# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=496

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 497

---

## [How can I sort strings with numbers alphabetically?](https://discuss.elastic.co/t/how-can-i-sort-strings-with-numbers-alphabetically/319088)

<div class="topic-metadata">

**Author:** [@Michal\_Stefaniuk](https://discuss.elastic.co/u/Michal_Stefaniuk)\
**Replies:** 9\
**Last updated:** [November 17, 2022, 5:11pm UTC](https://discuss.elastic.co/t/how-can-i-sort-strings-with-numbers-alphabetically/319088 "2022-11-17T17:11:04Z")

</div>

Hey guys, one quick question. I have a set of example records: Test 123 sesi 501 Alva rout and I want those to be sorted in asc/desc order in case insensitive and alphabeticall order, just like this: 501 Alva rout 12…

---

## [We are getting Ruby exception error in logstash](https://discuss.elastic.co/t/we-are-getting-ruby-exception-error-in-logstash/319188)

<div class="topic-metadata">

**Author:** [@upreddy](https://discuss.elastic.co/u/upreddy)\
**Replies:** 1\
**Last updated:** [November 17, 2022, 5:02pm UTC](https://discuss.elastic.co/t/we-are-getting-ruby-exception-error-in-logstash/319188 "2022-11-17T17:02:46Z")

</div>

Hi, we are getting ruby exception error in logstash as shown in below. \[ERROR\]\[logstash.filters.ruby \]\[xxxxxxxxxx\]\[634d732ae35f96b2b7a40d6e0005815a22897257fd1aa2279fe1d02125a79ba0\] Ruby exception occurred: undefined…

---

## [Kibana logs](https://discuss.elastic.co/t/kibana-logs/319115)

<div class="topic-metadata">

**Author:** [@mauroslucios](https://discuss.elastic.co/u/mauroslucios)\
**Replies:** 2\
**Last updated:** [November 17, 2022, 4:44pm UTC](https://discuss.elastic.co/t/kibana-logs/319115 "2022-11-17T16:44:27Z")

</div>

I have an ELK cluster that has a different time in the logs than the machine where it is installed. Does anyone have any idea how to resolve? Below is an image of my server.

---

## [Angular routing Kibana iframe](https://discuss.elastic.co/t/angular-routing-kibana-iframe/319160)

<div class="topic-metadata">

**Author:** [@PRASHANT\_MEHTA](https://discuss.elastic.co/u/PRASHANT_MEHTA)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 9:56am UTC](https://discuss.elastic.co/t/angular-routing-kibana-iframe/319160 "2022-11-17T09:56:31Z")

</div>

Hello All, We've intregrated kibana pages into angular web application using iframe,Now the issue that we are facing is we need to redirect from our home page dashboard(monitoring) -conataining several url to designate…

---

## [Wrong path in logstash output (FileBeat)](https://discuss.elastic.co/t/wrong-path-in-logstash-output-filebeat/319215)

<div class="topic-metadata">

**Author:** [@Vrops](https://discuss.elastic.co/u/Vrops)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 3:22pm UTC](https://discuss.elastic.co/t/wrong-path-in-logstash-output-filebeat/319215 "2022-11-17T15:22:55Z")

</div>

I have a problem when taking logs with FileBeat to Logstash, my logs arrive well in a file but the path of log is wrong in the output (It's the default location on an apache server). Here the config of FileBeat in the c…

---

## [Elasticsearch isn't allowed to allocate this shard to any of the nodes in the cluster](https://discuss.elastic.co/t/elasticsearch-isnt-allowed-to-allocate-this-shard-to-any-of-the-nodes-in-the-cluster/319085)

<div class="topic-metadata">

**Author:** [@sunil\_s](https://discuss.elastic.co/u/sunil_s)\
**Replies:** 11\
**Last updated:** [November 17, 2022, 3:14pm UTC](https://discuss.elastic.co/t/elasticsearch-isnt-allowed-to-allocate-this-shard-to-any-of-the-nodes-in-the-cluster/319085 "2022-11-17T15:14:58Z")

