# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=551

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 552

---

## [Logstash syncing from mongodb to elastic search null vaule](https://discuss.elastic.co/t/logstash-syncing-from-mongodb-to-elastic-search-null-vaule/313192)

<div class="topic-metadata">

**Author:** [@bindu1](https://discuss.elastic.co/u/bindu1)\
**Replies:** 0\
**Last updated:** [August 29, 2022, 7:18pm UTC](https://discuss.elastic.co/t/logstash-syncing-from-mongodb-to-elastic-search-null-vaule/313192 "2022-08-29T19:18:15Z")

</div>

Continuing the discussion from Logstash syncing from Mongodb to Elasticsearch - Null values in array data objects:

---

## [Prebuilt Security Detection Rules in policy or just install assets?](https://discuss.elastic.co/t/prebuilt-security-detection-rules-in-policy-or-just-install-assets/312959)

<div class="topic-metadata">

**Author:** [@ARDiver86](https://discuss.elastic.co/u/ARDiver86)\
**Replies:** 2\
**Last updated:** [August 29, 2022, 7:00pm UTC](https://discuss.elastic.co/t/prebuilt-security-detection-rules-in-policy-or-just-install-assets/312959 "2022-08-29T19:00:52Z")

</div>

I do not see it documented anywhere but my assumption is the "Prebuilt Security Detection Rules" integration is there so we can install the assets in Elasticsearch and not actually add this integration to policies? Can …

---

## [.monitoring-es indexes blow up, have no policies associated?](https://discuss.elastic.co/t/monitoring-es-indexes-blow-up-have-no-policies-associated/313186)

<div class="topic-metadata">

**Author:** [@wrobitza\_aveq](https://discuss.elastic.co/u/wrobitza_aveq)\
**Replies:** 6\
**Last updated:** [August 29, 2022, 5:55pm UTC](https://discuss.elastic.co/t/monitoring-es-indexes-blow-up-have-no-policies-associated/313186 "2022-08-29T17:55:41Z")

</div>

I've enabled Stack Monitoring in Kibana, just for the purpose of trying it out. Now, after a couple of days, I see that my stack is using a lot of disk memory. I was able to delete the individual .es-monitoring\* indices…

---

## [Grok csv+json](https://discuss.elastic.co/t/grok-csv-json/313010)

<div class="topic-metadata">

**Author:** [@exesition](https://discuss.elastic.co/u/exesition)\
**Replies:** 2\
**Last updated:** [August 29, 2022, 5:46pm UTC](https://discuss.elastic.co/t/grok-csv-json/313010 "2022-08-29T17:46:23Z")

</div>

Colleagues, good afternoon. Tell me I'm new to ELK. I have a log with the following file structure 2022-08-04T12:04:02,410|DEBUG|apg-b2p-keepr|instance\_3|http-8343-exec-5345|gtwRequestOut.com.B2pGateway|POST /trnproces…

---

## [Wrong host system info from containerized Elastic Agent](https://discuss.elastic.co/t/wrong-host-system-info-from-containerized-elastic-agent/313190)

<div class="topic-metadata">

**Author:** [@woodywoodsta](https://discuss.elastic.co/u/woodywoodsta)\
**Replies:** 0\
**Last updated:** [August 29, 2022, 5:32pm UTC](https://discuss.elastic.co/t/wrong-host-system-info-from-containerized-elastic-agent/313190 "2022-08-29T17:32:46Z")

</div>

I've got a fleet-managed elastic agent which is deployed in my k8s cluster as a Daemonset (as orchestrated by the ECK operator, resource type Agent) and it has a policy which includes the system integration. It's reporti…

---

## [How to apply the right stopwords langage depending on the field of a document?](https://discuss.elastic.co/t/how-to-apply-the-right-stopwords-langage-depending-on-the-field-of-a-document/313156)

<div class="topic-metadata">

**Author:** [@minikali](https://discuss.elastic.co/u/minikali)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 4:31pm UTC](https://discuss.elastic.co/t/how-to-apply-the-right-stopwords-langage-depending-on-the-field-of-a-document/313156 "2022-08-29T16:31:16Z")

</div>

Let's say I have an index of News with many documents of different langages. Users have one search bar to look for the title they desire among the different langages. I don't know which langage the user is typing so I wo…

