# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=524

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 525

---

## [Multi language support for kibana dashboards](https://discuss.elastic.co/t/multi-language-support-for-kibana-dashboards/315473)

<div class="topic-metadata">

**Author:** [@Srikanth\_V](https://discuss.elastic.co/u/Srikanth_V)\
**Replies:** 1\
**Last updated:** [October 5, 2022, 5:51pm UTC](https://discuss.elastic.co/t/multi-language-support-for-kibana-dashboards/315473 "2022-10-05T17:51:54Z")

</div>

Hey guys, Hope you are doing well. Is there a possibility to have multi language support in 1 instance of kibana? If yes, how can the language be changed from say en to fr. I have 2 different dashboards 1 for english …

---

## [Exclude fields from add filter dropdown](https://discuss.elastic.co/t/exclude-fields-from-add-filter-dropdown/315764)

<div class="topic-metadata">

**Author:** [@Jonas\_S](https://discuss.elastic.co/u/Jonas_S)\
**Replies:** 1\
**Last updated:** [October 5, 2022, 5:39pm UTC](https://discuss.elastic.co/t/exclude-fields-from-add-filter-dropdown/315764 "2022-10-05T17:39:17Z")

</div>

Hello, i have an already existing Dashboard with personal information for a small user group. Now a new user group also needs some of that information, but should only see their part. The data comes from a logstash pipe…

---

## [Vert High Latencies For GeoDistance query for 10k documents](https://discuss.elastic.co/t/vert-high-latencies-for-geodistance-query-for-10k-documents/315631)

<div class="topic-metadata">

**Author:** [@Parth\_Narang](https://discuss.elastic.co/u/Parth_Narang)\
**Replies:** 10\
**Last updated:** [October 5, 2022, 5:32pm UTC](https://discuss.elastic.co/t/vert-high-latencies-for-geodistance-query-for-10k-documents/315631 "2022-10-05T17:32:08Z")

</div>

I have a requirement to fetch 10k documents around a lat long in 10km radius while below query works fine but take around 350 ms to fetch all the documents. is there any other way to improve on this was expecting latenci…

---

## [Redirect users to dashboard directly upon login](https://discuss.elastic.co/t/redirect-users-to-dashboard-directly-upon-login/315886)

<div class="topic-metadata">

**Author:** [@mancharagopan](https://discuss.elastic.co/u/mancharagopan)\
**Replies:** 1\
**Last updated:** [October 5, 2022, 5:31pm UTC](https://discuss.elastic.co/t/redirect-users-to-dashboard-directly-upon-login/315886 "2022-10-05T17:31:58Z")

</div>

I have few dashboards to monitor performance and utilization of the network devices. I would like to redirect users to a dashboard directly when they login instead of landing on a home page. Is there any way to achieve t…

---

## [Mapping: how to disable array of string?](https://discuss.elastic.co/t/mapping-how-to-disable-array-of-string/315782)

<div class="topic-metadata">

**Author:** [@ebuildy](https://discuss.elastic.co/u/ebuildy)\
**Replies:** 10\
**Last updated:** [October 5, 2022, 3:42pm UTC](https://discuss.elastic.co/t/mapping-how-to-disable-array-of-string/315782 "2022-10-05T15:42:56Z")

</div>

We want to apply a real strict mapping , but arrays are still accepted and mess around our data pipeline (because after we use Apache Spark to read data). We (at our team level) have no control on the incoming data. Ho…

---

## [Looking for a phrase tokenizer or filter like this](https://discuss.elastic.co/t/looking-for-a-phrase-tokenizer-or-filter-like-this/315853)

<div class="topic-metadata">

**Author:** [@fraf](https://discuss.elastic.co/u/fraf)\
**Replies:** 3\
**Last updated:** [October 5, 2022, 2:51pm UTC](https://discuss.elastic.co/t/looking-for-a-phrase-tokenizer-or-filter-like-this/315853 "2022-10-05T14:51:43Z")

</div>

Hello searchers, I'am looking for a tokenizer (or filter) that treat the input phrase like this : Given the input phrase : "the foxes jumping quickly" I want to output documents, whose field may contain all theses wor…

