# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=446

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 447

---

## [Elasticsearch Question, Disable nesting](https://discuss.elastic.co/t/elasticsearch-question-disable-nesting/324207)

<div class="topic-metadata">

**Author:** [@tglanz](https://discuss.elastic.co/u/tglanz)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 7:02am UTC](https://discuss.elastic.co/t/elasticsearch-question-disable-nesting/324207 "2023-01-31T07:02:19Z")

</div>

Hi, I have a scenario with documents of the form: { "field": "some value", "properties": { "a": "some value of a", "a.b": "some value of a.b" } } I would like to have the following capabilities: Search…

---

## [Migration via snapshot from ELK to ECK 7.17](https://discuss.elastic.co/t/migration-via-snapshot-from-elk-to-eck-7-17/324046)

<div class="topic-metadata">

**Author:** [@charlot\_Attard](https://discuss.elastic.co/u/charlot_Attard)\
**Replies:** 2\
**Last updated:** [January 31, 2023, 6:52am UTC](https://discuss.elastic.co/t/migration-via-snapshot-from-elk-to-eck-7-17/324046 "2023-01-31T06:52:01Z")

</div>

We are in the process of migrating our indices from an ELK version to an ECK version on k8. We took a snapshot of the indices and when we restored them on ECK all the indices were in red state and the error was no\_shard\_…

---

## [Which is faster? Redis or Elastic](https://discuss.elastic.co/t/which-is-faster-redis-or-elastic/323779)

<div class="topic-metadata">

**Author:** [@MaralErdene\_Tumursuh](https://discuss.elastic.co/u/MaralErdene_Tumursuh)\
**Replies:** 2\
**Last updated:** [January 31, 2023, 6:50am UTC](https://discuss.elastic.co/t/which-is-faster-redis-or-elastic/323779 "2023-01-31T06:50:26Z")

</div>

This is weird question. But I want to clear my confusion. Currently, my app using elastic for displaying list. if i use Redis when user first time fetching data, will my performance is speed up? Thanks in advance.

---

## [Join queries or filter queries across indices](https://discuss.elastic.co/t/join-queries-or-filter-queries-across-indices/324275)

<div class="topic-metadata">

**Author:** [@H-Soni](https://discuss.elastic.co/u/H-Soni)\
**Replies:** 12\
**Last updated:** [January 31, 2023, 6:19am UTC](https://discuss.elastic.co/t/join-queries-or-filter-queries-across-indices/324275 "2023-01-31T06:19:44Z")

</div>

Hi, We are thinking of a document model, where we have data in multiple indices. However, when querying that data, we have to perform a join operation on these indices or to be more precise, filter an index's data using…

---

## [RemoteTransportException](https://discuss.elastic.co/t/remotetransportexception/324083)

<div class="topic-metadata">

**Author:** [@Abhinav\_Raj](https://discuss.elastic.co/u/Abhinav_Raj)\
**Replies:** 11\
**Last updated:** [January 31, 2023, 6:09am UTC](https://discuss.elastic.co/t/remotetransportexception/324083 "2023-01-31T06:09:58Z")

</div>

Hi , what is this error saying. I am getting it multiple times . org.elasticsearch.transport.RemoteTransportException: \[indices:data/read/search\[phase/query\]\] Caused by: org.elasticsearch.search.query.QueryPhaseExecuti…

---

## [Lifecycle action \[migrate\] waiting for \[1\] shards to be moved to the \[data\_warm\] tier (tier migration preference configuration is \[data\_warm, data\_hot\])](https://discuss.elastic.co/t/lifecycle-action-migrate-waiting-for-1-shards-to-be-moved-to-the-data-warm-tier-tier-migration-preference-configuration-is-data-warm-data-hot/323915)

<div class="topic-metadata">

**Author:** [@rahul\_sirugudi](https://discuss.elastic.co/u/rahul_sirugudi)\
**Replies:** 2\
**Last updated:** [January 31, 2023, 5:40am UTC](https://discuss.elastic.co/t/lifecycle-action-migrate-waiting-for-1-shards-to-be-moved-to-the-data-warm-tier-tier-migration-preference-configuration-is-data-warm-data-hot/323915 "2023-01-31T05:40:25Z")