---

## [Debugging "Failed Documents" from Data Visualizer CSV Ingestion](https://discuss.elastic.co/t/debugging-failed-documents-from-data-visualizer-csv-ingestion/313112)

<div class="topic-metadata">

**Author:** [@wpm](https://discuss.elastic.co/u/wpm)\
**Replies:** 10\
**Last updated:** [August 29, 2022, 3:22pm UTC](https://discuss.elastic.co/t/debugging-failed-documents-from-data-visualizer-csv-ingestion/313112 "2022-08-29T15:22:21Z")

</div>

I have a CSV file I'm trying to convert into an index via Kibana. I go to Machine Learning/Data Visualizer and upload my file. The "explanations" look good to me, as do all the guesses for the column types, so I hit "im…

---

## [Unassigned Shards on ELK cluster without Replicas](https://discuss.elastic.co/t/unassigned-shards-on-elk-cluster-without-replicas/312991)

<div class="topic-metadata">

**Author:** [@zenzedoon](https://discuss.elastic.co/u/zenzedoon)\
**Replies:** 3\
**Last updated:** [August 29, 2022, 2:46pm UTC](https://discuss.elastic.co/t/unassigned-shards-on-elk-cluster-without-replicas/312991 "2022-08-29T14:46:51Z")

</div>

Hello Community , i have an ELK cluster with 3 servers (1 hot - 1 warm & 1 cold) the cluster dosn't support the replicas mode, my problem is , i found some unassigned shards with multiple explanation for the same shards…

---

## [SNMP Trap listener died {:exception=\>#\<Errno::EADDRINUSE](https://discuss.elastic.co/t/snmp-trap-listener-died-exception-errno-eaddrinuse/313175)

<div class="topic-metadata">

**Author:** [@bijender\_kr](https://discuss.elastic.co/u/bijender_kr)\
**Replies:** 0\
**Last updated:** [August 29, 2022, 2:22pm UTC](https://discuss.elastic.co/t/snmp-trap-listener-died-exception-errno-eaddrinuse/313175 "2022-08-29T14:22:51Z")

</div>

Hi, I am getting below error while using snmptrap plugin. \[2022-08-29T10:20:54,371\]\[INFO \]\[logstash.inputs.snmptrap \]\[snmptrap\]\[aef6e9ad69b62db067a46e53d1b0e0b15b5d216cd954b6f321afcb5a16300adc\] It's a Trap! {:Port=\>106…

---

## [Some values don't appear in a data table](https://discuss.elastic.co/t/some-values-dont-appear-in-a-data-table/312992)

<div class="topic-metadata">

**Author:** [@Druffle](https://discuss.elastic.co/u/Druffle)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 10:08am UTC](https://discuss.elastic.co/t/some-values-dont-appear-in-a-data-table/312992 "2022-08-29T10:08:54Z")

</div>

Hi ! I'm currently doing a dashboard and I need help on this table. I don't understand why some values don't appear even though i can see them in "discovery". I made sure these documents had a value for this field.

---

## [Is there a way to dump data in a file if logstash fails to dump the data in elasticsearch for a particular run](https://discuss.elastic.co/t/is-there-a-way-to-dump-data-in-a-file-if-logstash-fails-to-dump-the-data-in-elasticsearch-for-a-particular-run/313134)

<div class="topic-metadata">

**Author:** [@anand\_tripathi](https://discuss.elastic.co/u/anand_tripathi)\
**Replies:** 2\
**Last updated:** [August 29, 2022, 9:42am UTC](https://discuss.elastic.co/t/is-there-a-way-to-dump-data-in-a-file-if-logstash-fails-to-dump-the-data-in-elasticsearch-for-a-particular-run/313134 "2022-08-29T09:42:10Z")

</div>

I am using Logstash to dump my data from Postgres to Elasticsearch. So the input is JDBC that is fetching data from Postgres using tracking\_column and let's say for one run it is taking 1000 records from Postgres Output…

---

## [Kibana server is not ready yet . (Error: Failure installing common resources shared between all indices.)](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet-error-failure-installing-common-resources-shared-between-all-indices/313142)

<div class="topic-metadata">

**Author:** [@bbkunbi](https://discuss.elastic.co/u/bbkunbi)\
**Replies:** 2\
**Last updated:** [August 29, 2022, 9:28am UTC](https://discuss.elastic.co/t/kibana-server-is-not-ready-yet-error-failure-installing-common-resources-shared-between-all-indices/313142 "2022-08-29T09:28:18Z")

