# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=569

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 570

---

## [Task limitations](https://discuss.elastic.co/t/task-limitations/311271)

<div class="topic-metadata">

**Author:** [@Spyros\_Giannopulos](https://discuss.elastic.co/u/Spyros_Giannopulos)\
**Replies:** 2\
**Last updated:** [August 4, 2022, 6:57am UTC](https://discuss.elastic.co/t/task-limitations/311271 "2022-08-04T06:57:48Z")

</div>

Hello, I am planning to push in a cluster without limits tasks in low priority that may take time from seconds to maybe sometimes minutes to finish. The number of tasks can vary without protecting it with limits. I trie…

---

## [Need to migrate data from Single Node Elastic Search Cluster to new Multi Node Elastic Search Cluster](https://discuss.elastic.co/t/need-to-migrate-data-from-single-node-elastic-search-cluster-to-new-multi-node-elastic-search-cluster/311324)

<div class="topic-metadata">

**Author:** [@Sidd\_Sach](https://discuss.elastic.co/u/Sidd_Sach)\
**Replies:** 3\
**Last updated:** [August 4, 2022, 6:51am UTC](https://discuss.elastic.co/t/need-to-migrate-data-from-single-node-elastic-search-cluster-to-new-multi-node-elastic-search-cluster/311324 "2022-08-04T06:51:06Z")

</div>

We have a single node Elastic Search cluster (v7.17.1) running. We are creating a new multi node Master-Data-Client Elastic Search (v7.17.1) cluster for high-availability. We are using Kubernetes and helm charts for dep…

---

## [Combined fields error](https://discuss.elastic.co/t/combined-fields-error/311364)

<div class="topic-metadata">

**Author:** [@renxu](https://discuss.elastic.co/u/renxu)\
**Replies:** 3\
**Last updated:** [August 4, 2022, 6:50am UTC](https://discuss.elastic.co/t/combined-fields-error/311364 "2022-08-04T06:50:47Z")

</div>

{ "query": { "combined\_fields" : { "query": "database systems", "fields": \[ "title", "abstract", "body"\], "operator": "and" } } } { "error": { "root\_cause": \[ { "type": "parsing\_exception", "reas…

---

## [Why is retry\_on\_conflict necessary?](https://discuss.elastic.co/t/why-is-retry-on-conflict-necessary/311177)

<div class="topic-metadata">

**Author:** [@cawoodm](https://discuss.elastic.co/u/cawoodm)\
**Replies:** 1\
**Last updated:** [August 4, 2022, 6:50am UTC](https://discuss.elastic.co/t/why-is-retry-on-conflict-necessary/311177 "2022-08-04T06:50:09Z")

</div>

We are battling to understand why version conflicts occur and why retry\_on\_conflict is a sensible strategy to resolving them. Consider Document \_id: 1 which has value foo: 1 and \_version: 1. If several processes try to …

---

## [ES VersionConflictEngineException current version \[-1\]](https://discuss.elastic.co/t/es-versionconflictengineexception-current-version-1/311282)

<div class="topic-metadata">

**Author:** [@zhcwang](https://discuss.elastic.co/u/zhcwang)\
**Replies:** 1\
**Last updated:** [August 4, 2022, 6:33am UTC](https://discuss.elastic.co/t/es-versionconflictengineexception-current-version-1/311282 "2022-08-04T06:33:23Z")

</div>

I am using ElasticSearch Cluster backed by 3 nodes and batch update several items in one run. It reports version conflicts of one item, and the raw log is VersionConflictEngineException\[\[informationObjects\]\[BTRB3H7GNVG…

---

## [Logstash filter condition not working some times](https://discuss.elastic.co/t/logstash-filter-condition-not-working-some-times/310722)

<div class="topic-metadata">

**Author:** [@perezdev](https://discuss.elastic.co/u/perezdev)\
**Replies:** 6\
**Last updated:** [August 4, 2022, 6:31am UTC](https://discuss.elastic.co/t/logstash-filter-condition-not-working-some-times/310722 "2022-08-04T06:31:29Z")

</div>

Hello, I have following logstash configuration file for winlogbeat events: input { #Winlgobeat beats { port =\> 5044 } } filter { #Filter winlogbeat events mutate { rename =\> { "…

