# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=583

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 584

---

## [What indexes will be used during elastic search?](https://discuss.elastic.co/t/what-indexes-will-be-used-during-elastic-search/309819)

<div class="topic-metadata">

**Author:** [@davecomputertips](https://discuss.elastic.co/u/davecomputertips)\
**Replies:** 7\
**Last updated:** [July 18, 2022, 3:06am UTC](https://discuss.elastic.co/t/what-indexes-will-be-used-during-elastic-search/309819 "2022-07-18T03:06:28Z")

</div>

I am confused because this is ambiguous question. Is it asking about inverted index? Or this? My teacher died last week and we haven't got a new teacher yet :frowning: RIP

---

## [Single JSON document parsed as individual key pair in logstash](https://discuss.elastic.co/t/single-json-document-parsed-as-individual-key-pair-in-logstash/309787)

<div class="topic-metadata">

**Author:** [@parthmaniar](https://discuss.elastic.co/u/parthmaniar)\
**Replies:** 1\
**Last updated:** [July 18, 2022, 3:00am UTC](https://discuss.elastic.co/t/single-json-document-parsed-as-individual-key-pair-in-logstash/309787 "2022-07-18T03:00:27Z")

</div>

Hello, I hope my message find the community members and their loved ones safe and healthy. I am trying to ingest ~30,000 documents which are API responses with selective keys stored as a JSON document. \[ { …

---

## [Why artifacts.elastic.co/GPG-KEY-elasticsearch returns 403 for russian IPs, but not always?](https://discuss.elastic.co/t/why-artifacts-elastic-co-gpg-key-elasticsearch-returns-403-for-russian-ips-but-not-always/300969)

<div class="topic-metadata">

**Author:** [@h\_Kleiser](https://discuss.elastic.co/u/h_Kleiser)\
**Replies:** 26\
**Last updated:** [July 17, 2022, 10:57pm UTC](https://discuss.elastic.co/t/why-artifacts-elastic-co-gpg-key-elasticsearch-returns-403-for-russian-ips-but-not-always/300969 "2022-07-17T22:57:50Z")

</div>

I'm making rpm --import https://artifacts.elastic.co/GPG-KEY-elasticsearch and it return 403, but not always, like 30% of all request passes normally. What's the point of such behaviour?

---

## [How to determine number of master nodes](https://discuss.elastic.co/t/how-to-determine-number-of-master-nodes/309780)

<div class="topic-metadata">

**Author:** [@wisam\_9mol](https://discuss.elastic.co/u/wisam_9mol)\
**Replies:** 10\
**Last updated:** [July 17, 2022, 9:37am UTC](https://discuss.elastic.co/t/how-to-determine-number-of-master-nodes/309780 "2022-07-17T09:37:58Z")

</div>

Is there a way to find out how many master nodes I need for a number of data nodes For example If I have 100 data nodes, how many masters nodes do I need? In the case of 12 data nodes Or 18 data nodes

---

## [Is there a way to place one or more elasticsearch shards on a separate disk?](https://discuss.elastic.co/t/is-there-a-way-to-place-one-or-more-elasticsearch-shards-on-a-separate-disk/309797)

<div class="topic-metadata">

**Author:** [@jalustig](https://discuss.elastic.co/u/jalustig)\
**Replies:** 5\
**Last updated:** [July 17, 2022, 8:21am UTC](https://discuss.elastic.co/t/is-there-a-way-to-place-one-or-more-elasticsearch-shards-on-a-separate-disk/309797 "2022-07-17T08:21:52Z")

</div>

I have a large elasticsearch index which is stored on an external blob storage device attached to my server, but I also have a large amount of free space on the main hard disk. Id like to put that space to use, if possib…

---

## [Pipelines don't working](https://discuss.elastic.co/t/pipelines-dont-working/309793)

<div class="topic-metadata">

**Author:** [@White\_Hat](https://discuss.elastic.co/u/White_Hat)\
**Replies:** 3\
**Last updated:** [July 17, 2022, 6:35am UTC](https://discuss.elastic.co/t/pipelines-dont-working/309793 "2022-07-17T06:35:30Z")