</div>

Error: Kibana server is not ready yet, My kibana.log file is below sudo tail /var/log/kibana/kibana.log bhaveshk@linux:~$ sudo tail /var/log/kibana/kibana.log {"type":"log","@timestamp":"2022-08-29T13:12:06+05…

---

## [Closing (Connection reset by peer) keeps being logged on logstash logs](https://discuss.elastic.co/t/closing-connection-reset-by-peer-keeps-being-logged-on-logstash-logs/311992)

<div class="topic-metadata">

**Author:** [@Thuunder7](https://discuss.elastic.co/u/Thuunder7)\
**Replies:** 9\
**Last updated:** [August 29, 2022, 9:23am UTC](https://discuss.elastic.co/t/closing-connection-reset-by-peer-keeps-being-logged-on-logstash-logs/311992 "2022-08-29T09:23:37Z")

</div>

Hello, Since i upgraded my two logstash instances from 7.16.3 to 8.3.1 i am seeing the appearence of the above logs: Does someone know why this could be happening? I didnt had these INFO logs before on the previous …

---

## [Не могу настроить сортировку по алфавиту](https://discuss.elastic.co/t/topic/313057)

<div class="topic-metadata">

**Author:** [@gaparchi](https://discuss.elastic.co/u/gaparchi)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 9:20am UTC](https://discuss.elastic.co/t/topic/313057 "2022-08-29T09:20:03Z")

</div>

Здравствуйте, прошу помощь. Не могу отсортировать выборку по алфавиту, по полю с кириллицей. v 7.17.5 Настройки анализатора для русского языка взял из документации Настройки анализатора: "analysis": { …

---

## [Is there any useful Kibana Dashboard API or Elastic API to read Dashboards/Visualizations from Kibana GUI?](https://discuss.elastic.co/t/is-there-any-useful-kibana-dashboard-api-or-elastic-api-to-read-dashboards-visualizations-from-kibana-gui/313123)

<div class="topic-metadata">

**Author:** [@Ayushi\_bhardwaj](https://discuss.elastic.co/u/Ayushi_bhardwaj)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 9:10am UTC](https://discuss.elastic.co/t/is-there-any-useful-kibana-dashboard-api-or-elastic-api-to-read-dashboards-visualizations-from-kibana-gui/313123 "2022-08-29T09:10:40Z")

</div>

Is there any useful API to read Dashboards/Visualizations from Kibana GUI ? I want to read dashboards from Kibana GUI using Python for automation purpose My Kibana version is v 7.16.2

---

## [Illegal\_argument\_exception when trying to see Security/Hosts](https://discuss.elastic.co/t/illegal-argument-exception-when-trying-to-see-security-hosts/313140)

<div class="topic-metadata">

**Author:** [@cheshirecat](https://discuss.elastic.co/u/cheshirecat)\
**Replies:** 0\
**Last updated:** [August 29, 2022, 9:03am UTC](https://discuss.elastic.co/t/illegal-argument-exception-when-trying-to-see-security-hosts/313140 "2022-08-29T09:03:42Z")

</div>

Hello! I am trying to see hosts on one of my clusters (self-hosted). I have got three nodes here. When I go to Security/Host I get error 400: Full error message: { "message": "status\_exception", "statusCode": …

---

## [Is there any way to use the search result from one index to search on another index?](https://discuss.elastic.co/t/is-there-any-way-to-use-the-search-result-from-one-index-to-search-on-another-index/313131)

<div class="topic-metadata">

**Author:** [@shi](https://discuss.elastic.co/u/shi)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 9:04am UTC](https://discuss.elastic.co/t/is-there-any-way-to-use-the-search-result-from-one-index-to-search-on-another-index/313131 "2022-08-29T09:04:42Z")

</div>

I wanted to search for some data on the first index. Then I need to find the unique values of a specific field in the above search result, and search for the them in the second index. The names of the indices are diffe…

---

## [Word\_delimiter behaviour using match query with operator and](https://discuss.elastic.co/t/word-delimiter-behaviour-using-match-query-with-operator-and/313135)