---

## [Options not available in Kibana Discover for keyword field](https://discuss.elastic.co/t/options-not-available-in-kibana-discover-for-keyword-field/315872)

<div class="topic-metadata">

**Author:** [@gaurav\_soni](https://discuss.elastic.co/u/gaurav_soni)\
**Replies:** 1\
**Last updated:** [October 5, 2022, 2:18pm UTC](https://discuss.elastic.co/t/options-not-available-in-kibana-discover-for-keyword-field/315872 "2022-10-05T14:18:01Z")

</div>

I imported some data , one of the fields had a mapping of type "text" , i later modified the mapping using the following. PUT /restaurant\_data/\_mapping { "properties": { "name": { "type": "text", "fiel…

---

## [Unable to set granular permissions for Endpoint Security module](https://discuss.elastic.co/t/unable-to-set-granular-permissions-for-endpoint-security-module/315866)

<div class="topic-metadata">

**Author:** [@bil15](https://discuss.elastic.co/u/bil15)\
**Replies:** 2\
**Last updated:** [October 5, 2022, 2:13pm UTC](https://discuss.elastic.co/t/unable-to-set-granular-permissions-for-endpoint-security-module/315866 "2022-10-05T14:13:25Z")

</div>

Hello! My SOC team is staring to use Elastic Stack for Security purposes, and we are planning to use both SIEM and Endpoint Security capabilities. We have T1 and T2 analysts, and I'd wanted to give them different permi…

---

## [All hosts Dashboard : host.name field is splitted when there is "-" (dash) in naming](https://discuss.elastic.co/t/all-hosts-dashboard-host-name-field-is-splitted-when-there-is-dash-in-naming/315879)

<div class="topic-metadata">

**Author:** [@4ourth](https://discuss.elastic.co/u/4ourth)\
**Replies:** 0\
**Last updated:** [October 5, 2022, 12:58pm UTC](https://discuss.elastic.co/t/all-hosts-dashboard-host-name-field-is-splitted-when-there-is-dash-in-naming/315879 "2022-10-05T12:58:07Z")

</div>

Hi, I am trying to configure Elastic Security. After parsing logs to the right fields, when I open Security \> Hosts \> All hosts it's splitting my hostnames if there is a "-" (dash. symbol ) in naming, and shows one host…

---

## [Index routing allocation require does not work and throws confusing explain](https://discuss.elastic.co/t/index-routing-allocation-require-does-not-work-and-throws-confusing-explain/315873)

<div class="topic-metadata">

**Author:** [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Replies:** 0\
**Last updated:** [October 5, 2022, 12:18pm UTC](https://discuss.elastic.co/t/index-routing-allocation-require-does-not-work-and-throws-confusing-explain/315873 "2022-10-05T12:18:24Z")

</div>

Hello, I have a cluster on version 7.17 where I'm using a node attribute called node\_type with the values hot and warm to allocate shards and move between node type with ILM, all indices have an index.routing.allocatio…

---

## [Best way to form a cluster](https://discuss.elastic.co/t/best-way-to-form-a-cluster/315680)

<div class="topic-metadata">

**Author:** [@FredericB](https://discuss.elastic.co/u/FredericB)\
**Replies:** 5\
**Last updated:** [October 5, 2022, 11:19am UTC](https://discuss.elastic.co/t/best-way-to-form-a-cluster/315680 "2022-10-05T11:19:30Z")

</div>

Hi there, i'm new to ELK and also read lot of documentations from elastic.co I've tested many combinations to form a cluster and wondering can't find the best way to form it: 1-Creating the 1st Node (that is also a clu…

---

## [Convert kibana query language in json format automatically?](https://discuss.elastic.co/t/convert-kibana-query-language-in-json-format-automatically/315762)

<div class="topic-metadata">

**Author:** [@Nikolas1306](https://discuss.elastic.co/u/Nikolas1306)\
**Replies:** 2\
**Last updated:** [October 5, 2022, 11:08am UTC](https://discuss.elastic.co/t/convert-kibana-query-language-in-json-format-automatically/315762 "2022-10-05T11:08:50Z")

