# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=511

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 512

---

## [Logstash trying to reprocess the same files](https://discuss.elastic.co/t/logstash-trying-to-reprocess-the-same-files/317362)

<div class="topic-metadata">

**Author:** [@Victor\_Caetano](https://discuss.elastic.co/u/Victor_Caetano)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 4:20pm UTC](https://discuss.elastic.co/t/logstash-trying-to-reprocess-the-same-files/317362 "2022-10-25T16:20:19Z")

</div>

I'm using File Input Plugin, and a multiline codec, and grok filters to process .txt files that exists in a folder in my Linux VM, those files are static, i don't make changes in it's content, i only add more files to th…

---

## [Unable to output into Elasticsearch](https://discuss.elastic.co/t/unable-to-output-into-elasticsearch/317374)

<div class="topic-metadata">

**Author:** [@Hawas\_Musthafa](https://discuss.elastic.co/u/Hawas_Musthafa)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 4:15pm UTC](https://discuss.elastic.co/t/unable-to-output-into-elasticsearch/317374 "2022-10-25T16:15:47Z")

</div>

Unable to output to the elasticseach. output { elasticsearch { hosts =\> "elasticsearch:9200" user =\> "logstash\_internal" password =\> "${LOGSTASH\_INTERNAL\_PASSWORD}" index =\> "testmanagement-%{+yyyy.MM.dd}" } and …

---

## [Input multiple files using Elastic Agent](https://discuss.elastic.co/t/input-multiple-files-using-elastic-agent/317150)

<div class="topic-metadata">

**Author:** [@shuuny-matrix](https://discuss.elastic.co/u/shuuny-matrix)\
**Replies:** 9\
**Last updated:** [October 25, 2022, 4:08pm UTC](https://discuss.elastic.co/t/input-multiple-files-using-elastic-agent/317150 "2022-10-25T16:08:38Z")

</div>

Hi, I wanted to input multiple files with same category from a directory to a same index into Kibana with Elasticsearch backend. I noticed that it could be done using Logstash but not clear documentation on how to do to…

---

## [Best way to update a single field across all the documents (may be million docs)](https://discuss.elastic.co/t/best-way-to-update-a-single-field-across-all-the-documents-may-be-million-docs/317343)

<div class="topic-metadata">

**Author:** [@ykonathala](https://discuss.elastic.co/u/ykonathala)\
**Replies:** 4\
**Last updated:** [October 25, 2022, 2:43pm UTC](https://discuss.elastic.co/t/best-way-to-update-a-single-field-across-all-the-documents-may-be-million-docs/317343 "2022-10-25T14:43:00Z")

</div>

Team, Can I get some suggestions around updating a single field across multiple documents in the elasticsearch? Thing here is need to get a value of that field (existing) compare it will an external value and do some ca…

---

## [Security Rules with Endgame get an error](https://discuss.elastic.co/t/security-rules-with-endgame-get-an-error/317241)

<div class="topic-metadata">

**Author:** [@hermlam](https://discuss.elastic.co/u/hermlam)\
**Replies:** 3\
**Last updated:** [October 25, 2022, 3:30pm UTC](https://discuss.elastic.co/t/security-rules-with-endgame-get-an-error/317241 "2022-10-25T15:30:58Z")

</div>

Hi, In Elastic Security there are 4 rules which don’t work because Endgame is replaced by Endpoint. The rules are: Malware - Detected - Elastic Endgame Malware - Prevented - Elastic Endgame Ransomware - Detected - Ela…

---

## [400: request does not support \[pit\]](https://discuss.elastic.co/t/400-request-does-not-support-pit/317141)

<div class="topic-metadata">

**Author:** [@mworzala](https://discuss.elastic.co/u/mworzala)\
**Replies:** 2\
**Last updated:** [October 25, 2022, 2:50pm UTC](https://discuss.elastic.co/t/400-request-does-not-support-pit/317141 "2022-10-25T14:50:59Z")

</div>

Hi: I am executing the following query against the search api, but it is returning a 400, and an error that the request does not support the pit parameter. This is from the Go client, however, from the python client the…