<div class="topic-metadata">

**Author:** [@the\_hoff](https://discuss.elastic.co/u/the_hoff)\
**Replies:** 0\
**Last updated:** [August 29, 2022, 8:35am UTC](https://discuss.elastic.co/t/word-delimiter-behaviour-using-match-query-with-operator-and/313135 "2022-08-29T08:35:20Z")

</div>

Hi folks, I am currently using the word\_delimiter for splitting up tokens to subtokens with Elastic Version 7.9.2.I do get an unexpected outcome using the delimiter filter with a match query and operator "and" and I am …

---

## [Max count of a index in a day](https://discuss.elastic.co/t/max-count-of-a-index-in-a-day/313133)

<div class="topic-metadata">

**Author:** [@maruf](https://discuss.elastic.co/u/maruf)\
**Replies:** 0\
**Last updated:** [August 29, 2022, 8:30am UTC](https://discuss.elastic.co/t/max-count-of-a-index-in-a-day/313133 "2022-08-29T08:30:59Z")

</div>

Hi, I am new to elasticsearch. We are using ELK stack for logging nginx and various logs. Is there a way to aggregate today's max for an index pattern? Example: In Kibana I can see the spike, I want to get that ti…

---

## [How to get the health status of a single index in elasticsearch?](https://discuss.elastic.co/t/how-to-get-the-health-status-of-a-single-index-in-elasticsearch/313129)

<div class="topic-metadata">

**Author:** [@dishant.sharma](https://discuss.elastic.co/u/dishant.sharma)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 8:09am UTC](https://discuss.elastic.co/t/how-to-get-the-health-status-of-a-single-index-in-elasticsearch/313129 "2022-08-29T08:09:39Z")

</div>

I am using elasticsearch 5.6.16. I know about the cluster health and cat health APIs which come bundled with elasticsearch 5.6 I want to know the status of a particular index found inside my elasticsearch local instance…

---

## [Docker elastic-agent certificate signed by unknown authority](https://discuss.elastic.co/t/docker-elastic-agent-certificate-signed-by-unknown-authority/313024)

<div class="topic-metadata">

**Author:** [@orihomie](https://discuss.elastic.co/u/orihomie)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 6:09am UTC](https://discuss.elastic.co/t/docker-elastic-agent-certificate-signed-by-unknown-authority/313024 "2022-08-29T06:09:57Z")

</div>

Hi. I'm trying to launch elastic-agent in a docker-compose way: elastic-agent: platform: linux/arm64 image: docker.elastic.co/beats/elastic-agent:8.2.3 container\_name: elastic-agent restart: always u…

---

## [Help me...! Error Caused by: java.lang.IllegalStateException: jar hell!](https://discuss.elastic.co/t/help-me-error-caused-by-java-lang-illegalstateexception-jar-hell/313116)

<div class="topic-metadata">

**Author:** [@slowup](https://discuss.elastic.co/u/slowup)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 2:39am UTC](https://discuss.elastic.co/t/help-me-error-caused-by-java-lang-illegalstateexception-jar-hell/313116 "2022-08-29T02:39:28Z")

</div>

The following error is occurring So I deleted the lib in elasticsearch/lib, but if I delete it, another error occurs If I try to delete it from the java project, a code compilation error occurs, what should I do? grad…

---

## [Resolving master node election issues](https://discuss.elastic.co/t/resolving-master-node-election-issues/313054)

<div class="topic-metadata">

**Author:** [@christhegrand](https://discuss.elastic.co/u/christhegrand)\
**Replies:** 1\
**Last updated:** [August 29, 2022, 1:36am UTC](https://discuss.elastic.co/t/resolving-master-node-election-issues/313054 "2022-08-29T01:36:11Z")

</div>

Hello, I'm using the ECK stack to run Elasticsearch. Right now it looks like there is no known master node and the election attempts are failing. How do I fix this? Some logs are included below: {"type": "server", "tim…

---

## [Elasticsearch keeps saying Connection refused on AWS EC2](https://discuss.elastic.co/t/elasticsearch-keeps-saying-connection-refused-on-aws-ec2/313084)

<div class="topic-metadata">

**Author:** [@samacker77elastic](https://discuss.elastic.co/u/samacker77elastic)\
**Replies:** 1\
**Last updated:** [August 28, 2022, 10:19pm UTC](https://discuss.elastic.co/t/elasticsearch-keeps-saying-connection-refused-on-aws-ec2/313084 "2022-08-28T22:19:02Z")

