl get pods -A NAMESPACE NAME READY STATUS RESTARTS AGE default counter 1/1 Running 0 112m kube-logging is-c…

---

## [These two nested aggregations produce the same result, but is one approach better than the other?](https://discuss.elastic.co/t/these-two-nested-aggregations-produce-the-same-result-but-is-one-approach-better-than-the-other/324941)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 0\
**Last updated:** [February 7, 2023, 9:59pm UTC](https://discuss.elastic.co/t/these-two-nested-aggregations-produce-the-same-result-but-is-one-approach-better-than-the-other/324941 "2023-02-07T21:59:00Z")

</div>

I have two scenarios that produce identical aggregation results in the final GET order/\_search query. The only difference between the two scenarios is where I choose to declare the type: nested in the mapping and what I…

---

## [Confirm that I don't need \`type: nested\` on every node of my index mapping for the document tree?](https://discuss.elastic.co/t/confirm-that-i-dont-need-type-nested-on-every-node-of-my-index-mapping-for-the-document-tree/324907)

<div class="topic-metadata">

**Author:** [@learningelastic](https://discuss.elastic.co/u/learningelastic)\
**Replies:** 7\
**Last updated:** [February 7, 2023, 9:53pm UTC](https://discuss.elastic.co/t/confirm-that-i-dont-need-type-nested-on-every-node-of-my-index-mapping-for-the-document-tree/324907 "2023-02-07T21:53:28Z")

</div>

I just have a question about the type: nested in the index mappings. Let's say I have documents where I want to aggregate on order.order\_items.product.manufacturer.contact.name. Initially I made my mapping like this {…

---

## [Does anyone have a good tutorial for setting up python flask with elasticsearch in windows 11?](https://discuss.elastic.co/t/does-anyone-have-a-good-tutorial-for-setting-up-python-flask-with-elasticsearch-in-windows-11/324938)

<div class="topic-metadata">

**Author:** [@aaaaaaaaaaaa](https://discuss.elastic.co/u/aaaaaaaaaaaa)\
**Replies:** 0\
**Last updated:** [February 7, 2023, 9:20pm UTC](https://discuss.elastic.co/t/does-anyone-have-a-good-tutorial-for-setting-up-python-flask-with-elasticsearch-in-windows-11/324938 "2023-02-07T21:20:34Z")

</div>

I found this tutorial The Flask Mega-Tutorial Part XVI: Full-Text Search - miguelgrinberg.com which I am using. When asking for a tutorial I am asking for setting up of Elasticsearch not the actual code for Elasticsearch…

---

## [I am trying to connect to http://localhost:9200 in my browser and I am getting an error that says check the proxy or firewall. I am using windows 11](https://discuss.elastic.co/t/i-am-trying-to-connect-to-http-localhost-9200-in-my-browser-and-i-am-getting-an-error-that-says-check-the-proxy-or-firewall-i-am-using-windows-11/323876)

<div class="topic-metadata">

**Author:** [@aaaaaaaaaaaa](https://discuss.elastic.co/u/aaaaaaaaaaaa)\
**Replies:** 2\
**Last updated:** [February 7, 2023, 9:16pm UTC](https://discuss.elastic.co/t/i-am-trying-to-connect-to-http-localhost-9200-in-my-browser-and-i-am-getting-an-error-that-says-check-the-proxy-or-firewall-i-am-using-windows-11/323876 "2023-02-07T21:16:20Z")

</div>

I am using windows 11 and google chrome. I followed all the steps in the video above. It was working . Then I try again a few days later when I try to go http://localhost:9200. I even tried https://localh…

---

## [How to Freeze the Filters on Kibana dashboard](https://discuss.elastic.co/t/how-to-freeze-the-filters-on-kibana-dashboard/324918)

<div class="topic-metadata">

**Author:** [@riddhipatel259](https://discuss.elastic.co/u/riddhipatel259)\
**Replies:** 1\
**Last updated:** [February 7, 2023, 3:47pm UTC](https://discuss.elastic.co/t/how-to-freeze-the-filters-on-kibana-dashboard/324918 "2023-02-07T15:47:42Z")

</div>

Is there a way we can freeze/Lock the filters on kibana dashboard -so As users scroll down that top filters stays there on the page ? Thank you!

---

## [Kibana all of a sudden requesting a larger result\_window?](https://discuss.elastic.co/t/kibana-all-of-a-sudden-requesting-a-larger-result-window/322945)

<div class="topic-metadata">

**Author:** [@gborg](https://discuss.elastic.co/u/gborg)\
**Replies:** 2\
**Last updated:** [February 7, 2023, 3:41pm UTC](https://discuss.elastic.co/t/kibana-all-of-a-sudden-requesting-a-larger-result-window/322945 "2023-02-07T15:41:37Z")

</div>

Hello I have a cluster with multiple elasticsearch nodes and a kibana server I have not made any modifications to kibana recently, nor the indexing settings but all of a sudden one day I get "X of Y shards failed" and …

---

## [Rename all index pattern name](https://discuss.elastic.co/t/rename-all-index-pattern-name/324872)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 5\
**Last updated:** [February 7, 2023, 3:29pm UTC](https://discuss.elastic.co/t/rename-all-index-pattern-name/324872 "2023-02-07T15:29:36Z")

</div>

Hello All, I'd like to rename my index pattern,what would be best way to do it correctly.I just want that duplicate dashboards or visuals are not created. current index pattern cahnged index pattern(Rename to…

---

## [Aggregating articles by mentions of games between two dates](https://discuss.elastic.co/t/aggregating-articles-by-mentions-of-games-between-two-dates/324889)

<div class="topic-metadata">

**Author:** [@Matthew\_Hammond](https://discuss.elastic.co/u/Matthew_Hammond)\
**Replies:** 3\
**Last updated:** [February 7, 2023, 3:02pm UTC](https://discuss.elastic.co/t/aggregating-articles-by-mentions-of-games-between-two-dates/324889 "2023-02-07T15:02:01Z")

</div>

I have the following query which returns data from a database of articles published about different video games. GET articles/\_search { "query": { "bool": { "must": \[ { "term": { …

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=439)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=441)