---

## [Download of indices as download option](https://discuss.elastic.co/t/download-of-indices-as-download-option/316313)

<div class="topic-metadata">

**Author:** [@Sandeep\_Raju](https://discuss.elastic.co/u/Sandeep_Raju)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 2:26pm UTC](https://discuss.elastic.co/t/download-of-indices-as-download-option/316313 "2022-10-25T14:26:56Z")

</div>

Hi all, Sometimes, I need to download entire index data for different purposes. Maybe use it for another place or app. There is no export button for getting Elasticsearch Index Data as json file or some other format i…

---

## [Error while creating Snapshots](https://discuss.elastic.co/t/error-while-creating-snapshots/317366)

<div class="topic-metadata">

**Author:** [@selvaraj-sembulingam](https://discuss.elastic.co/u/selvaraj-sembulingam)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 12:43pm UTC](https://discuss.elastic.co/t/error-while-creating-snapshots/317366 "2022-10-25T12:43:31Z")

</div>

Getting the following error while creating snapshots INTERNAL\_SERVER\_ERROR: java.lang.IllegalStateException: Could not find a readable index-N file in a non-empty shard snapshot directory \[\[indices\]\[qduDEnw9Se6TrncgbEZB…

---

## [Fleet Server invalid argument “tcp://10.233.110.49:8220” for “–fleet-server-port”](https://discuss.elastic.co/t/fleet-server-invalid-argument-tcp-10-233-110-49-8220-for-fleet-server-port/317017)

<div class="topic-metadata">

**Author:** [@legoguy1000](https://discuss.elastic.co/u/legoguy1000)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 12:28pm UTC](https://discuss.elastic.co/t/fleet-server-invalid-argument-tcp-10-233-110-49-8220-for-fleet-server-port/317017 "2022-10-25T12:28:57Z")

</div>

Even with ECK 2.4, I'm still able to reproduce this error. Fleet Server invalid argument "tcp://10.233.110.49:8220" for "--fleet-server-port". I did find that it only appears to happen when I create a service with the sa…

---

## [Automatic skipping of indexes / shards for date-based indexing and index sorting](https://discuss.elastic.co/t/automatic-skipping-of-indexes-shards-for-date-based-indexing-and-index-sorting/317399)

<div class="topic-metadata">

**Author:** [@jojo23](https://discuss.elastic.co/u/jojo23)\
**Replies:** 2\
**Last updated:** [October 25, 2022, 11:37am UTC](https://discuss.elastic.co/t/automatic-skipping-of-indexes-shards-for-date-based-indexing-and-index-sorting/317399 "2022-10-25T11:37:45Z")

</div>

I run an Elasticsearch cluster with dozens of time-based monthly indexes and 240+ shards. Query performance is always a priority, so I have been wondering if there are ways to improve which indexes / shards are actually …

---

## [How to get the UUID of a document?](https://discuss.elastic.co/t/how-to-get-the-uuid-of-a-document/317401)

<div class="topic-metadata">

**Author:** [@wrobitza\_aveq](https://discuss.elastic.co/u/wrobitza_aveq)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 11:29am UTC](https://discuss.elastic.co/t/how-to-get-the-uuid-of-a-document/317401 "2022-10-25T11:29:30Z")

</div>

When I am indexing a document to Elasticsearch via Ruby, I am supplying a custom \_id field, e.g. analytics-development-foo\_18. I get the following response from ES: {"\_index"=\>"analytics-development-foo", "\_id"=\>"analy…

---

## [Increasing the number of index shards](https://discuss.elastic.co/t/increasing-the-number-of-index-shards/317377)

<div class="topic-metadata">

**Author:** [@ZahraZare](https://discuss.elastic.co/u/ZahraZare)\
**Replies:** 7\
**Last updated:** [October 25, 2022, 10:47am UTC](https://discuss.elastic.co/t/increasing-the-number-of-index-shards/317377 "2022-10-25T10:47:00Z")

</div>

Is it possible to change the number of shards of existing indices? How to do this with Python?