---

## [No support for distance between a term and an exact term with slop](https://discuss.elastic.co/t/no-support-for-distance-between-a-term-and-an-exact-term-with-slop/311309)

<div class="topic-metadata">

**Author:** [@Savi\_Ifraimov](https://discuss.elastic.co/u/Savi_Ifraimov)\
**Replies:** 2\
**Last updated:** [August 4, 2022, 6:16am UTC](https://discuss.elastic.co/t/no-support-for-distance-between-a-term-and-an-exact-term-with-slop/311309 "2022-08-04T06:16:59Z")

</div>

Hello, I am trying to use the 'simple query string query' (as well as other query options) to give me certain results and wonder about my options / if it is possible. The challenge: to search for a term1 within distanc…

---

## [Elasticsearch: Nested JSON object parsing and aggregation](https://discuss.elastic.co/t/elasticsearch-nested-json-object-parsing-and-aggregation/311340)

<div class="topic-metadata">

**Author:** [@Josh\_Thatcher](https://discuss.elastic.co/u/Josh_Thatcher)\
**Replies:** 1\
**Last updated:** [August 4, 2022, 6:12am UTC](https://discuss.elastic.co/t/elasticsearch-nested-json-object-parsing-and-aggregation/311340 "2022-08-04T06:12:33Z")

</div>

I am currently working on a project that takes GitLab Security Scanner artifacts, curls the JSON artifact files to ElasticSearch, and then visualizes certain information from said artifacts. In this scenario, I am trying…

---

## [Transport Error 503](https://discuss.elastic.co/t/transport-error-503/311201)

<div class="topic-metadata">

**Author:** [@RohitBR\_K](https://discuss.elastic.co/u/RohitBR_K)\
**Replies:** 1\
**Last updated:** [August 4, 2022, 2:00am UTC](https://discuss.elastic.co/t/transport-error-503/311201 "2022-08-04T02:00:21Z")

</div>

Traceback (most recent call last): File "/usr/lib/python3.8/code.py", line 90, in runcode exec(code, self.locals) File "", line 1, in File "/usr/local/lib/python3.8/dist-packages/elasticsearch/client/utils.py", line…

---

## [Failed to put mappings on indices](https://discuss.elastic.co/t/failed-to-put-mappings-on-indices/311224)

<div class="topic-metadata">

**Author:** [@davekang](https://discuss.elastic.co/u/davekang)\
**Replies:** 2\
**Last updated:** [August 4, 2022, 1:59am UTC](https://discuss.elastic.co/t/failed-to-put-mappings-on-indices/311224 "2022-08-04T01:59:59Z")

</div>

hi I created a new index for re-indexing and tried re-indexing, but I get the following error: \[DEBUG\]\[o.e.a.a.i.m.p.TransportPutMappingAction\] \[node-01\] failed to put mappings on indices \[\[\[ma\_2022/mmRNrJPwRfutlNQs8L…

---

## [LICENSE \[EXPIRED\]?](https://discuss.elastic.co/t/license-expired/311279)

<div class="topic-metadata">

**Author:** [@alex\_vermex](https://discuss.elastic.co/u/alex_vermex)\
**Replies:** 1\
**Last updated:** [August 4, 2022, 1:57am UTC](https://discuss.elastic.co/t/license-expired/311279 "2022-08-04T01:57:16Z")

</div>

HELLO, I used elasticsearch + kibana for a 30 day trial on mars so LICENSE \[EXPIRED\] ON \[WEDNESDAY, APRIL 20, 2022\]. so i reinstalled another elasticsearch+kibana and i start using normally. yesterday i created new inde…

---

## [How to open my Alert queries in another window so I can see what it is counting](https://discuss.elastic.co/t/how-to-open-my-alert-queries-in-another-window-so-i-can-see-what-it-is-counting/311348)

<div class="topic-metadata">

**Author:** [@gabrsar](https://discuss.elastic.co/u/gabrsar)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 9:22pm UTC](https://discuss.elastic.co/t/how-to-open-my-alert-queries-in-another-window-so-i-can-see-what-it-is-counting/311348 "2022-08-03T21:22:42Z")

</div>

Many times when I'm creating a query for my alarms, I see the window where it shows the number of events that matches that query. My question is: Is there any way I can open all that combined query in another window so I…