</div>

All the three services Elasticsearch, Kibana, and logstash are active & running on EC2 instance. Number of nodes I have set is 1 for testing purposes. Elasticsearch log \[2022-08-28T07:36:50,297\]\[WARN \]\[o.e.d.PeerFinde…

---

## [Elastic query for where in](https://discuss.elastic.co/t/elastic-query-for-where-in/313104)

<div class="topic-metadata">

**Author:** [@Harrowmykel](https://discuss.elastic.co/u/Harrowmykel)\
**Replies:** 5\
**Last updated:** [August 28, 2022, 8:59pm UTC](https://discuss.elastic.co/t/elastic-query-for-where-in/313104 "2022-08-28T20:59:22Z")

</div>

Hello, Can someone give me the json query equivalent of the following MySQL query Select \* from Table where col1=q or col2=q where cat in (cat1, cat2, cat3) Basically I want to find "q" in index "Table" but restricted…

---

## [Understanding Bool and Nested Query](https://discuss.elastic.co/t/understanding-bool-and-nested-query/313102)

<div class="topic-metadata">

**Author:** [@Aditya-Kumar-Sinha](https://discuss.elastic.co/u/Aditya-Kumar-Sinha)\
**Replies:** 0\
**Last updated:** [August 28, 2022, 5:20pm UTC](https://discuss.elastic.co/t/understanding-bool-and-nested-query/313102 "2022-08-28T17:20:44Z")

</div>

I want to understand both the queries how they are different "query": { "nested": { "path": "addresses", "query": { "bool": { "must\_not": \[ { "exists": { …

---

## [RUM trace through iframe](https://discuss.elastic.co/t/rum-trace-through-iframe/313099)

<div class="topic-metadata">

**Author:** [@soandosps](https://discuss.elastic.co/u/soandosps)\
**Replies:** 0\
**Last updated:** [August 28, 2022, 3:01pm UTC](https://discuss.elastic.co/t/rum-trace-through-iframe/313099 "2022-08-28T15:01:01Z")

</div>

I am trying to get the RUM JS agent to follow through iframes, and I am running into some difficulties. As far as I can tell, RUM does not work by default on resources, so something like \<iframe src="some/local/path"/\> …

---

## [Query with function](https://discuss.elastic.co/t/query-with-function/313096)

<div class="topic-metadata">

**Author:** [@avnere](https://discuss.elastic.co/u/avnere)\
**Replies:** 0\
**Last updated:** [August 28, 2022, 2:01pm UTC](https://discuss.elastic.co/t/query-with-function/313096 "2022-08-28T14:01:56Z")

</div>

Hi, I want to get data that answer functions: (X AND 3 == 1) Means get the documents that answer the function condition (AND 3 = 1), While X is the value from document. What is the best approach to implement it? Than…

---

## [How to change the jvm options config](https://discuss.elastic.co/t/how-to-change-the-jvm-options-config/313085)

<div class="topic-metadata">

**Author:** [@morad\_della3](https://discuss.elastic.co/u/morad_della3)\
**Replies:** 3\
**Last updated:** [August 28, 2022, 10:00am UTC](https://discuss.elastic.co/t/how-to-change-the-jvm-options-config/313085 "2022-08-28T10:00:33Z")

</div>

I want to decrease the ram of the consummation of elastic in the JVM options config how can I? ################################################################ ## IMPORTANT: JVM heap size ###############################…

---

## [ERROR - collector \[index-stats\] timed out when collecting data](https://discuss.elastic.co/t/error-collector-index-stats-timed-out-when-collecting-data/312353)

<div class="topic-metadata">

**Author:** [@AntonUstinov](https://discuss.elastic.co/u/AntonUstinov)\
**Replies:** 12\
**Last updated:** [August 28, 2022, 8:32am UTC](https://discuss.elastic.co/t/error-collector-index-stats-timed-out-when-collecting-data/312353 "2022-08-28T08:32:58Z")

</div>

Регулярно стали появляться такие ошибки в логах, после чего эластик (6.8) вылетает. Этот вопрос уже несколько раз поднимался в англоязычном сегменте, но подходящих ответов я там не нашел (писали, что могут быть проблемы …

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=550)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=552)