</div>

Shards are unassigned s&pretty" { "persistent" : { "cluster.routing.allocation.enable" : "all", "indices.recovery.max\_bytes\_per\_sec" : "50mb" }, "transient" : { "cluster.routing.allocation.enable" : "…

---

## [Logstash Cloudwatch Logs](https://discuss.elastic.co/t/logstash-cloudwatch-logs/319211)

<div class="topic-metadata">

**Author:** [@Ryan5](https://discuss.elastic.co/u/Ryan5)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 2:40pm UTC](https://discuss.elastic.co/t/logstash-cloudwatch-logs/319211 "2022-11-17T14:40:39Z")

</div>

Hi, Whats the best way to get aws cloudwatch logs into logstash version 8.5? We want to avoid using this plugin due to it no longer being maintained and having dependency issues. dependency conflict · Issue #101 · lukew…

---

## [Fleet agents go offline then return healty](https://discuss.elastic.co/t/fleet-agents-go-offline-then-return-healty/319206)

<div class="topic-metadata">

**Author:** [@mammodde](https://discuss.elastic.co/u/mammodde)\
**Replies:** 1\
**Last updated:** [November 17, 2022, 2:32pm UTC](https://discuss.elastic.co/t/fleet-agents-go-offline-then-return-healty/319206 "2022-11-17T14:32:02Z")

</div>

Hi, i have 3 agents other than the fleet server. this morning all 4 were healty, now 3 of them are labelled as offline (included the fleet server) and one of them is still healty. How is this possible? and why sometimes…

---

## [How to get sum\_other\_doc\_count in aggregations?](https://discuss.elastic.co/t/how-to-get-sum-other-doc-count-in-aggregations/319200)

<div class="topic-metadata">

**Author:** [@Purushottam22](https://discuss.elastic.co/u/Purushottam22)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 1:52pm UTC](https://discuss.elastic.co/t/how-to-get-sum-other-doc-count-in-aggregations/319200 "2022-11-17T13:52:59Z")

</div>

I am running an aggregation to see what document types does my 'documents' index has (documentType is the field that has the type): GET my\_documents/\_search { size: 0, "aggs": { "dataTypes": { "terms": { "field": …

---

## [Nginx Ingress Controller Logs \[v1.2.0\] - Integration not working](https://discuss.elastic.co/t/nginx-ingress-controller-logs-v1-2-0-integration-not-working/319197)

<div class="topic-metadata">

**Author:** [@jolt](https://discuss.elastic.co/u/jolt)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 1:12pm UTC](https://discuss.elastic.co/t/nginx-ingress-controller-logs-v1-2-0-integration-not-working/319197 "2022-11-17T13:12:18Z")

</div>

It appears that the Nginx Ingress Controller Logs integration - version 1.2.0 - is not working properly. The logs are being collected by k8s from the nginx-ingress-controller pods \[which default to outputting the error…

---

## [Query\_string search is not working correctly when field value contains dots](https://discuss.elastic.co/t/query-string-search-is-not-working-correctly-when-field-value-contains-dots/318860)

<div class="topic-metadata">

**Author:** [@DarwinGoyal](https://discuss.elastic.co/u/DarwinGoyal)\
**Replies:** 8\
**Last updated:** [November 17, 2022, 1:07pm UTC](https://discuss.elastic.co/t/query-string-search-is-not-working-correctly-when-field-value-contains-dots/318860 "2022-11-17T13:07:16Z")

</div>

Hi. An index contains a text property named description. Value of the description is "2:1.9.4" When I try to search using below query GET finding-index/\_search { "query": { "bool" : { "must" : \[ { …

---

## [Win10 elastic agent "failed to fix permissions" error](https://discuss.elastic.co/t/win10-elastic-agent-failed-to-fix-permissions-error/319191)

<div class="topic-metadata">

**Author:** [@Vtech](https://discuss.elastic.co/u/Vtech)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 12:38pm UTC](https://discuss.elastic.co/t/win10-elastic-agent-failed-to-fix-permissions-error/319191 "2022-11-17T12:38:14Z")

</div>

When attempting to install an elastic agent on Win10 server, I receive the following error messages Error: failed to fix permissions: The operation completed successfully. For help, please see our troubleshooting guide…