---

## [Need help with enterprise search config](https://discuss.elastic.co/t/need-help-with-enterprise-search-config/310997)

<div class="topic-metadata">

**Author:** [@elastic\_user2](https://discuss.elastic.co/u/elastic_user2)\
**Replies:** 1\
**Last updated:** [August 3, 2022, 4:41pm UTC](https://discuss.elastic.co/t/need-help-with-enterprise-search-config/310997 "2022-08-03T16:41:05Z")

</div>

I have installed Elasticsearch, kibana, and enterprise. I followed the configuration instructions and I keep getting this error: We can’t establish a connection to Enterprise Search at the host URL http://localhost:3002 …

---

## [Create views on statuses with math](https://discuss.elastic.co/t/create-views-on-statuses-with-math/311327)

<div class="topic-metadata">

**Author:** [@Murali\_Y](https://discuss.elastic.co/u/Murali_Y)\
**Replies:** 1\
**Last updated:** [August 3, 2022, 4:06pm UTC](https://discuss.elastic.co/t/create-views-on-statuses-with-math/311327 "2022-08-03T16:06:07Z")

</div>

Hello all, I am newbie to Kibana. I am trying to create table or view for below condition: In our logs we are writing below info: "Status": 100 for pass "Status": 200 for fail "Status": 300 for stuck due to issue S…

---

## [Is Version 8 with Elastic Agent stable in medium to large environments?a](https://discuss.elastic.co/t/is-version-8-with-elastic-agent-stable-in-medium-to-large-environments-a/310536)

<div class="topic-metadata">

**Author:** [@alaine](https://discuss.elastic.co/u/alaine)\
**Replies:** 5\
**Last updated:** [August 3, 2022, 3:31pm UTC](https://discuss.elastic.co/t/is-version-8-with-elastic-agent-stable-in-medium-to-large-environments-a/310536 "2022-08-03T15:31:31Z")

</div>

Hi there, I am in charge of a couple clusters that are used for security and log retention. They are both on version 7.17.3 and both have about 5000 endpoints. We are going to have to upgrade to version 8.x at some poin…

---

## [Removing square brackets from json key in http input](https://discuss.elastic.co/t/removing-square-brackets-from-json-key-in-http-input/311243)

<div class="topic-metadata">

**Author:** [@Felipe\_Fuller](https://discuss.elastic.co/u/Felipe_Fuller)\
**Replies:** 5\
**Last updated:** [August 3, 2022, 2:51pm UTC](https://discuss.elastic.co/t/removing-square-brackets-from-json-key-in-http-input/311243 "2022-08-03T14:51:09Z")

</div>

Hi Community! I've been having the following problem. I'm receiving, through http input filter, a JSON that has bracket square in the keys so Logstash isn't able to parse it, as result it returns a \_jsonparsefailure. A…

---

## [How to create multiple filebeats dashboard in Kibana](https://discuss.elastic.co/t/how-to-create-multiple-filebeats-dashboard-in-kibana/311225)

<div class="topic-metadata">

**Author:** [@huzaifa224](https://discuss.elastic.co/u/huzaifa224)\
**Replies:** 4\
**Last updated:** [August 3, 2022, 1:43pm UTC](https://discuss.elastic.co/t/how-to-create-multiple-filebeats-dashboard-in-kibana/311225 "2022-08-03T13:43:46Z")

</div>

Hi, I have multiple Filebeats are running in multiple systems with custom index name. Filebeat send data to Logstash then logstash send data to Elasticsearch. Every thing is working fine logs are showing in Discovery ta…

---

## [Enterprise Search connector feedback](https://discuss.elastic.co/t/enterprise-search-connector-feedback/311316)

<div class="topic-metadata">

**Author:** [@Serena\_Chou](https://discuss.elastic.co/u/Serena_Chou)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 2:01pm UTC](https://discuss.elastic.co/t/enterprise-search-connector-feedback/311316 "2022-08-03T14:01:33Z")

</div>

Are you interested to know more about what connectors we plan to add in the future roadmap? Are you building a connector for something that is custom and unique to your organization? Come talk to the PM team and give us …