</div>

hello i ve this query on discover message :"AREAS ENGINEERING" and message:"20220925104256" how convert in this format GET /myindex/\_search { "query": { "match\_phrase\_prefix": { "message": ????? why p…

---

## [How to partial update es in the output plugin of logstash](https://discuss.elastic.co/t/how-to-partial-update-es-in-the-output-plugin-of-logstash/315864)

<div class="topic-metadata">

**Author:** [@Juno163](https://discuss.elastic.co/u/Juno163)\
**Replies:** 0\
**Last updated:** [October 5, 2022, 11:03am UTC](https://discuss.elastic.co/t/how-to-partial-update-es-in-the-output-plugin-of-logstash/315864 "2022-10-05T11:03:22Z")

</div>

By default, logstash output cannot partial update Elasticsearch but fully update. In my case, I can only search some fields which need to update, when it comes to es, the fields which didn't searched will update as blan…

---

## [Sort data based on a field value](https://discuss.elastic.co/t/sort-data-based-on-a-field-value/315857)

<div class="topic-metadata">

**Author:** [@HadiKhai](https://discuss.elastic.co/u/HadiKhai)\
**Replies:** 0\
**Last updated:** [October 5, 2022, 10:14am UTC](https://discuss.elastic.co/t/sort-data-based-on-a-field-value/315857 "2022-10-05T10:14:59Z")

</div>

Hello, I am saving priority inside the data and I am looking for a way to boost the score based on the priority. "userA":{ "specialities": \[ { "speciality\_priority": 3, "sp…

---

## [Unable to search for flattened (nested) field existence](https://discuss.elastic.co/t/unable-to-search-for-flattened-nested-field-existence/315863)

<div class="topic-metadata">

**Author:** [@ruslaniv](https://discuss.elastic.co/u/ruslaniv)\
**Replies:** 0\
**Last updated:** [October 5, 2022, 10:47am UTC](https://discuss.elastic.co/t/unable-to-search-for-flattened-nested-field-existence/315863 "2022-10-05T10:47:51Z")

</div>

I'm storing an arbitrary nested object as a flattened field "\_meta" which contains various information related to a product. Here is the mapping for that field: "mappings": { "dynamic": "strict", "prope…

---

## [Date\_histogram breakdown](https://discuss.elastic.co/t/date-histogram-breakdown/315846)

<div class="topic-metadata">

**Author:** [@aa09](https://discuss.elastic.co/u/aa09)\
**Replies:** 2\
**Last updated:** [October 5, 2022, 10:04am UTC](https://discuss.elastic.co/t/date-histogram-breakdown/315846 "2022-10-05T10:04:12Z")

</div>

I want to be able to break down my data by year and then further by month, im pretty sure this is possible but cant see exactly how. I am using the following at the moment to get a yearly breakdown: 'by\_year'…

---

## [FSCrawler && SSL && SANs](https://discuss.elastic.co/t/fscrawler-ssl-sans/314263)

<div class="topic-metadata">

**Author:** [@cheshirecat](https://discuss.elastic.co/u/cheshirecat)\
**Replies:** 28\
**Last updated:** [October 5, 2022, 8:27am UTC](https://discuss.elastic.co/t/fscrawler-ssl-sans/314263 "2022-10-05T08:27:52Z")

</div>

Hello There! I am trying to set up a FSCrawler. This is my \_settings.yaml file: --- name: "test-job" fs: url: "/tmp/es" update\_rate: "15m" excludes: - "\*/~\*" json\_support: false filename\_as\_id: false add…

---

## [FSCrawler and frozen indicies](https://discuss.elastic.co/t/fscrawler-and-frozen-indicies/314997)

<div class="topic-metadata">

**Author:** [@cheshirecat](https://discuss.elastic.co/u/cheshirecat)\
**Replies:** 13\
**Last updated:** [October 5, 2022, 8:27am UTC](https://discuss.elastic.co/t/fscrawler-and-frozen-indicies/314997 "2022-10-05T08:27:21Z")

</div>

Hello There! I have downloaded ans successfully started FSCrawler for my Elasticsearch cluster. This is how I start an instance: 08:11:23,753 INFO \[f.p.e.c.f.c.BootstrapChecks\] Memory \[Free/Total=Percent\]: HEAP \[83.3…