---

## [How to get log when running kibana as a developer](https://discuss.elastic.co/t/how-to-get-log-when-running-kibana-as-a-developer/316426)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 2\
**Last updated:** [October 25, 2022, 10:54am UTC](https://discuss.elastic.co/t/how-to-get-log-when-running-kibana-as-a-developer/316426 "2022-10-25T10:54:42Z")

</div>

Hi, I am running kibana as a developer (in development mode). How and where can I get the log files when doing the same? Logging details in my kibana.yml My kibana working directory is /my\_work/kibana logging.dest: /…

---

## [Restrict access to Wazuh-kibana-plugin](https://discuss.elastic.co/t/restrict-access-to-wazuh-kibana-plugin/316280)

<div class="topic-metadata">

**Author:** [@Sheereen](https://discuss.elastic.co/u/Sheereen)\
**Replies:** 1\
**Last updated:** [October 25, 2022, 10:53am UTC](https://discuss.elastic.co/t/restrict-access-to-wazuh-kibana-plugin/316280 "2022-10-25T10:53:10Z")

</div>

Hi, I have installed Wazuh as a plugin in my Kibana instance. I want to restrict Wazuh access to a particular namespace and particular user roles only. How can I achieve the same? Thanks

---

## [Soundex phonetic not working](https://discuss.elastic.co/t/soundex-phonetic-not-working/317383)

<div class="topic-metadata">

**Author:** [@Nitin\_Dabadghav](https://discuss.elastic.co/u/Nitin_Dabadghav)\
**Replies:** 0\
**Last updated:** [October 25, 2022, 8:51am UTC](https://discuss.elastic.co/t/soundex-phonetic-not-working/317383 "2022-10-25T08:51:39Z")

</div>

I am trying to use phonetic's soundex encoder. I have an index which has a record for a name which has a string "Yangtze". If I try to search with a misspelled strings like "yangse", "yantse" or similar, I am unable to g…

---

## [Elastic score decay if field tokens are in another field](https://discuss.elastic.co/t/elastic-score-decay-if-field-tokens-are-in-another-field/316037)

<div class="topic-metadata">

**Author:** [@Sergey\_V](https://discuss.elastic.co/u/Sergey_V)\
**Replies:** 4\
**Last updated:** [October 25, 2022, 7:38am UTC](https://discuss.elastic.co/t/elastic-score-decay-if-field-tokens-are-in-another-field/316037 "2022-10-25T07:38:12Z")

</div>

Hi! Me need decrease score of document if in "field1" has tokens of "field2". Tell me how can this be done?

---

## [Split Document into multiple document based on condition](https://discuss.elastic.co/t/split-document-into-multiple-document-based-on-condition/316737)

<div class="topic-metadata">

**Author:** [@yuswanul](https://discuss.elastic.co/u/yuswanul)\
**Replies:** 19\
**Last updated:** [October 25, 2022, 6:54am UTC](https://discuss.elastic.co/t/split-document-into-multiple-document-based-on-condition/316737 "2022-10-25T06:54:47Z")

</div>

Hi there, i plan to split field into multiple document based on OID. So, i have configured snmp pipeline for my network device. I managed to monitor the cpu and memory usage but i'm facing problem when i want to monitor…

---

## [Visio stencils](https://discuss.elastic.co/t/visio-stencils/317368)

<div class="topic-metadata">

**Author:** [@bering](https://discuss.elastic.co/u/bering)\
**Replies:** 0\
**Last updated:** [October 25, 2022, 6:20am UTC](https://discuss.elastic.co/t/visio-stencils/317368 "2022-10-25T06:20:09Z")

</div>

Some time ago I was able to download logos and other Elasic figures that could be imported into Visio from this link Trademarks found on Elastic.co | Elastic but that now links to some trademark page. Does anyone know w…

---

## [Question 2 / 6 - Exam Practice](https://discuss.elastic.co/t/question-2-6-exam-practice/317361)

<div class="topic-metadata">

**Author:** [@linhz](https://discuss.elastic.co/u/linhz)\
**Replies:** 0\
**Last updated:** [October 25, 2022, 3:11am UTC](https://discuss.elastic.co/t/question-2-6-exam-practice/317361 "2022-10-25T03:11:28Z")