</div>

I have set ILM policy as { "aggregations-lifecycle-policy":{ "version":2, "modified\_date":"2023-01-25T08:51:42.054Z", "policy":{ "phases":{ "warm":{ …

---

## [Eck unable to form a cluster](https://discuss.elastic.co/t/eck-unable-to-form-a-cluster/324229)

<div class="topic-metadata">

**Author:** [@charlot\_Attard](https://discuss.elastic.co/u/charlot_Attard)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 4:46am UTC](https://discuss.elastic.co/t/eck-unable-to-form-a-cluster/324229 "2023-01-31T04:46:54Z")

</div>

Hello, I am tshooting an issue which was escalated by devs. Currently we have a 3 node eck cluster. The problem is that on the pod logs of elastic we are getting this message "Discovery will continue using 127.0.0.1:930…

---

## [How to use FSCrawler with Azure Blob Storage?](https://discuss.elastic.co/t/how-to-use-fscrawler-with-azure-blob-storage/324163)

<div class="topic-metadata">

**Author:** [@AbderrahimAl](https://discuss.elastic.co/u/AbderrahimAl)\
**Replies:** 3\
**Last updated:** [January 29, 2023, 1:30pm UTC](https://discuss.elastic.co/t/how-to-use-fscrawler-with-azure-blob-storage/324163 "2023-01-29T13:30:49Z")

</div>

I want to index the documents stored in Azure Blob Storage into Elasticsearch. Is it possible to use FSCrawler in this case by providing the blob container URL?

---

## [Parse json and non-json logs](https://discuss.elastic.co/t/parse-json-and-non-json-logs/324282)

<div class="topic-metadata">

**Author:** [@true64gurus](https://discuss.elastic.co/u/true64gurus)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 2:52am UTC](https://discuss.elastic.co/t/parse-json-and-non-json-logs/324282 "2023-01-31T02:52:29Z")

</div>

I have multiple Kubernetes clusters sending logs to S3 , then I use logstash to read logs off S3 files. Some logs messages are in JSON , others in structured format. How to dynamically detect and parse JSON , and save n…

---

## [Kibana unreachable: 503 error due to circuit breaking exception](https://discuss.elastic.co/t/kibana-unreachable-503-error-due-to-circuit-breaking-exception/324141)

<div class="topic-metadata">

**Author:** [@mhoward](https://discuss.elastic.co/u/mhoward)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:56am UTC](https://discuss.elastic.co/t/kibana-unreachable-503-error-due-to-circuit-breaking-exception/324141 "2023-01-31T00:56:18Z")

</div>

Hello. I am currently dealing with Kibana being unreachable. The page states "{"statusCode":503,"error":"Service Unavailable","message":"License is not available."}". I don't believe this is an authentication issue as…

---

## [No route to host](https://discuss.elastic.co/t/no-route-to-host/323996)

<div class="topic-metadata">

**Author:** [@MALKARAJ\_K](https://discuss.elastic.co/u/MALKARAJ_K)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:37am UTC](https://discuss.elastic.co/t/no-route-to-host/323996 "2023-01-31T00:37:58Z")

</div>

i am trying to connect a node from different machine to the cluster , this node able to find the master node but not able to join it I couldn't able to find any solution for this es 7.5+

---

## [Operation install messages package registry](https://discuss.elastic.co/t/operation-install-messages-package-registry/323928)

<div class="topic-metadata">

**Author:** [@Tiharqa](https://discuss.elastic.co/u/Tiharqa)\
**Replies:** 0\
**Last updated:** [January 25, 2023, 2:18pm UTC](https://discuss.elastic.co/t/operation-install-messages-package-registry/323928 "2023-01-25T14:18:07Z")

</div>

Following the airgapped documentation attempted to create my own package registery and copied all the files to the repo http server accessible by elasticand kibana. I attempted to upgrade the agetns however I didnt see …

---

## [Type: \_doc why is it still there](https://discuss.elastic.co/t/type-doc-why-is-it-still-there/324033)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 1\
**Last updated:** [January 31, 2023, 12:35am UTC](https://discuss.elastic.co/t/type-doc-why-is-it-still-there/324033 "2023-01-31T00:35:37Z")