---

## [Automatically increase number of shards](https://discuss.elastic.co/t/automatically-increase-number-of-shards/315749)

<div class="topic-metadata">

**Author:** [@MaVa](https://discuss.elastic.co/u/MaVa)\
**Replies:** 5\
**Last updated:** [October 5, 2022, 6:43am UTC](https://discuss.elastic.co/t/automatically-increase-number-of-shards/315749 "2022-10-05T06:43:07Z")

</div>

Hi! I have few indices where all the data is equally relevant no matter how old it is. Over time these indices will increase in size (from 5-10MB to 1000GB). I want to optimize the number of shards in these indices, and …

---

## [Adding a node to cluster](https://discuss.elastic.co/t/adding-a-node-to-cluster/315239)

<div class="topic-metadata">

**Author:** [@rahulgupta18](https://discuss.elastic.co/u/rahulgupta18)\
**Replies:** 1\
**Last updated:** [October 5, 2022, 5:24am UTC](https://discuss.elastic.co/t/adding-a-node-to-cluster/315239 "2022-10-05T05:24:15Z")

</div>

Hi , I am looking to add one more node to our existing 2-node ELK cluster running in production. We're running version 8.1. I was looking at the elasticsearch documents, for 8.1, it says just to add the cluster name a…

---

## [Can logstash\_admin built-in role make indices?](https://discuss.elastic.co/t/can-logstash-admin-built-in-role-make-indices/315834)

<div class="topic-metadata">

**Author:** [@mikhatanu](https://discuss.elastic.co/u/mikhatanu)\
**Replies:** 0\
**Last updated:** [October 5, 2022, 4:36am UTC](https://discuss.elastic.co/t/can-logstash-admin-built-in-role-make-indices/315834 "2022-10-05T04:36:38Z")

</div>

Hello, i'm planning to add a new user in kibana for logstash operation. I noticed the role logstash\_admin which is alerady built-in. My question is, can the logstash\_admin role make new indices (as configured in logstash…

---

## [Extract originals timestamp from logs?](https://discuss.elastic.co/t/extract-originals-timestamp-from-logs/315798)

<div class="topic-metadata">

**Author:** [@Nikolas1306](https://discuss.elastic.co/u/Nikolas1306)\
**Replies:** 6\
**Last updated:** [October 5, 2022, 3:06am UTC](https://discuss.elastic.co/t/extract-originals-timestamp-from-logs/315798 "2022-10-05T03:06:35Z")

</div>

hello i've see with send log with logstash not respect the originals timestamp this is my generic msg builded with spring-boot 2022-09-25 21:19:57,175 INFO \[it.unidoc.cdr.core.bean.ForwardProvideAndRegisterManager\] (C…

---

## [Timestamp pattern not working for logstash filtering](https://discuss.elastic.co/t/timestamp-pattern-not-working-for-logstash-filtering/315827)

<div class="topic-metadata">

**Author:** [@Chma](https://discuss.elastic.co/u/Chma)\
**Replies:** 1\
**Last updated:** [October 5, 2022, 2:53am UTC](https://discuss.elastic.co/t/timestamp-pattern-not-working-for-logstash-filtering/315827 "2022-10-05T02:53:24Z")

</div>

I have 3 lines of logs with different structure and i am constructing a grok pattern to filter the logs. But the pattern I have isn't working. Even when I use just the timestamp pattern, it doesn't match. \[2022-10-04 21…

---

## [Why can't the minimum score be changed from the app search?](https://discuss.elastic.co/t/why-cant-the-minimum-score-be-changed-from-the-app-search/315646)

<div class="topic-metadata">

**Author:** [@jameswbush](https://discuss.elastic.co/u/jameswbush)\
**Replies:** 2\
**Last updated:** [October 4, 2022, 11:44pm UTC](https://discuss.elastic.co/t/why-cant-the-minimum-score-be-changed-from-the-app-search/315646 "2022-10-04T23:44:56Z")

</div>

I'd like to know why I can't filter by search score, as the headline indicates. This ought to be a pretty simple and practical function, as the fundamental elastic engine already has it. I fail to comprehend this. I'm te…