</div>

Hi, Question 2 I could not found "average of bytes last formatted" under the name whereby i follow the solution. Anyone happen to know the reason? Question 6 How do we know we need to select "Terms" aggregation? A…

---

## [How to get nested field value equal to keyword field value](https://discuss.elastic.co/t/how-to-get-nested-field-value-equal-to-keyword-field-value/317360)

<div class="topic-metadata">

**Author:** [@casterQ](https://discuss.elastic.co/u/casterQ)\
**Replies:** 0\
**Last updated:** [October 25, 2022, 2:58am UTC](https://discuss.elastic.co/t/how-to-get-nested-field-value-equal-to-keyword-field-value/317360 "2022-10-25T02:58:31Z")

</div>

can i get b value in nested script query? PUT test { "mappings": { "properties": { "b": { "type": "keyword" }, "nested": { "type": "nested", "properties": { "a":…

---

## [How to display custom calculated machine learning metrics on Kibana dashboard?](https://discuss.elastic.co/t/how-to-display-custom-calculated-machine-learning-metrics-on-kibana-dashboard/317330)

<div class="topic-metadata">

**Author:** [@Suraj\_Manjunatha](https://discuss.elastic.co/u/Suraj_Manjunatha)\
**Replies:** 0\
**Last updated:** [October 24, 2022, 3:13pm UTC](https://discuss.elastic.co/t/how-to-display-custom-calculated-machine-learning-metrics-on-kibana-dashboard/317330 "2022-10-24T15:13:52Z")

</div>

Hello, I have a ML model for image classification problem running on Azure Kubernetes instance on python. I would like to visualize some model metrics like precision, accuracy, recall etc. on a kibana dashboard. With ev…

---

## [Solving version\_conflict\_engine\_exception on update](https://discuss.elastic.co/t/solving-version-conflict-engine-exception-on-update/317337)

<div class="topic-metadata">

**Author:** [@OranShuster](https://discuss.elastic.co/u/OranShuster)\
**Replies:** 9\
**Last updated:** [October 24, 2022, 8:31pm UTC](https://discuss.elastic.co/t/solving-version-conflict-engine-exception-on-update/317337 "2022-10-24T20:31:46Z")

</div>

Preface - Cluster is running version 6.8 and we are doing a mix of search/create/update using the NodeJS Operations can access the same document in quick succession/concurrently since its based off events coming from k…

---

## [Can I use discovery-ec2 plugin for finding data node?](https://discuss.elastic.co/t/can-i-use-discovery-ec2-plugin-for-finding-data-node/317331)

<div class="topic-metadata">

**Author:** [@qksjdhi1212](https://discuss.elastic.co/u/qksjdhi1212)\
**Replies:** 1\
**Last updated:** [October 24, 2022, 8:24pm UTC](https://discuss.elastic.co/t/can-i-use-discovery-ec2-plugin-for-finding-data-node/317331 "2022-10-24T20:24:15Z")

</div>

First I wanted to use discovery-ec2 plugin to find nodes(including non-master-eligible nodes) easily in cluster but I've just noticed that discovery-ec2 plugin is only for finding master-eligible nodes on ES docs The d…

---

## [Can we delay output to Elasticsearch in batch?](https://discuss.elastic.co/t/can-we-delay-output-to-elasticsearch-in-batch/317137)

<div class="topic-metadata">

**Author:** [@quentin.legraverend](https://discuss.elastic.co/u/quentin.legraverend)\
**Replies:** 3\
**Last updated:** [October 24, 2022, 7:46pm UTC](https://discuss.elastic.co/t/can-we-delay-output-to-elasticsearch-in-batch/317137 "2022-10-24T19:46:20Z")

</div>

Hello, I have an Elastic stack self-managed in the cloud with a Fleet Server on it. I have a second environment on-premise with a really limited bandwidth and I want to have some Elastic Agents here also. My first ide…

---

## [Service account token elastic/kibana problemKibana not accessible from browser](https://discuss.elastic.co/t/service-account-token-elastic-kibana-problemkibana-not-accessible-from-browser/317333)

