# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=547

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 548

---

## [How to Increase checkpoint interval in azure event Hub logstash](https://discuss.elastic.co/t/how-to-increase-checkpoint-interval-in-azure-event-hub-logstash/313548)

<div class="topic-metadata">

**Author:** [@karthik\_Ravichandran](https://discuss.elastic.co/u/karthik_Ravichandran)\
**Replies:** 0\
**Last updated:** [September 2, 2022, 11:46am UTC](https://discuss.elastic.co/t/how-to-increase-checkpoint-interval-in-azure-event-hub-logstash/313548 "2022-09-02T11:46:38Z")

</div>

input { azure\_event\_hubs { event\_hub\_connections =\> \["${CLCEHPRIMARYCONNECTIONSTRING};EntityPath=cef"\] storage\_connection =\> "${CLCSTORAGEPRIMARYENDPOINT}" checkpoint\_interval =\> 60 storage\_container =\> "offsets-par…

---

## [Using upsert to update existing record base on value in fields](https://discuss.elastic.co/t/using-upsert-to-update-existing-record-base-on-value-in-fields/313494)

<div class="topic-metadata">

**Author:** [@nookseal](https://discuss.elastic.co/u/nookseal)\
**Replies:** 1\
**Last updated:** [September 2, 2022, 10:15am UTC](https://discuss.elastic.co/t/using-upsert-to-update-existing-record-base-on-value-in-fields/313494 "2022-09-02T10:15:43Z")

</div>

Hi all, Currently I'm trying to manage the Elasticsearch records from Filebeat which came from bash script and write to CSV file for each execute, then Filebeat collect log from CSV file. Below are example of header(no…

---

## [Problem handling null value with jdbc\_streaming filter](https://discuss.elastic.co/t/problem-handling-null-value-with-jdbc-streaming-filter/313538)

<div class="topic-metadata">

**Author:** [@Kowsalya\_Mouttou](https://discuss.elastic.co/u/Kowsalya_Mouttou)\
**Replies:** 0\
**Last updated:** [September 2, 2022, 10:20am UTC](https://discuss.elastic.co/t/problem-handling-null-value-with-jdbc-streaming-filter/313538 "2022-09-02T10:20:05Z")

</div>

Hi, here is my filter plugin in logsatsh configuration : filter { jdbc\_streaming { jdbc\_driver\_library =\> "/usr/share/logstash/logstash-core/lib/jars/postgresql-42.2.6.jar" jdbc\_driver\_class =\> "org.postgre…

---

## [One index shows red status](https://discuss.elastic.co/t/one-index-shows-red-status/313128)

<div class="topic-metadata">

**Author:** [@Shashi\_Prakash](https://discuss.elastic.co/u/Shashi_Prakash)\
**Replies:** 5\
**Last updated:** [September 2, 2022, 7:25am UTC](https://discuss.elastic.co/t/one-index-shows-red-status/313128 "2022-09-02T07:25:14Z")

</div>

health status index uuid pri rep docs.count docs.deleted store.size pri.store.size red open hft-filebeat 2aHzkG-YRLODjaTR0IAErQ 1 0 Not sure why this shows red although have restarted …

---

## [Logstash giving error "Elasticsearch Unreachable](https://discuss.elastic.co/t/logstash-giving-error-elasticsearch-unreachable/313515)

<div class="topic-metadata">

**Author:** [@Amit\_sah](https://discuss.elastic.co/u/Amit_sah)\
**Replies:** 4\
**Last updated:** [September 2, 2022, 9:34am UTC](https://discuss.elastic.co/t/logstash-giving-error-elasticsearch-unreachable/313515 "2022-09-02T09:34:33Z")

</div>

\[2022-09-02T13:20:38,199\]\[WARN \]\[logstash.outputs.elasticsearch\]\[main\] Attempted to resurrect connection to dead ES instance, but got an error {:url=\>"http://elastic:xxxxxx@localhost:9200/", :exception=\>LogStash::Outputs…

---

## [Elastic Agent already installed but not reporting to server](https://discuss.elastic.co/t/elastic-agent-already-installed-but-not-reporting-to-server/313503)