</div>

I thought type = \_doc is deprecated. why is it still here and how do I remove it? This is metricbeat 8.5.3 and elastic also 8.5.3 but it comes with type =\> \_doc ( is this correct ) "@metadata" =\> { "target\_ind…

---

## [How do i know how much data is stored in my Elastic search?](https://discuss.elastic.co/t/how-do-i-know-how-much-data-is-stored-in-my-elastic-search/324279)

<div class="topic-metadata">

**Author:** [@Dishatkr](https://discuss.elastic.co/u/Dishatkr)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 11:56pm UTC](https://discuss.elastic.co/t/how-do-i-know-how-much-data-is-stored-in-my-elastic-search/324279 "2023-01-30T23:56:17Z")

</div>

I want to know how much data is stored in my Elastic search, I m exploring the cluster-stats API. Does "store" -\> size\_in\_bytes , show the size of data stored ?

---

## [What ruby gem version should I use with ES 7.17.x](https://discuss.elastic.co/t/what-ruby-gem-version-should-i-use-with-es-7-17-x/324190)

<div class="topic-metadata">

**Author:** [@Russell\_Fulton](https://discuss.elastic.co/u/Russell_Fulton)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 11:47pm UTC](https://discuss.elastic.co/t/what-ruby-gem-version-should-i-use-with-es-7-17-x/324190 "2023-01-30T23:47:37Z")

</div>

I have just brought up a new linux VM to run an application that talks ES 7 but I can not find any gems for version 7. The latest (8.6.0) says that the server is not running ES : (. Presumably it only works with ES 8.x …

---

## [Problems with Scroll and Slice](https://discuss.elastic.co/t/problems-with-scroll-and-slice/324271)

<div class="topic-metadata">

**Author:** [@Olli1](https://discuss.elastic.co/u/Olli1)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 9:17pm UTC](https://discuss.elastic.co/t/problems-with-scroll-and-slice/324271 "2023-01-30T21:17:29Z")

</div>

Hello Com, i have a problem with my Code. When i want to Scroll and Slice about 100.000 data, i get the following Error: # Request: {"scroll":"2m","scroll\_id":"FGluY2x1ZGVfY29udGV4dF91dWlkDnF1ZXJ5VGhlbkZldGNoAhZvNUctQk…

---

## [Problem with restoring old (6.8) indices on ES 8.6.1](https://discuss.elastic.co/t/problem-with-restoring-old-6-8-indices-on-es-8-6-1/324235)

<div class="topic-metadata">

**Author:** [@lno](https://discuss.elastic.co/u/lno)\
**Replies:** 6\
**Last updated:** [January 30, 2023, 8:04pm UTC](https://discuss.elastic.co/t/problem-with-restoring-old-6-8-indices-on-es-8-6-1/324235 "2023-01-30T20:04:17Z")

</div>

Hi, we have some issues with restoring old (6.8.13) indices on the latest 8.6.1 version. Restore fails on some shards with these messages : Caused by: \[users/owINpknoTCmTe2kMmzuRhg\]\[\[users\]\[25\]\] org.elasticsearch.index.…

---

## [NoAliveNodes Elasticsearch-PHP (Ingest-Attachment)](https://discuss.elastic.co/t/noalivenodes-elasticsearch-php-ingest-attachment/324151)

<div class="topic-metadata">

**Author:** [@SplendX](https://discuss.elastic.co/u/SplendX)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 7:21pm UTC](https://discuss.elastic.co/t/noalivenodes-elasticsearch-php-ingest-attachment/324151 "2023-01-30T19:21:12Z")

</div>

Hello, I'm new to programming. when used in php-es code "return $client-\>ingest()-\>putPipeline($params);" outputs an error "NoAliveNodes", but when using for example "return $client-\>index($params);" it works! Plugin Ing…

---

## [Kibana advanced settings does not exist](https://discuss.elastic.co/t/kibana-advanced-settings-does-not-exist/324237)