---

## [JSON indexing in kibana](https://discuss.elastic.co/t/json-indexing-in-kibana/311265)

<div class="topic-metadata">

**Author:** [@Ritikapawar](https://discuss.elastic.co/u/Ritikapawar)\
**Replies:** 1\
**Last updated:** [August 3, 2022, 2:01pm UTC](https://discuss.elastic.co/t/json-indexing-in-kibana/311265 "2022-08-03T14:01:02Z")

</div>

I have created a index using kibana console the sample JSON data format - \[{ "id":1, "Data":"{'patient\_name':'Amey','gender':'Male'}", "added\_on":"2021-09-28 17:58:16", "added\_by":0, "status":1 }, { "id":2, "Data":"{…

---

## [求助kibana开发环境报错Error: No module factory available for dependency type: CssDependency](https://discuss.elastic.co/t/kibana-error-no-module-factory-available-for-dependency-type-cssdependency/311313)

<div class="topic-metadata">

**Author:** [@wwh2077](https://discuss.elastic.co/u/wwh2077)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 1:32pm UTC](https://discuss.elastic.co/t/kibana-error-no-module-factory-available-for-dependency-type-cssdependency/311313 "2022-08-03T13:32:14Z")

</div>

求助我在搭建kibana开发环境时 运行命令 yarn kbn bootstrap报错了 请问如何解决 $ yarn kbn bootstrap yarn run v1.22.19 $ node scripts/kbn bootstrap succ \[bazel\_tools\] all bazel tools are correctly installed info \[bazel\] INFO: Invocation ID: 959…

---

## [Hardening elasticsearch using certificate from sectigo](https://discuss.elastic.co/t/hardening-elasticsearch-using-certificate-from-sectigo/311296)

<div class="topic-metadata">

**Author:** [@xalastoi](https://discuss.elastic.co/u/xalastoi)\
**Replies:** 3\
**Last updated:** [August 3, 2022, 11:47am UTC](https://discuss.elastic.co/t/hardening-elasticsearch-using-certificate-from-sectigo/311296 "2022-08-03T11:47:04Z")

</div>

0 Due to auditing requirements, it is necessary to encrypt all connections between the application and the elasticsearch cluster after a little googling, I realized that the elasticsearch cluster protection looks like t…

---

## [Cut off matching content and write to field](https://discuss.elastic.co/t/cut-off-matching-content-and-write-to-field/311197)

<div class="topic-metadata">

**Author:** [@anon90868141](https://discuss.elastic.co/u/anon90868141)\
**Replies:** 3\
**Last updated:** [August 3, 2022, 11:44am UTC](https://discuss.elastic.co/t/cut-off-matching-content-and-write-to-field/311197 "2022-08-03T11:44:02Z")

</div>

Hi, is there any way to match a pattern inside a log and just write a port of it to a field? Here's a abstraction of my log: elapsedTimeMs=41 I'd wrap it in () because it's sporadic and want the 41 to be written into …

---

## [Elasticsearch data nodes](https://discuss.elastic.co/t/elasticsearch-data-nodes/311206)

<div class="topic-metadata">

**Author:** [@Farah\_Bhr](https://discuss.elastic.co/u/Farah_Bhr)\
**Replies:** 1\
**Last updated:** [August 3, 2022, 11:11am UTC](https://discuss.elastic.co/t/elasticsearch-data-nodes/311206 "2022-08-03T11:11:49Z")

</div>

Hello I am a beginner at elastic , I want to ask you what is the criteria to add another elasticsearch data node , meaning how to know if my elasticsearch node needs another node to perform better , is there a percentage…

---

## [Can't load some Security pages](https://discuss.elastic.co/t/cant-load-some-security-pages/311126)

<div class="topic-metadata">

**Author:** [@kotvmrc](https://discuss.elastic.co/u/kotvmrc)\
**Replies:** 3\
**Last updated:** [August 3, 2022, 10:51am UTC](https://discuss.elastic.co/t/cant-load-some-security-pages/311126 "2022-08-03T10:51:27Z")

</div>

Hello all, I'm experiencing some issues when loading pages from "Security" section. Pages "Overview", "Timelines", "Cases", "Hosts" and "Network" show the following: "Alerts" page is loading correctly and all the p…