<div class="topic-metadata">

**Author:** [@Ashish10195](https://discuss.elastic.co/u/Ashish10195)\
**Replies:** 0\
**Last updated:** [September 2, 2022, 6:20am UTC](https://discuss.elastic.co/t/elastic-agent-already-installed-but-not-reporting-to-server/313503 "2022-09-02T06:20:07Z")

</div>

We have some servers in same environment with same Elastic Agent but not reporting to server .some are showing in Offline state and some are not showing anywhere .if we reinstall the Agent all the server will start showi…

---

## [Kafka Implementation](https://discuss.elastic.co/t/kafka-implementation/313241)

<div class="topic-metadata">

**Author:** [@Sarala\_C](https://discuss.elastic.co/u/Sarala_C)\
**Replies:** 2\
**Last updated:** [September 2, 2022, 6:12am UTC](https://discuss.elastic.co/t/kafka-implementation/313241 "2022-09-02T06:12:57Z")

</div>

We are Trying to Implement Kafka in our environment. So right now our Set up is like: Syslog Server(Logstash) --\> Event Hub --\> Azure VM Logstash --\> Azure VM Elasticsearch --\> Azure VM kibana. We want to place Kafka i…

---

## [Elasticsearch / Kibana showing different results](https://discuss.elastic.co/t/elasticsearch-kibana-showing-different-results/313498)

<div class="topic-metadata">

**Author:** [@AfricanHipp0](https://discuss.elastic.co/u/AfricanHipp0)\
**Replies:** 2\
**Last updated:** [September 2, 2022, 5:51am UTC](https://discuss.elastic.co/t/elasticsearch-kibana-showing-different-results/313498 "2022-09-02T05:51:51Z")

</div>

Hi all, Just wondering if anyone can provide me some guidance. I have Elasticsearch/Kibana running on a Ubuntu Server VM. My goal is to monitor Windows machines in my homelab. I've installed Winlogbeat on one of the Win…

---

## [Translate a CURL command into a HTTP filter request](https://discuss.elastic.co/t/translate-a-curl-command-into-a-http-filter-request/313403)

<div class="topic-metadata">

**Author:** [@Ygal\_Mizrachi](https://discuss.elastic.co/u/Ygal_Mizrachi)\
**Replies:** 2\
**Last updated:** [September 1, 2022, 10:28pm UTC](https://discuss.elastic.co/t/translate-a-curl-command-into-a-http-filter-request/313403 "2022-09-01T22:28:10Z")

</div>

Hello i need some help translating this CURL request into a http filter syntax curl -k -u username:password -X POST 'https://192.168.88.1/rest/tool/flood-ping' \\--data '{"address":"192.168.88.223","count":"12","interval…

---

## [Error starting logstash version 8.4.1](https://discuss.elastic.co/t/error-starting-logstash-version-8-4-1/313478)

<div class="topic-metadata">

**Author:** [@nathan\_ledall](https://discuss.elastic.co/u/nathan_ledall)\
**Replies:** 6\
**Last updated:** [September 1, 2022, 9:53pm UTC](https://discuss.elastic.co/t/error-starting-logstash-version-8-4-1/313478 "2022-09-01T21:53:04Z")

</div>

Hi, I'm daving an issue trying to start logstash. if I run logstash/bat -f logstash.conf everything works fine and logstash even starts but then quickly shuts down and says there is an error any ideas on how to fix it? b…

---

## [Elastic Observability Engineer Lab 4.3 service map disconnected](https://discuss.elastic.co/t/elastic-observability-engineer-lab-4-3-service-map-disconnected/313468)

<div class="topic-metadata">

**Author:** [@matt.snyder](https://discuss.elastic.co/u/matt.snyder)\
**Replies:** 2\
**Last updated:** [September 1, 2022, 9:41pm UTC](https://discuss.elastic.co/t/elastic-observability-engineer-lab-4-3-service-map-disconnected/313468 "2022-09-01T21:41:41Z")

</div>

In the Observability course lab 4.3, my service map is disconnected. I have petclinic-node -- petclinic-java -- mysql all connected, but petclinic-react and petclinic-address-finder are disconnected. I must have an age…

---

## [Observability stream- logstash](https://discuss.elastic.co/t/observability-stream-logstash/313487)

<div class="topic-metadata">

**Author:** [@preethi\_yogasundaram](https://discuss.elastic.co/u/preethi_yogasundaram)\
**Replies:** 0\
**Last updated:** [September 1, 2022, 9:25pm UTC](https://discuss.elastic.co/t/observability-stream-logstash/313487 "2022-09-01T21:25:54Z")