<div class="topic-metadata">

**Author:** [@EExisT](https://discuss.elastic.co/u/EExisT)\
**Replies:** 4\
**Last updated:** [October 24, 2022, 6:19pm UTC](https://discuss.elastic.co/t/service-account-token-elastic-kibana-problemkibana-not-accessible-from-browser/317333 "2022-10-24T18:19:52Z")

</div>

Hello, I was trying to start Kibana as a service, but I noticed that after a few seconds from the start Kibana goes down. In the /var/log/syslog file I saw this error: Oct 24 17:24:18 ubuntu-linux-22-04-desktop kibana…

---

## [Kibana visualize using unique count by latest records](https://discuss.elastic.co/t/kibana-visualize-using-unique-count-by-latest-records/316236)

<div class="topic-metadata">

**Author:** [@Ibrahim\_Z\_HIDIR](https://discuss.elastic.co/u/Ibrahim_Z_HIDIR)\
**Replies:** 2\
**Last updated:** [October 24, 2022, 5:29pm UTC](https://discuss.elastic.co/t/kibana-visualize-using-unique-count-by-latest-records/316236 "2022-10-24T17:29:55Z")

</div>

Hi all After some search and try, I could't find a way to solve my problem. I just want to display the counts of records depending of latest records of some repeating columns. For Example, the latest status of "A" i…

---

## [Failed to start Elasticsearch](https://discuss.elastic.co/t/failed-to-start-elasticsearch/317304)

<div class="topic-metadata">

**Author:** [@nicolas2603](https://discuss.elastic.co/u/nicolas2603)\
**Replies:** 9\
**Last updated:** [October 24, 2022, 3:12pm UTC](https://discuss.elastic.co/t/failed-to-start-elasticsearch/317304 "2022-10-24T15:12:52Z")

</div>

Hello. I'm having a problem with Elasticsearch, and I don't know much about Linux. It doesn't help! To run a mapping application (GeoNetwork), I need an instance of Elasticsearch. So I downloaded version 8.4.3 in tar.g…

---

## [I paid 2400 USD for a PDF training. The lab opened once and It does not work any more](https://discuss.elastic.co/t/i-paid-2400-usd-for-a-pdf-training-the-lab-opened-once-and-it-does-not-work-any-more/317253)

<div class="topic-metadata">

**Author:** [@Alexandre\_Giordanell](https://discuss.elastic.co/u/Alexandre_Giordanell)\
**Replies:** 2\
**Last updated:** [October 24, 2022, 3:16pm UTC](https://discuss.elastic.co/t/i-paid-2400-usd-for-a-pdf-training-the-lab-opened-once-and-it-does-not-work-any-more/317253 "2022-10-24T15:16:46Z")

</div>

I don't recommend any On Demand courses from ElasticTraining.

---

## [Need help on syslog logstash input plugin](https://discuss.elastic.co/t/need-help-on-syslog-logstash-input-plugin/317181)

<div class="topic-metadata">

**Author:** [@niveditakathal](https://discuss.elastic.co/u/niveditakathal)\
**Replies:** 17\
**Last updated:** [October 24, 2022, 2:58pm UTC](https://discuss.elastic.co/t/need-help-on-syslog-logstash-input-plugin/317181 "2022-10-24T14:58:10Z")

</div>

Hi All, I have created a logstash pipeline to read the network syslog (RFC5424) data as mentioned below, However I don't see any output while running the pipeline. Can someone please assist me what I am missing. Note …

---

## [Will PCRE regular expressions be supported in the future?](https://discuss.elastic.co/t/will-pcre-regular-expressions-be-supported-in-the-future/317322)

<div class="topic-metadata">

**Author:** [@shengwei.xu](https://discuss.elastic.co/u/shengwei.xu)\
**Replies:** 0\
**Last updated:** [October 24, 2022, 2:06pm UTC](https://discuss.elastic.co/t/will-pcre-regular-expressions-be-supported-in-the-future/317322 "2022-10-24T14:06:50Z")

</div>

Will PCRE regular expressions be supported in the future? I ran into a scenario that non-tech users only use PCRE regular expressions that most languages use, it's time-consuming for non-tech users to learn how to use el…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=510)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=512)
