# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=565

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 566

---

## [Logstash deletes log files after processing](https://discuss.elastic.co/t/logstash-deletes-log-files-after-processing/311743)

<div class="topic-metadata">

**Author:** [@Indrajit](https://discuss.elastic.co/u/Indrajit)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 3:23pm UTC](https://discuss.elastic.co/t/logstash-deletes-log-files-after-processing/311743 "2022-08-09T15:23:34Z")

</div>

logstash delete log files after processing. My input follows below. Is there a way to force logstash not to delete files after processing? input { file { path =\> "/sftpshare/dplogs/dplogs/prod/ext01/…

---

## [Wirting Filter](https://discuss.elastic.co/t/wirting-filter/311752)

<div class="topic-metadata">

**Author:** [@AbdulRahman\_Mahmoud](https://discuss.elastic.co/u/AbdulRahman_Mahmoud)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 3:02pm UTC](https://discuss.elastic.co/t/wirting-filter/311752 "2022-08-09T15:02:45Z")

</div>

Hi, I have tried to use following repo to create a custom filter, for the step of "Package and Deploy" I see it is written that the snippet of "plugin info" - that contatins"group, version, description and pluginInfo.\*"…

---

## [How to redirect an application to a session of a specific index on Kibana](https://discuss.elastic.co/t/how-to-redirect-an-application-to-a-session-of-a-specific-index-on-kibana/311133)

<div class="topic-metadata">

**Author:** [@Vincent92](https://discuss.elastic.co/u/Vincent92)\
**Replies:** 2\
**Last updated:** [August 9, 2022, 8:26am UTC](https://discuss.elastic.co/t/how-to-redirect-an-application-to-a-session-of-a-specific-index-on-kibana/311133 "2022-08-09T08:26:23Z")

</div>

Hello, I am developing a javascript application that will complete my use of Kibana. In my application I display a table that shows all the sessions that have been requested by the user. I would like to add a button i…

---

## [Create alert for long running query from the logs in Kibana alert](https://discuss.elastic.co/t/create-alert-for-long-running-query-from-the-logs-in-kibana-alert/311736)

<div class="topic-metadata">

**Author:** [@skathir29](https://discuss.elastic.co/u/skathir29)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 1:30pm UTC](https://discuss.elastic.co/t/create-alert-for-long-running-query-from-the-logs-in-kibana-alert/311736 "2022-08-09T13:30:17Z")

</div>

Need to get alerted if the time difference between these below two log event is more than 10 mins, Kindly provide some hint to do this Alerts / watcher in Kibana. @timestamp DatabaseName UserName ServerName Duration …

---

## [Writing OR-Query with Wildcards using Query DSL](https://discuss.elastic.co/t/writing-or-query-with-wildcards-using-query-dsl/311726)

<div class="topic-metadata">

**Author:** [@MStrauch](https://discuss.elastic.co/u/MStrauch)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 1:07pm UTC](https://discuss.elastic.co/t/writing-or-query-with-wildcards-using-query-dsl/311726 "2022-08-09T13:07:48Z")

</div>

Hi, I want to create a DSL query that applies wildcard syntax for multiple values that are OR connected. How can I do this in ES? By using a terms query I can connect different values as OR for the same field. By using…

---

## [Logstash filter add new calculated float value](https://discuss.elastic.co/t/logstash-filter-add-new-calculated-float-value/311724)

<div class="topic-metadata">

**Author:** [@azeiner](https://discuss.elastic.co/u/azeiner)\
**Replies:** 3\
**Last updated:** [August 9, 2022, 1:07pm UTC](https://discuss.elastic.co/t/logstash-filter-add-new-calculated-float-value/311724 "2022-08-09T13:07:21Z")

</div>

I've got Data from a Json Object and what i want is to calculate some Values of the same Object e.g. filter { json { source =\> "message" } mutate { add\_field =\> { "xxx1" =\> "Float(%{\[…

---

## [Elasticsearch discovery issues kubernetes](https://discuss.elastic.co/t/elasticsearch-discovery-issues-kubernetes/311465)