</div>

Hi, i tried to edit the observability stream configuration to include my logstash\* index pattern but i could not apply the changes, i even gave admin privileges but i still couldnt add it. Kindly help me

---

## [Unable to retrieve version information from Elasticsearch nodes](https://discuss.elastic.co/t/unable-to-retrieve-version-information-from-elasticsearch-nodes/313467)

<div class="topic-metadata">

**Author:** [@Technolust](https://discuss.elastic.co/u/Technolust)\
**Replies:** 4\
**Last updated:** [September 1, 2022, 8:22pm UTC](https://discuss.elastic.co/t/unable-to-retrieve-version-information-from-elasticsearch-nodes/313467 "2022-09-01T20:22:27Z")

</div>

I'm not able to get kibana to present username password continuously shows: 10.141.0.171:5601 Kibana server is not ready yet. kibana.log shows: "ecs":{"version":"8.4.0"},"@timestamp":"2022-09-01T13:03:37.022-04:00","…

---

## [Logstash input from multiple redis servers](https://discuss.elastic.co/t/logstash-input-from-multiple-redis-servers/313456)

<div class="topic-metadata">

**Author:** [@kurdit](https://discuss.elastic.co/u/kurdit)\
**Replies:** 2\
**Last updated:** [September 1, 2022, 8:19pm UTC](https://discuss.elastic.co/t/logstash-input-from-multiple-redis-servers/313456 "2022-09-01T20:19:14Z")

</div>

hello community! I have the following configuration: 9 nodes, 2 redis servers and 3 logstash servers my logs will go to the redis server (it will work as a broker) -\> then to logstash -\> and to elasticsearch the questi…

---

## [Processing large CSV by file module](https://discuss.elastic.co/t/processing-large-csv-by-file-module/313291)

<div class="topic-metadata">

**Author:** [@INS](https://discuss.elastic.co/u/INS)\
**Replies:** 4\
**Last updated:** [September 1, 2022, 7:14pm UTC](https://discuss.elastic.co/t/processing-large-csv-by-file-module/313291 "2022-09-01T19:14:03Z")

</div>

Hi, I'm facing an issue with decoding my CSV files after that when I've changes the approach to upload file. My first solution has been worked through input on multiply port to logstash. What can I observer that logstas…

---

## [How to Grok hexidecimals to Human Readable Values](https://discuss.elastic.co/t/how-to-grok-hexidecimals-to-human-readable-values/313380)

<div class="topic-metadata">

**Author:** [@DominicS](https://discuss.elastic.co/u/DominicS)\
**Replies:** 5\
**Last updated:** [September 1, 2022, 6:58pm UTC](https://discuss.elastic.co/t/how-to-grok-hexidecimals-to-human-readable-values/313380 "2022-09-01T18:58:34Z")

</div>

Hello, I am a Grok newbie , this is my first post i need to know how to grok hex values into a grok pattern for the purpose of creating a logstash pipeline.I have googled for a while but found nothing helpful this i…

---

## [How to configure kibana url for fleet managed ECK stack](https://discuss.elastic.co/t/how-to-configure-kibana-url-for-fleet-managed-eck-stack/313474)

<div class="topic-metadata">

**Author:** [@geoaxis](https://discuss.elastic.co/u/geoaxis)\
**Replies:** 0\
**Last updated:** [September 1, 2022, 6:49pm UTC](https://discuss.elastic.co/t/how-to-configure-kibana-url-for-fleet-managed-eck-stack/313474 "2022-09-01T18:49:06Z")

</div>

Hello, I am following guide from Quickstart | Elastic Cloud on Kubernetes \[2.4\] | Elastic and would like to access the kibana instance from /kibana . For this I have changed the baseUrl and basePath. Both kibana and E…

---

## [Delay logs Paloalto](https://discuss.elastic.co/t/delay-logs-paloalto/313367)

<div class="topic-metadata">

**Author:** [@juancamiloll](https://discuss.elastic.co/u/juancamiloll)\
**Replies:** 15\
**Last updated:** [September 1, 2022, 5:24pm UTC](https://discuss.elastic.co/t/delay-logs-paloalto/313367 "2022-09-01T17:24:30Z")