---

## [Duplicated date in my elastic](https://discuss.elastic.co/t/duplicated-date-in-my-elastic/315506)

<div class="topic-metadata">

**Author:** [@adityak248](https://discuss.elastic.co/u/adityak248)\
**Replies:** 5\
**Last updated:** [October 4, 2022, 10:56pm UTC](https://discuss.elastic.co/t/duplicated-date-in-my-elastic/315506 "2022-10-04T22:56:08Z")

</div>

Hello Team, Greeting, I have a situation when the data is being pushing into my elastic twice, a duplicate data. now both of them have different id and other than that everything is same. How do I get over this. My f…

---

## [Hot Nodes + Shards/Node assignment + Routing](https://discuss.elastic.co/t/hot-nodes-shards-node-assignment-routing/315721)

<div class="topic-metadata">

**Author:** [@jc\_es](https://discuss.elastic.co/u/jc_es)\
**Replies:** 6\
**Last updated:** [October 4, 2022, 10:39pm UTC](https://discuss.elastic.co/t/hot-nodes-shards-node-assignment-routing/315721 "2022-10-04T22:39:15Z")

</div>

I have a log ingestion use-case and I'm dealing with high JVM heap on 3 out of 24 data nodes in a cluster. Indices are Monthly, with new indices created through the month as indices hit a size threshold, e.g. logs-YYYY-…

---

## [Skipped records with Search/SearchAfter query](https://discuss.elastic.co/t/skipped-records-with-search-searchafter-query/314205)

<div class="topic-metadata">

**Author:** [@kuhu.88](https://discuss.elastic.co/u/kuhu.88)\
**Replies:** 1\
**Last updated:** [October 4, 2022, 9:54pm UTC](https://discuss.elastic.co/t/skipped-records-with-search-searchafter-query/314205 "2022-10-04T21:54:41Z")

</div>

Hello folks, Using a non-unique key for sort (in this example - timestamp) can skip over records in a subsequent request when the 10,000 is reached on a previous run and timestamps carry on beyond that cutoff. Take the…

---

## [How to delete stale project monitors?](https://discuss.elastic.co/t/how-to-delete-stale-project-monitors/315598)

<div class="topic-metadata">

**Author:** [@djkprojects](https://discuss.elastic.co/u/djkprojects)\
**Replies:** 1\
**Last updated:** [October 4, 2022, 4:58pm UTC](https://discuss.elastic.co/t/how-to-delete-stale-project-monitors/315598 "2022-10-04T16:58:38Z")

</div>

Hello guys, We are testing the Project Monitors in 8.4.1 and accidentally deleted the project folder that we generetaed and pushed using NPM/NPX and now can't delete those monitors from Kibana. How can we do it manually…

---

## [NoClassDef org.apache.lucene.util.Version](https://discuss.elastic.co/t/noclassdef-org-apache-lucene-util-version/315787)

<div class="topic-metadata">

**Author:** [@aaron-mcgrath](https://discuss.elastic.co/u/aaron-mcgrath)\
**Replies:** 6\
**Last updated:** [October 4, 2022, 3:22pm UTC](https://discuss.elastic.co/t/noclassdef-org-apache-lucene-util-version/315787 "2022-10-04T15:22:28Z")

</div>

I'm using the java client 7.17.6, with gradle to build the project; implementation ("co.elastic.clients:elasticsearch-java:$elasticVersion") implementation ("org.elasticsearch:elasticsearch-x-content:$elasticVersion") G…

---

## [Log4j2.properties doubt](https://discuss.elastic.co/t/log4j2-properties-doubt/315796)

<div class="topic-metadata">

**Author:** [@S-elk](https://discuss.elastic.co/u/S-elk)\
**Replies:** 1\
**Last updated:** [October 4, 2022, 3:11pm UTC](https://discuss.elastic.co/t/log4j2-properties-doubt/315796 "2022-10-04T15:11:54Z")

</div>

Hello! does elasticsearch keep any change in log4j2.properties until a restart ? im changing Logging to delete the logs by time not by size: appender.rolling.strategy.action.condition.nested\_condition.type = IfLastMod…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=523)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=525)