<div class="topic-metadata">

**Author:** [@willsc](https://discuss.elastic.co/u/willsc)\
**Replies:** 17\
**Last updated:** [August 9, 2022, 10:43am UTC](https://discuss.elastic.co/t/elasticsearch-discovery-issues-kubernetes/311465 "2022-08-09T10:43:58Z")

</div>

Deploying elasticsearch 7.17.4 into kubernetes {rancher}, and have noticed that elastic doesn't form a cluster, it partitions into 3 separate master nodes. How do i increase the level of debugging on the masters, as all…

---

## [ElasticSearch Query containing equal and not equal](https://discuss.elastic.co/t/elasticsearch-query-containing-equal-and-not-equal/311713)

<div class="topic-metadata">

**Author:** [@usman1](https://discuss.elastic.co/u/usman1)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 10:53am UTC](https://discuss.elastic.co/t/elasticsearch-query-containing-equal-and-not-equal/311713 "2022-08-09T10:53:17Z")

</div>

Hi, Is there a way to use equal and not equal in a query for Elasticsearch? My data looks something like this: ID = 2 FLAG = ""Start" Date = 2022-08-08 Data = \<\> ID = 2 FLAG = "End" Date = 2022-08-08 Data = \<\> ID = 4…

---

## [Does logstash support mips?](https://discuss.elastic.co/t/does-logstash-support-mips/311709)

<div class="topic-metadata">

**Author:** [@xsky](https://discuss.elastic.co/u/xsky)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 10:16am UTC](https://discuss.elastic.co/t/does-logstash-support-mips/311709 "2022-08-09T10:16:21Z")

</div>

logstash versoin: 7.17.5 java version: OpenJDK 11.0.15 cpu: mips64el I use the logstash-7.17.5-linux-aarch64.tar.gz installation package, replace the jdk directory in logstash with mips jdk, and start logstahs, the …

---

## [Facing an \`SSLHandshakeException\` when first ran elasticsearch after installation](https://discuss.elastic.co/t/facing-an-sslhandshakeexception-when-first-ran-elasticsearch-after-installation/311706)

<div class="topic-metadata">

**Author:** [@hend](https://discuss.elastic.co/u/hend)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 10:02am UTC](https://discuss.elastic.co/t/facing-an-sslhandshakeexception-when-first-ran-elasticsearch-after-installation/311706 "2022-08-09T10:02:11Z")

</div>

Hey, I'm very new to Elasticsearch and was following the installation steps, when I tried running it I get this error. not sure which certificate is missing and where/how to get it. Any help? \[2022-08-09T12:45:29,496\]\[…

---

## [Kibana map's timeslider option](https://discuss.elastic.co/t/kibana-maps-timeslider-option/311668)

<div class="topic-metadata">

**Author:** [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Replies:** 3\
**Last updated:** [August 9, 2022, 9:43am UTC](https://discuss.elastic.co/t/kibana-maps-timeslider-option/311668 "2022-08-09T09:43:45Z")

</div>

I have map visulization. when I go to edit mode I have timeslider option avalibale but when I am on a dashboard for map visulization I don't have that option available. How do I enable that option? But no such option…

---

## [Elastic Upgrade: 6.60 to 7.14, can I keep the index with old mapping?](https://discuss.elastic.co/t/elastic-upgrade-6-60-to-7-14-can-i-keep-the-index-with-old-mapping/311520)

<div class="topic-metadata">

**Author:** [@iyan](https://discuss.elastic.co/u/iyan)\
**Replies:** 5\
**Last updated:** [August 9, 2022, 9:09am UTC](https://discuss.elastic.co/t/elastic-upgrade-6-60-to-7-14-can-i-keep-the-index-with-old-mapping/311520 "2022-08-09T09:09:19Z")

</div>

I have the task to upgrade our elastic from 6.60 to 7.14. According to Upgrade to Elasticsearch 7.x | Elasticsearch Service Documentation | Elastic the 6.x indices are compatible with 7.x. Elasticsearch 7.x is compatib…

---

## [Comment rediriger une application vers une session d'un index spécifique sur Kibana](https://discuss.elastic.co/t/comment-rediriger-une-application-vers-une-session-dun-index-specifique-sur-kibana/311195)