---

## [Logstash 8.3.3 removes entries from sincedb](https://discuss.elastic.co/t/logstash-8-3-3-removes-entries-from-sincedb/311293)

<div class="topic-metadata">

**Author:** [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 10:37am UTC](https://discuss.elastic.co/t/logstash-8-3-3-removes-entries-from-sincedb/311293 "2022-08-03T10:37:24Z")

</div>

Hello, I have a pipeline using Logstash 8.3.3 The pipeline is consuming csv file from an input folder using file input The csv files are produced by an other system on the flight This my input input { file { p…

---

## [How to sort buckets in Elasticsearch on their first occurrence in a search?](https://discuss.elastic.co/t/how-to-sort-buckets-in-elasticsearch-on-their-first-occurrence-in-a-search/311288)

<div class="topic-metadata">

**Author:** [@Peter\_Dewachtere](https://discuss.elastic.co/u/Peter_Dewachtere)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 10:08am UTC](https://discuss.elastic.co/t/how-to-sort-buckets-in-elasticsearch-on-their-first-occurrence-in-a-search/311288 "2022-08-03T10:08:33Z")

</div>

I have an Elasticsearch query (version 7) that returns a paged result of products. The query has a specific sort on multiple fields: Product A - image 1 Product B - image 1 Product C - image 2 Product D - image 2 Prod…

---

## [What is the best practice for multiple table? Multiple logstash config or single config?](https://discuss.elastic.co/t/what-is-the-best-practice-for-multiple-table-multiple-logstash-config-or-single-config/311277)

<div class="topic-metadata">

**Author:** [@myx](https://discuss.elastic.co/u/myx)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 8:38am UTC](https://discuss.elastic.co/t/what-is-the-best-practice-for-multiple-table-multiple-logstash-config-or-single-config/311277 "2022-08-03T08:38:52Z")

</div>

Hi, I just learned ELK and I'm confused about this use case for its Logstash implementation for a project that has quite a bad DB design... So I have index in Elasticsearch called book. Inside it, there's a short infor…

---

## [How to Create Kibana Visualization to show only highest 3 sum of values over a time period?](https://discuss.elastic.co/t/how-to-create-kibana-visualization-to-show-only-highest-3-sum-of-values-over-a-time-period/310000)

<div class="topic-metadata">

**Author:** [@rachana\_uday](https://discuss.elastic.co/u/rachana_uday)\
**Replies:** 3\
**Last updated:** [August 3, 2022, 9:12am UTC](https://discuss.elastic.co/t/how-to-create-kibana-visualization-to-show-only-highest-3-sum-of-values-over-a-time-period/310000 "2022-08-03T09:12:09Z")

</div>

Hey Guys, I have a task to create a kibana Visualization \[preferably a data table\] that shows the maximum 3 values of the sum of values over a time period. Basically I want the visualization to obtain below: calculat…

---

## [Elastic Search query with "+" prefix character escape not working](https://discuss.elastic.co/t/elastic-search-query-with-prefix-character-escape-not-working/311274)

<div class="topic-metadata">

**Author:** [@tobi\_owolawi](https://discuss.elastic.co/u/tobi_owolawi)\
**Replies:** 0\
**Last updated:** [August 3, 2022, 8:10am UTC](https://discuss.elastic.co/t/elastic-search-query-with-prefix-character-escape-not-working/311274 "2022-08-03T08:10:18Z")

</div>

I have this issue currently with my elastic search not working suddenly. trying either of the following shows no hits when they are escaped. GET /policies/\_search { "query" : { "simple\_query\_string" : { "que…

---

## [Problem with indexing Cisco Logfiles](https://discuss.elastic.co/t/problem-with-indexing-cisco-logfiles/309724)

<div class="topic-metadata">

**Author:** [@MADxHAWK](https://discuss.elastic.co/u/MADxHAWK)\
**Replies:** 5\
**Last updated:** [August 3, 2022, 7:40am UTC](https://discuss.elastic.co/t/problem-with-indexing-cisco-logfiles/309724 "2022-08-03T07:40:18Z")

</div>

Hello Community, i am quite new to ELK-Stack and i ran into some problems with indexing Cisco Logfiles to make them searchable in Kibana. Background informations: Server A: xx.xxx.xxx.102 (Loghost) Running syslog-ng…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=568)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=570)