<div class="topic-metadata">

**Author:** [@furkano](https://discuss.elastic.co/u/furkano)\
**Replies:** 11\
**Last updated:** [January 30, 2023, 5:33pm UTC](https://discuss.elastic.co/t/kibana-advanced-settings-does-not-exist/324237 "2023-01-30T17:33:05Z")

</div>

Hi, i want to edit my default size of rows for discover page, default is 500 and i need to increase that, But i can't access to advanced settings page event with my superuser, and i couldn't find any documentary for how…

---

## [Proper way to escape escape characters](https://discuss.elastic.co/t/proper-way-to-escape-escape-characters/324143)

<div class="topic-metadata">

**Author:** [@hexoffender](https://discuss.elastic.co/u/hexoffender)\
**Replies:** 3\
**Last updated:** [January 30, 2023, 5:31pm UTC](https://discuss.elastic.co/t/proper-way-to-escape-escape-characters/324143 "2023-01-30T17:31:18Z")

</div>

Hello, I have a weird problem. I'm trying to replace \\x5c with \\ in a mutate. However, the logstash config fails to parse when I do this: input { beats { # The port to listen on for filebeat connections. …

---

## [Logstash Array of JSON](https://discuss.elastic.co/t/logstash-array-of-json/324178)

<div class="topic-metadata">

**Author:** [@creative\_sha](https://discuss.elastic.co/u/creative_sha)\
**Replies:** 4\
**Last updated:** [January 30, 2023, 5:53am UTC](https://discuss.elastic.co/t/logstash-array-of-json/324178 "2023-01-30T05:53:48Z")

</div>

How can I Split Array of JSON into different JSON so that per request we will get 1 row?

---

## [Filter on distinct nested documents](https://discuss.elastic.co/t/filter-on-distinct-nested-documents/324168)

<div class="topic-metadata">

**Author:** [@Sadia\_Mukhtar](https://discuss.elastic.co/u/Sadia_Mukhtar)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 5:09pm UTC](https://discuss.elastic.co/t/filter-on-distinct-nested-documents/324168 "2023-01-30T17:09:26Z")

</div>

I am very new to Elasticsearch and it's data modeling techniques. My dataset is a list of users and locations the users' have been associated with. I am trying to implement a type-ahead search on locations, I need to get…

---

## [Best practice for the creation of an index](https://discuss.elastic.co/t/best-practice-for-the-creation-of-an-index/324246)

<div class="topic-metadata">

**Author:** [@QuentinV](https://discuss.elastic.co/u/QuentinV)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 3:55pm UTC](https://discuss.elastic.co/t/best-practice-for-the-creation-of-an-index/324246 "2023-01-30T15:55:20Z")

</div>

Hello. I'm working on a project with Elastic for my company. I have to export some logs from the test software of our solution to an elastic database. Every night, the test software will create many logs with Java, us…

---

## [Change Log Levels for Standalone Elastic Agent](https://discuss.elastic.co/t/change-log-levels-for-standalone-elastic-agent/324243)

<div class="topic-metadata">

**Author:** [@DougR](https://discuss.elastic.co/u/DougR)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 3:27pm UTC](https://discuss.elastic.co/t/change-log-levels-for-standalone-elastic-agent/324243 "2023-01-30T15:27:23Z")

</div>

I am deploying Elastic Agent to my Kubernetes cluster as a standalone agent. Default log level is info. I would like to change the log level for the agent and ALL beats to warning. I've updated my agent.yml to: agent.lo…

---

## [Calculating Chronological Contiguous Document Sequences](https://discuss.elastic.co/t/calculating-chronological-contiguous-document-sequences/324240)

<div class="topic-metadata">

**Author:** [@Guy\_Segev](https://discuss.elastic.co/u/Guy_Segev)\
**Replies:** 0\
**Last updated:** [January 30, 2023, 2:57pm UTC](https://discuss.elastic.co/t/calculating-chronological-contiguous-document-sequences/324240 "2023-01-30T14:57:06Z")

</div>

Hi, Would appreciate help with the following conundrum: I have an index with time-series events; here are some document examples: { "timestamp": 1, "status": "running" } { "timestamp": 2, "status": "running" } { "ti…