<div class="topic-metadata">

**Author:** [@Vincent92](https://discuss.elastic.co/u/Vincent92)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 8:28am UTC](https://discuss.elastic.co/t/comment-rediriger-une-application-vers-une-session-dun-index-specifique-sur-kibana/311195 "2022-08-09T08:28:41Z")

</div>

Bonjour, Je suis en train de développer une application javascript qui viendra compléter mon utilisation de Kibana. Dans mon application, j'affiche un tableau qui présente toutes les sessions qui ont été demandées par …

---

## [To get the data of Index size into Kibana Dashboards](https://discuss.elastic.co/t/to-get-the-data-of-index-size-into-kibana-dashboards/310136)

<div class="topic-metadata">

**Author:** [@anushyaadam](https://discuss.elastic.co/u/anushyaadam)\
**Replies:** 2\
**Last updated:** [August 9, 2022, 8:14am UTC](https://discuss.elastic.co/t/to-get-the-data-of-index-size-into-kibana-dashboards/310136 "2022-08-09T08:14:25Z")

</div>

Hi Team, We have a request for you.. we need live dashboard with each application volumes per index in Kibana(7.15.1) Firstly ,we would like to get to know about the volume of each and every indices in a unique dashboa…

---

## [Logstash-8.3.3 (latest) still using jackson-databind-2.9.10.8](https://discuss.elastic.co/t/logstash-8-3-3-latest-still-using-jackson-databind-2-9-10-8/311694)

<div class="topic-metadata">

**Author:** [@shivani\_aggarwal](https://discuss.elastic.co/u/shivani_aggarwal)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 8:12am UTC](https://discuss.elastic.co/t/logstash-8-3-3-latest-still-using-jackson-databind-2-9-10-8/311694 "2022-08-09T08:12:06Z")

</div>

As per logstash 8.3.0 release notes , Jackson and jackson-databind have been updated to 2.13.3 #13945 But we see the logstash rpm also brings a plugin logstash-input-beats - that still uses jackson-databind-2.9.10.8. …

---

## [What are the options to integrate interactive graphs into my webapp?](https://discuss.elastic.co/t/what-are-the-options-to-integrate-interactive-graphs-into-my-webapp/311669)

<div class="topic-metadata">

**Author:** [@Kibanosi](https://discuss.elastic.co/u/Kibanosi)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 7:56am UTC](https://discuss.elastic.co/t/what-are-the-options-to-integrate-interactive-graphs-into-my-webapp/311669 "2022-08-09T07:56:53Z")

</div>

Hi, I'm looking for a library to display data from ES (graphs and statistics, charts) in my frontend and I would like to be able to add filters like date filters to these components. Is there something specifically for…

---

## [The Walkthrough of Synthetics Public Beta is unavailable](https://discuss.elastic.co/t/the-walkthrough-of-synthetics-public-beta-is-unavailable/311278)

<div class="topic-metadata">

**Author:** [@Leandre](https://discuss.elastic.co/u/Leandre)\
**Replies:** 2\
**Last updated:** [August 9, 2022, 7:54am UTC](https://discuss.elastic.co/t/the-walkthrough-of-synthetics-public-beta-is-unavailable/311278 "2022-08-09T07:54:07Z")

</div>

When clicking the link given in the Beta acceptation mail, I get this : Error for Synthetics Public Beta Walkthrough - Album on Imgur

---

## [Why don't the queries built by Kibana in discover use must?](https://discuss.elastic.co/t/why-dont-the-queries-built-by-kibana-in-discover-use-must/311434)

<div class="topic-metadata">

**Author:** [@Vincent92](https://discuss.elastic.co/u/Vincent92)\
**Replies:** 4\
**Last updated:** [August 9, 2022, 7:53am UTC](https://discuss.elastic.co/t/why-dont-the-queries-built-by-kibana-in-discover-use-must/311434 "2022-08-09T07:53:43Z")

</div>

Hello, I am developing a web application to visualize data in an elastic and I am inspired by the queries made by Kibana in the Discover application by going to inspect the query object created in the Inspect tab of Dis…