</div>

Hello, I am completely new to ELK, in my case someone installed this tool but it is no longer in my organization and I am putting a lot of effort into trying to keep the ELK solution working. Excuse my English as I'm u…

---

## [Issue using Terms Lookup query inside Percolator](https://discuss.elastic.co/t/issue-using-terms-lookup-query-inside-percolator/312513)

<div class="topic-metadata">

**Author:** [@patricio.gorin](https://discuss.elastic.co/u/patricio.gorin)\
**Replies:** 3\
**Last updated:** [September 1, 2022, 4:37pm UTC](https://discuss.elastic.co/t/issue-using-terms-lookup-query-inside-percolator/312513 "2022-09-01T16:37:40Z")

</div>

Hi! I'm facing a problem using a terms lookup query inside a percolator query. The actual problem is that the terms are not re-fetched until I reindex the document with the percolator query. I was expecting that, if I u…

---

## [querqy/SMUI Elastic Search connection support](https://discuss.elastic.co/t/querqy-smui-elastic-search-connection-support/313391)

<div class="topic-metadata">

**Author:** [@luis13](https://discuss.elastic.co/u/luis13)\
**Replies:** 6\
**Last updated:** [September 1, 2022, 4:22pm UTC](https://discuss.elastic.co/t/querqy-smui-elastic-search-connection-support/313391 "2022-09-01T16:22:06Z")

</div>

I have querqy/SMUI installed and i'm trying to connect it to Elastic Search but i haven't success so far, is there any information about if this tool is actually supported by Elastic Search or even more how to get connec…

---

## [Data Table multiple fields](https://discuss.elastic.co/t/data-table-multiple-fields/313370)

<div class="topic-metadata">

**Author:** [@frederico](https://discuss.elastic.co/u/frederico)\
**Replies:** 3\
**Last updated:** [September 1, 2022, 3:19pm UTC](https://discuss.elastic.co/t/data-table-multiple-fields/313370 "2022-09-01T15:19:34Z")

</div>

Hello, I want to create a table where I display top values for multiple fields What I currently have: This would be fine if I'd only two fields, however I intend to use more (+8) and having a column for each is not…

---

## [Problem with the time in elastic](https://discuss.elastic.co/t/problem-with-the-time-in-elastic/312810)

<div class="topic-metadata">

**Author:** [@yosi\_herschkovitz](https://discuss.elastic.co/u/yosi_herschkovitz)\
**Replies:** 9\
**Last updated:** [September 1, 2022, 3:08pm UTC](https://discuss.elastic.co/t/problem-with-the-time-in-elastic/312810 "2022-09-01T15:08:42Z")

</div>

hi i have elasticsearch-7.10.1 and kibana-7.10.1 and filebeat-7.10.1 and i cant configure the time for israel in the Discover i see the timestamp and log\_date are different. how i can fix that the both time are Will b…

---

## [ElasticSearch Java API client - connection reset by peer](https://discuss.elastic.co/t/elasticsearch-java-api-client-connection-reset-by-peer/313454)

<div class="topic-metadata">

**Author:** [@ch\_mohansai](https://discuss.elastic.co/u/ch_mohansai)\
**Replies:** 0\
**Last updated:** [September 1, 2022, 2:29pm UTC](https://discuss.elastic.co/t/elasticsearch-java-api-client-connection-reset-by-peer/313454 "2022-09-01T14:29:29Z")

</div>

I have noticed that after upgrading my service to Java api client it is giving random connection reset by peer error, where the 1 st request always failed , later it worked and after 10 minutes this happens again. My ser…

---

## [Any Elastic Stack tutors around this weekend?](https://discuss.elastic.co/t/any-elastic-stack-tutors-around-this-weekend/312526)

<div class="topic-metadata">

**Author:** [@Yolanda.darricarrere](https://discuss.elastic.co/u/Yolanda.darricarrere)\
**Replies:** 2\
**Last updated:** [September 1, 2022, 1:09pm UTC](https://discuss.elastic.co/t/any-elastic-stack-tutors-around-this-weekend/312526 "2022-09-01T13:09:31Z")

</div>

Seeking tutor for an hour or two ($50/hr?) - I'm EST time but flexible on time (today thru Mon.)