---

## [Indexes getting deleted if deleted from one cluster](https://discuss.elastic.co/t/indexes-getting-deleted-if-deleted-from-one-cluster/319179)

<div class="topic-metadata">

**Author:** [@Rahul\_Gupta1](https://discuss.elastic.co/u/Rahul_Gupta1)\
**Replies:** 6\
**Last updated:** [November 17, 2022, 12:31pm UTC](https://discuss.elastic.co/t/indexes-getting-deleted-if-deleted-from-one-cluster/319179 "2022-11-17T12:31:41Z")

</div>

Hi, in my current system i am using a single log stash configuration to write into two different Elasticsearch cluster, one is on version 7.5.1 and another is on version 7.17.7 using the following configuration file: - …

---

## [Getting token using http\_poller to do some request](https://discuss.elastic.co/t/getting-token-using-http-poller-to-do-some-request/319153)

<div class="topic-metadata">

**Author:** [@yuswanul](https://discuss.elastic.co/u/yuswanul)\
**Replies:** 1\
**Last updated:** [November 17, 2022, 11:44am UTC](https://discuss.elastic.co/t/getting-token-using-http-poller-to-do-some-request/319153 "2022-11-17T11:44:48Z")

</div>

Hi there, maybe this topic has been opened by many people, but I still haven't found the answer. so, i would like to ask. i have configuration like this: input{ http\_poller{ test4 =\> { method =\> post …

---

## [Timestamp in DSL query](https://discuss.elastic.co/t/timestamp-in-dsl-query/319058)

<div class="topic-metadata">

**Author:** [@oalimerko](https://discuss.elastic.co/u/oalimerko)\
**Replies:** 3\
**Last updated:** [November 17, 2022, 11:39am UTC](https://discuss.elastic.co/t/timestamp-in-dsl-query/319058 "2022-11-17T11:39:08Z")

</div>

Dear all, i have the query below for monitoring the logs of my application in case any issue with database connection occurs in the last 6min: GET \_search { "query": { "query\_string": { "query"…

---

## [Problem with Kibana creation and roles on Elasticsearch nodes](https://discuss.elastic.co/t/problem-with-kibana-creation-and-roles-on-elasticsearch-nodes/319062)

<div class="topic-metadata">

**Author:** [@ccaillet](https://discuss.elastic.co/u/ccaillet)\
**Replies:** 1\
**Last updated:** [November 17, 2022, 10:36am UTC](https://discuss.elastic.co/t/problem-with-kibana-creation-and-roles-on-elasticsearch-nodes/319062 "2022-11-17T10:36:37Z")

</div>

HI all, First post so be patient with me :slight\_smile: So let the music pay on ... I've created an Elasticsearch cluster with ECK version 2.5 no problem during Elasticsearch creation with the following manifest apiV…

---

## [Logstash WMI plugin logstash-input-wmi error](https://discuss.elastic.co/t/logstash-wmi-plugin-logstash-input-wmi-error/319163)

<div class="topic-metadata">

**Author:** [@houwenguang](https://discuss.elastic.co/u/houwenguang)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 10:07am UTC](https://discuss.elastic.co/t/logstash-wmi-plugin-logstash-input-wmi-error/319163 "2022-11-17T10:07:12Z")

</div>

Hi, I use logstash to collect wmi remotely on linux. input { prueba local input { wmi { query =\> "select \* from Win32\_Process" host =\> "192.168.146.203" user =\> "Administrator" password =\> "1909" } } output { …

---

## [Following example to update mappings gives exception](https://discuss.elastic.co/t/following-example-to-update-mappings-gives-exception/319155)

<div class="topic-metadata">

**Author:** [@tinrik](https://discuss.elastic.co/u/tinrik)\
**Replies:** 1\
**Last updated:** [November 17, 2022, 9:50am UTC](https://discuss.elastic.co/t/following-example-to-update-mappings-gives-exception/319155 "2022-11-17T09:50:48Z")

</div>

Hi, I'm following this example to bring down the storage usage of my index. However when I try it out: PUT /my\_index/\_mapping { "mappings": { "dynamic\_templates": \[ { "strings": { "match\_…