---

## [Control the log flow from Logstash](https://discuss.elastic.co/t/control-the-log-flow-from-logstash/311691)

<div class="topic-metadata">

**Author:** [@anushyaadam](https://discuss.elastic.co/u/anushyaadam)\
**Replies:** 0\
**Last updated:** [August 9, 2022, 7:51am UTC](https://discuss.elastic.co/t/control-the-log-flow-from-logstash/311691 "2022-08-09T07:51:12Z")

</div>

Hi Team, We are frequently facing logs lagging in Kibana due to other application team while doing performance testing and also they are sending a bulk data at a time. In that scenario, that would be taking too much ti…

---

## [Sum by quantity and sort by lowest price](https://discuss.elastic.co/t/sum-by-quantity-and-sort-by-lowest-price/311242)

<div class="topic-metadata">

**Author:** [@brampurnot](https://discuss.elastic.co/u/brampurnot)\
**Replies:** 4\
**Last updated:** [August 9, 2022, 6:55am UTC](https://discuss.elastic.co/t/sum-by-quantity-and-sort-by-lowest-price/311242 "2022-08-09T06:55:12Z")

</div>

I have a requirement in Elasticsearch which I'm not able to implement at the moment. The use case is as follows; we have certain products uploaded in elastic (1 million + items) and each item has a quantity, a price and …

---

## [World Map not displaying geodata](https://discuss.elastic.co/t/world-map-not-displaying-geodata/311610)

<div class="topic-metadata">

**Author:** [@Raj\_test](https://discuss.elastic.co/u/Raj_test)\
**Replies:** 9\
**Last updated:** [August 9, 2022, 5:27am UTC](https://discuss.elastic.co/t/world-map-not-displaying-geodata/311610 "2022-08-09T05:27:29Z")

</div>

Hello Team, I am using kibana 8.3.3 and the world map is not displaying geo data via packetbeat I am getting this err. can anyone please help. { "error": { "root\_cause": \[ { "type": "index\_not\_found\_exception", …

---

## [Logstash, ES connection error](https://discuss.elastic.co/t/logstash-es-connection-error/311683)

<div class="topic-metadata">

**Author:** [@hellocomputer](https://discuss.elastic.co/u/hellocomputer)\
**Replies:** 3\
**Last updated:** [August 9, 2022, 3:45am UTC](https://discuss.elastic.co/t/logstash-es-connection-error/311683 "2022-08-09T03:45:02Z")

</div>

Hello I used ubuntu20.04 version and ELK stack 8.3.2 version. Then, I's working in connecting with logstash and ES. 2022-08-09T02:14:45,699\]\[INFO \]\[logstash.outputs.elasticsearch\]\[main\] Failed to perform request {:me…

---

## [How to prevent Logstash file input duplicate reading with rotating log?](https://discuss.elastic.co/t/how-to-prevent-logstash-file-input-duplicate-reading-with-rotating-log/311264)

<div class="topic-metadata">

**Author:** [@kent010341](https://discuss.elastic.co/u/kent010341)\
**Replies:** 14\
**Last updated:** [August 9, 2022, 3:14am UTC](https://discuss.elastic.co/t/how-to-prevent-logstash-file-input-duplicate-reading-with-rotating-log/311264 "2022-08-09T03:14:01Z")

</div>

I have a system that keeps writing logs (with log4j) and it will rotate and compress to a .gz file when the log file reaches 100 MB. I use Logstash file input plugin to read those log files, and there are several compre…

---

## [Complex aggregations on multiple indices alias](https://discuss.elastic.co/t/complex-aggregations-on-multiple-indices-alias/310912)

<div class="topic-metadata">

**Author:** [@shreedhan](https://discuss.elastic.co/u/shreedhan)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 12:30am UTC](https://discuss.elastic.co/t/complex-aggregations-on-multiple-indices-alias/310912 "2022-08-09T00:30:59Z")

</div>

Hi, If we create multiple indices under an alias and run query aggregations like stats aggregation, how does Elasticsearch compute metrics like Standard deviation? Will the accuracy of these types of metrics be lower th…

---

## [How to send xml and csv data from postman to elasticsearch or logstash](https://discuss.elastic.co/t/how-to-send-xml-and-csv-data-from-postman-to-elasticsearch-or-logstash/311635)