---

## [Parsing JSON data](https://discuss.elastic.co/t/parsing-json-data/313217)

<div class="topic-metadata">

**Author:** [@Pukar](https://discuss.elastic.co/u/Pukar)\
**Replies:** 4\
**Last updated:** [September 1, 2022, 12:54pm UTC](https://discuss.elastic.co/t/parsing-json-data/313217 "2022-09-01T12:54:58Z")

</div>

Hi Team, New to ELK environment so please bear with me. I'm trying to ingest data from json file and visualise in kibana. The ingest itself is working but the message is coming as: "message" =\> " "totalCount": …

---

## [Headless or GUI](https://discuss.elastic.co/t/headless-or-gui/313407)

<div class="topic-metadata">

**Author:** [@Technolust](https://discuss.elastic.co/u/Technolust)\
**Replies:** 2\
**Last updated:** [September 1, 2022, 12:31pm UTC](https://discuss.elastic.co/t/headless-or-gui/313407 "2022-09-01T12:31:29Z")

</div>

Setting up an Elastic Cluster using Rocky Linux 9. I have three servers planned to start. 1 Elasticsearch, 1 Kibana, 1 Logstash. The question I can’t find an answer to is do I need to install Rocky Server with GUI on any…

---

## [Log4j2.properties configuration for elasticsearch](https://discuss.elastic.co/t/log4j2-properties-configuration-for-elasticsearch/313443)

<div class="topic-metadata">

**Author:** [@irivas95](https://discuss.elastic.co/u/irivas95)\
**Replies:** 0\
**Last updated:** [September 1, 2022, 12:24pm UTC](https://discuss.elastic.co/t/log4j2-properties-configuration-for-elasticsearch/313443 "2022-09-01T12:24:34Z")

</div>

Hi, I am trying to configure a log policy based on the IfAccumulatedFileSize property reducing the default 2GB to 50MB because I already have too many logs in my folder. I have seen that the folder where I have the logs…

---

## [Start Service in Terminal](https://discuss.elastic.co/t/start-service-in-terminal/313429)

<div class="topic-metadata">

**Author:** [@Irwan\_Kurniawan](https://discuss.elastic.co/u/Irwan_Kurniawan)\
**Replies:** 1\
**Last updated:** [September 1, 2022, 11:57am UTC](https://discuss.elastic.co/t/start-service-in-terminal/313429 "2022-09-01T11:57:56Z")

</div>

When I installed elasticsearch in server and started it, it always shown this one. I already tried to reinstalled it and still happen. systemd-entrypoint\[1067640\]: /usr/share/elasticsearch/bin/systemd-entrypoint: 7: can…

---

## [ElasticSearch not starting - Main ERROR Null object returned for RollingFile in Appenders](https://discuss.elastic.co/t/elasticsearch-not-starting-main-error-null-object-returned-for-rollingfile-in-appenders/313437)

<div class="topic-metadata">

**Author:** [@afernandes](https://discuss.elastic.co/u/afernandes)\
**Replies:** 0\
**Last updated:** [September 1, 2022, 11:43am UTC](https://discuss.elastic.co/t/elasticsearch-not-starting-main-error-null-object-returned-for-rollingfile-in-appenders/313437 "2022-09-01T11:43:58Z")

</div>

Hi, I had installed Elasticsearch on a cluster of three Redhat 7.9 servers, but the service failed to start. When I check the elasticsearch status it's displayed several errors main ERROR Null object returned for Roll…

---

## [Logstash don't reach elasticsearch](https://discuss.elastic.co/t/logstash-dont-reach-elasticsearch/312311)

<div class="topic-metadata">

**Author:** [@SilasMuniz1](https://discuss.elastic.co/u/SilasMuniz1)\
**Replies:** 16\
**Last updated:** [September 1, 2022, 11:36am UTC](https://discuss.elastic.co/t/logstash-dont-reach-elasticsearch/312311 "2022-09-01T11:36:39Z")

</div>

Hi all, I set up an elasticsearch's cluster with 3 nodes. I deploy the first one e installed after kibana in the same VM(RHEL). It's work ok. With Xpack-security enable. elasticsearch.yml: Added other 2 nodes usin…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=546)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=548)