---

## [Search combined/JOIN indexes](https://discuss.elastic.co/t/search-combined-join-indexes/318907)

<div class="topic-metadata">

**Author:** [@Johanna12221](https://discuss.elastic.co/u/Johanna12221)\
**Replies:** 5\
**Last updated:** [November 17, 2022, 9:19am UTC](https://discuss.elastic.co/t/search-combined-join-indexes/318907 "2022-11-17T09:19:15Z")

</div>

Hello, We are working on setting up a search with document contents (pdf/docx etc.) where permissions comes from a database. I've gotten all the data into Elastic with the help of Logstash and FSCrawler. However they…

---

## [Alias APIs in ElasticSearch](https://discuss.elastic.co/t/alias-apis-in-elasticsearch/319140)

<div class="topic-metadata">

**Author:** [@manikanta](https://discuss.elastic.co/u/manikanta)\
**Replies:** 3\
**Last updated:** [November 17, 2022, 8:55am UTC](https://discuss.elastic.co/t/alias-apis-in-elasticsearch/319140 "2022-11-17T08:55:20Z")

</div>

I have a doubt in Alias APIs. Can Elasticsearch itself creates alias when a new value is added for a field? alias-name : {value} { "filter": { "term": { "fieldname": {value} } } }

---

## [Breaking index into small indices with duplicates items across indices](https://discuss.elastic.co/t/breaking-index-into-small-indices-with-duplicates-items-across-indices/319097)

<div class="topic-metadata">

**Author:** [@x41lakazam](https://discuss.elastic.co/u/x41lakazam)\
**Replies:** 4\
**Last updated:** [November 17, 2022, 8:33am UTC](https://discuss.elastic.co/t/breaking-index-into-small-indices-with-duplicates-items-across-indices/319097 "2022-11-17T08:33:22Z")

</div>

I am facing a problem that look pretty popular from what I saw on the forum, but always different from mine. I currently have one big index (actually one big alias split into several ILM indices) which contain data avai…

---

## [Kibana logs are not showing in DIscover page](https://discuss.elastic.co/t/kibana-logs-are-not-showing-in-discover-page/319054)

<div class="topic-metadata">

**Author:** [@yasar](https://discuss.elastic.co/u/yasar)\
**Replies:** 2\
**Last updated:** [November 17, 2022, 8:20am UTC](https://discuss.elastic.co/t/kibana-logs-are-not-showing-in-discover-page/319054 "2022-11-17T08:20:18Z")

</div>

Hi team, We are injected the logs by manually for few testing and we have done the filebeat, and logstash pipeline and Logstash config file as well as the same. But after configured and pushed the logs by manually, it …

---

## [Question about xpack.monitornig.\* settings](https://discuss.elastic.co/t/question-about-xpack-monitornig-settings/319090)

<div class="topic-metadata">

**Author:** [@ccaillet](https://discuss.elastic.co/u/ccaillet)\
**Replies:** 4\
**Last updated:** [November 17, 2022, 7:54am UTC](https://discuss.elastic.co/t/question-about-xpack-monitornig-settings/319090 "2022-11-17T07:54:45Z")

</div>

Hi all, I've seen that xpack.monitoring.\* settings have been deprecated and I haven't found the replacement settings ... I would like to know if anyone could point me a documentation about those settings and what are t…

---

## [Problem when installing elk 8.5.1](https://discuss.elastic.co/t/problem-when-installing-elk-8-5-1/319072)

<div class="topic-metadata">

**Author:** [@Neelam\_Zanvar](https://discuss.elastic.co/u/Neelam_Zanvar)\
**Replies:** 5\
**Last updated:** [November 17, 2022, 7:32am UTC](https://discuss.elastic.co/t/problem-when-installing-elk-8-5-1/319072 "2022-11-17T07:32:46Z")

</div>

Hi i am trying to install elk stack 8.5.1 on amazon linux 2 redhat. When i try to start the service getting the following error I have set xpack.security.enabled: true discovery-type: single-node xpack.security.tra…