<div class="topic-metadata">

**Author:** [@gopikrish](https://discuss.elastic.co/u/gopikrish)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 12:12am UTC](https://discuss.elastic.co/t/how-to-send-xml-and-csv-data-from-postman-to-elasticsearch-or-logstash/311635 "2022-08-09T00:12:41Z")

</div>

Hi, Im new to Elasticsearch all I want to know how to send XML and CSV data to elasticsearch or logstash through postman and how to mapping and configuration for this type of data .can anyone please explain me. THANKS …

---

## [Can an Elasticsearch cluster have nodes running different Linux distributions?](https://discuss.elastic.co/t/can-an-elasticsearch-cluster-have-nodes-running-different-linux-distributions/311466)

<div class="topic-metadata">

**Author:** [@ankh](https://discuss.elastic.co/u/ankh)\
**Replies:** 2\
**Last updated:** [August 9, 2022, 12:03am UTC](https://discuss.elastic.co/t/can-an-elasticsearch-cluster-have-nodes-running-different-linux-distributions/311466 "2022-08-09T00:03:18Z")

</div>

We are moving from a Red Hat-based distro to a Debian one (Ubuntu). Looking at options for converting our Elasticsearch cluster over. One option would be rolling upgrades to convert each node to Ubuntu, one at a time, wi…

---

## [ILM policy in logstash is not working](https://discuss.elastic.co/t/ilm-policy-in-logstash-is-not-working/311486)

<div class="topic-metadata">

**Author:** [@Ankit\_Grover](https://discuss.elastic.co/u/Ankit_Grover)\
**Replies:** 1\
**Last updated:** [August 9, 2022, 12:02am UTC](https://discuss.elastic.co/t/ilm-policy-in-logstash-is-not-working/311486 "2022-08-09T00:02:08Z")

</div>

Hi there My logstash ILM policy is not working, it does not roll over to the new index can please someone help me ? Can someone please provide me instruction to setup ILM policy in logstash to rollover ? Thanks

---

## [Kibana map drill-downs enable access to all fields](https://discuss.elastic.co/t/kibana-map-drill-downs-enable-access-to-all-fields/311386)

<div class="topic-metadata">

**Author:** [@petersedivec](https://discuss.elastic.co/u/petersedivec)\
**Replies:** 5\
**Last updated:** [August 8, 2022, 10:16pm UTC](https://discuss.elastic.co/t/kibana-map-drill-downs-enable-access-to-all-fields/311386 "2022-08-08T22:16:00Z")

</div>

I've been using drill-downs for about a year now and have been meaning to post on this topic to get feedback on if I'm missing something in what I'm attempting to do. We use drill-downs mainly from maps and I'll describ…

---

## [Elastic-agent overhead/resource consumption](https://discuss.elastic.co/t/elastic-agent-overhead-resource-consumption/311654)

<div class="topic-metadata">

**Author:** [@lineconnect](https://discuss.elastic.co/u/lineconnect)\
**Replies:** 6\
**Last updated:** [August 8, 2022, 8:38pm UTC](https://discuss.elastic.co/t/elastic-agent-overhead-resource-consumption/311654 "2022-08-08T20:38:44Z")

</div>

Hi, i'm using the standalone elastic agent and wondering why there is so much memory usage. Without limiting the resources. elastic-agent is using 1GB memory for monitoring one file. (Filebeat is using 100-150 mb for …

---

## [OpenJDK 64-Bit Server VM warning: Option UseConcMarkSweepGC](https://discuss.elastic.co/t/openjdk-64-bit-server-vm-warning-option-useconcmarksweepgc/311661)

<div class="topic-metadata">

**Author:** [@bezder](https://discuss.elastic.co/u/bezder)\
**Replies:** 1\
**Last updated:** [August 8, 2022, 5:42pm UTC](https://discuss.elastic.co/t/openjdk-64-bit-server-vm-warning-option-useconcmarksweepgc/311661 "2022-08-08T17:42:24Z")

</div>

hello, any idea how to get rid of that warning? OpenJDK 64-Bit Server VM warning: .... thanks root@universe-new:/home/heap# sudo -u logstash /usr/share/logstash/bin/logstash --path.settings /etc/logstash -t Using bun…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=564)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=566)