---

## [Kafka\_consumer\_lag in Logstash](https://discuss.elastic.co/t/kafka-consumer-lag-in-logstash/324108)

<div class="topic-metadata">

**Author:** [@Ondrej\_S](https://discuss.elastic.co/u/Ondrej_S)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 2:28pm UTC](https://discuss.elastic.co/t/kafka-consumer-lag-in-logstash/324108 "2023-01-30T14:28:23Z")

</div>

Hello, Is it possible to get the value or verify value of “kafka\_consumer\_lag” directly in Logstash 7.17? The idea is to verify: if \[kafka\_consumer\_lag\]\[lag\] == 0 In Logstash Output and if yes run http plugin with u…

---

## [Embed Kibana dashboards without using iframe](https://discuss.elastic.co/t/embed-kibana-dashboards-without-using-iframe/324185)

<div class="topic-metadata">

**Author:** [@sebastian.nordin](https://discuss.elastic.co/u/sebastian.nordin)\
**Replies:** 1\
**Last updated:** [January 30, 2023, 1:00pm UTC](https://discuss.elastic.co/t/embed-kibana-dashboards-without-using-iframe/324185 "2023-01-30T13:00:34Z")

</div>

Currently we embed Kibana dashboards and visualizations on a Portal overview page in a React app, using the normal share iframe method. We've noticed significant increase in page loading time on portals where more than …

---

## [Upgrade ELK from 7.2.0 to 8.4.3](https://discuss.elastic.co/t/upgrade-elk-from-7-2-0-to-8-4-3/324228)

<div class="topic-metadata">

**Author:** [@rampratap](https://discuss.elastic.co/u/rampratap)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 12:56pm UTC](https://discuss.elastic.co/t/upgrade-elk-from-7-2-0-to-8-4-3/324228 "2023-01-30T12:56:11Z")

</div>

I am trying to upgrade from ELK 7.2.0 to 8.4.3 but getting below error , please help or suggest on the compatible version to upgrade to fatal exception while booting Elasticsearch org.elasticsearch.ElasticsearchExceptio…

---

## [Elasticsearch AbstractElasticsearchRepository. e:Request processing failed; nested exception is org.springframework.dao.DataAccessResourceFailureException: Timeout connecting to \[elasticsearch. Timeout connecting to Springboot Application Error](https://discuss.elastic.co/t/elasticsearch-abstractelasticsearchrepository-e-request-processing-failed-nested-exception-is-org-springframework-dao-dataaccessresourcefailureexception-timeout-connecting-to-elasticsearch-timeout-connecting-to-springboot-application-error/323819)

<div class="topic-metadata">

**Author:** [@my\_space](https://discuss.elastic.co/u/my_space)\
**Replies:** 7\
**Last updated:** [January 30, 2023, 11:42am UTC](https://discuss.elastic.co/t/elasticsearch-abstractelasticsearchrepository-e-request-processing-failed-nested-exception-is-org-springframework-dao-dataaccessresourcefailureexception-timeout-connecting-to-elasticsearch-timeout-connecting-to-springboot-application-error/323819 "2023-01-30T11:42:35Z")

</div>

Version Spring Data Elasticsearch: 4.0.0.RELEASE Version Elasticsearch Client in build: 7.6.2 Version Elasticsearch Client used: 7.6.2 e:Request processing failed; nested exception is org.springframework.dao.DataAcces…

---

## [Incorrect queries in docs?](https://discuss.elastic.co/t/incorrect-queries-in-docs/323917)

<div class="topic-metadata">

**Author:** [@Mohamed\_Khattab](https://discuss.elastic.co/u/Mohamed_Khattab)\
**Replies:** 2\
**Last updated:** [January 30, 2023, 11:18am UTC](https://discuss.elastic.co/t/incorrect-queries-in-docs/323917 "2023-01-30T11:18:31Z")

</div>

I'm copy-pasting a query from this page: Scripted metric aggregation | Elasticsearch Guide \[7.17\] | Elastic the query is { "query": { "match\_all": {} }, "aggs": { "profit": { "scripted\_metric": { …

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=445)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=447)