---

## [Increment custom field ID on certain event using logstash conf file](https://discuss.elastic.co/t/increment-custom-field-id-on-certain-event-using-logstash-conf-file/317839)

<div class="topic-metadata">

**Author:** [@Poongkuyil\_Muse](https://discuss.elastic.co/u/Poongkuyil_Muse)\
**Replies:** 10\
**Last updated:** [November 17, 2022, 5:48am UTC](https://discuss.elastic.co/t/increment-custom-field-id-on-certain-event-using-logstash-conf-file/317839 "2022-11-17T05:48:32Z")

</div>

Problem: I want to increment trap\_id on every process.php request. but in my case, trap\_id is always 0. I dont know why. Please help me My log file is in csv format. I am trying to fetch the periodical logs of a single …

---

## [Uptime 8.5 Not showing in Kibana](https://discuss.elastic.co/t/uptime-8-5-not-showing-in-kibana/318758)

<div class="topic-metadata">

**Author:** [@PublicName](https://discuss.elastic.co/u/PublicName)\
**Replies:** 3\
**Last updated:** [November 17, 2022, 5:40am UTC](https://discuss.elastic.co/t/uptime-8-5-not-showing-in-kibana/318758 "2022-11-17T05:40:34Z")

</div>

Kibana and Elastic version 8.5. 8.4.x all monitors where showing in Uptime in Kibana. Updated to 8.5 and now all are missing on several clusters all on 8.5. Checking the indices data is still being sent to ES as expecte…

---

## [BulkIndexError while I try to ingest data from python](https://discuss.elastic.co/t/bulkindexerror-while-i-try-to-ingest-data-from-python/319043)

<div class="topic-metadata">

**Author:** [@eleven\_e](https://discuss.elastic.co/u/eleven_e)\
**Replies:** 1\
**Last updated:** [November 16, 2022, 10:47pm UTC](https://discuss.elastic.co/t/bulkindexerror-while-i-try-to-ingest-data-from-python/319043 "2022-11-16T22:47:10Z")

</div>

I try to ingest a csv using python and it raises an error "BulkIndexError". But when I upload it using the UI in kibana it uploads perfectly, so I also tried ingesting in the same index and also tried with the index's ma…

---

## [Update index type on field. It is possible?](https://discuss.elastic.co/t/update-index-type-on-field-it-is-possible/319049)

<div class="topic-metadata">

**Author:** [@abkrim](https://discuss.elastic.co/u/abkrim)\
**Replies:** 1\
**Last updated:** [November 16, 2022, 10:06pm UTC](https://discuss.elastic.co/t/update-index-type-on-field-it-is-possible/319049 "2022-11-16T22:06:32Z")

</div>

Hi I need change some fields created with index and doc\_valueswith false for new value true. I'm working with Elasticsearch 8.5 { "analyzers": { "mappings": { "properties": { "pf1":{ "ty…

---

## [Import Yara to elastic instance in cloud](https://discuss.elastic.co/t/import-yara-to-elastic-instance-in-cloud/319050)

<div class="topic-metadata">

**Author:** [@Idan\_Abramovich](https://discuss.elastic.co/u/Idan_Abramovich)\
**Replies:** 1\
**Last updated:** [November 16, 2022, 10:05pm UTC](https://discuss.elastic.co/t/import-yara-to-elastic-instance-in-cloud/319050 "2022-11-16T22:05:54Z")

</div>

Hello all , How do I import Yara rules into our instance ? any direction or clue? thank you

---

## [Elasticsearch: I have a dream](https://discuss.elastic.co/t/elasticsearch-i-have-a-dream/319108)

<div class="topic-metadata">

**Author:** [@asdasd](https://discuss.elastic.co/u/asdasd)\
**Replies:** 1\
**Last updated:** [November 16, 2022, 9:35pm UTC](https://discuss.elastic.co/t/elasticsearch-i-have-a-dream/319108 "2022-11-16T21:35:15Z")

</div>

elasticsearch: I have a dream，To improve the comprehensive quality of every beginner, and finally make him a great elastic operation and maintenance personnel, we make it very difficult to connect kibana with Elasticsea…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=495)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=497)