</div>

I want to log two separate servers that each has filebeat installed. this is my pipeline: - pipeline.id: beats-server config.string: | input { beats { port =\> 5400 } } output { if \[source\] == 'src' { …

---

## [ES and Kibana are working but I can't access it](https://discuss.elastic.co/t/es-and-kibana-are-working-but-i-cant-access-it/309795)

<div class="topic-metadata">

**Author:** [@RusseL](https://discuss.elastic.co/u/RusseL)\
**Replies:** 1\
**Last updated:** [July 17, 2022, 3:57am UTC](https://discuss.elastic.co/t/es-and-kibana-are-working-but-i-cant-access-it/309795 "2022-07-17T03:57:05Z")

</div>

Hi there. I installed the latest versions of elasticsearch and kibana. sudo systemctl status elasticsearcrh.service and sudo systemctl status kibana.service When I run them both appear to be working. I am able to m…

---

## [Log timestamp is not getting through date filter getting date\_time\_parse\_exception](https://discuss.elastic.co/t/log-timestamp-is-not-getting-through-date-filter-getting-date-time-parse-exception/309705)

<div class="topic-metadata">

**Author:** [@tahseen\_fatima](https://discuss.elastic.co/u/tahseen_fatima)\
**Replies:** 17\
**Last updated:** [July 16, 2022, 9:23pm UTC](https://discuss.elastic.co/t/log-timestamp-is-not-getting-through-date-filter-getting-date-time-parse-exception/309705 "2022-07-16T21:23:19Z")

</div>

Hi Team, I have following logstash configuration for where I have written the date pattern to parse my timestamp, but time is not working. I'm getting \_dateparsefailure. here is the configuration. input{.............}…

---

## [How to use dsl](https://discuss.elastic.co/t/how-to-use-dsl/309718)

<div class="topic-metadata">

**Author:** [@Aniket\_Pant](https://discuss.elastic.co/u/Aniket_Pant)\
**Replies:** 2\
**Last updated:** [July 16, 2022, 6:29pm UTC](https://discuss.elastic.co/t/how-to-use-dsl/309718 "2022-07-16T18:29:43Z")

</div>

Hi all, I want to learn elasticsearch DSL but i dont know what is the use of query , filter. I want practical questions which teach me actual use of particular function. Sorry for this silly question but i want to learn…

---

## [Change in a field for the selected time period](https://discuss.elastic.co/t/change-in-a-field-for-the-selected-time-period/307913)

<div class="topic-metadata">

**Author:** [@baahubali](https://discuss.elastic.co/u/baahubali)\
**Replies:** 3\
**Last updated:** [July 16, 2022, 11:41am UTC](https://discuss.elastic.co/t/change-in-a-field-for-the-selected-time-period/307913 "2022-07-16T11:41:31Z")

</div>

We can find the Daily, Weekly, Monthly or Yearly changes for a field using Lens now. Great! But how do we find Change in a field for the selected time period in the top right? This is a very basic requirement but I hav…

---

## [High IOwiats on ELK Linux Instance](https://discuss.elastic.co/t/high-iowiats-on-elk-linux-instance/309597)

<div class="topic-metadata">

**Author:** [@AmarKolhapuri](https://discuss.elastic.co/u/AmarKolhapuri)\
**Replies:** 2\
**Last updated:** [July 16, 2022, 12:34am UTC](https://discuss.elastic.co/t/high-iowiats-on-elk-linux-instance/309597 "2022-07-16T00:34:23Z")

</div>

Hi All, We have a Weblogic server and other applications/servers(HTTP server) that write logs to the Logs mount. In order to monitor the performance of the application, this mount is shared with the ELK stack. After re…

---

## [Elasticsearch 8.3 Heap Memory Sizing Confusion](https://discuss.elastic.co/t/elasticsearch-8-3-heap-memory-sizing-confusion/309771)

<div class="topic-metadata">

**Author:** [@afarley](https://discuss.elastic.co/u/afarley)\
**Replies:** 1\
**Last updated:** [July 16, 2022, 12:32am UTC](https://discuss.elastic.co/t/elasticsearch-8-3-heap-memory-sizing-confusion/309771 "2022-07-16T00:32:08Z")

</div>

Hello all, I'm a little confused with the new sizing documentation that was written for the 8.3 release. It mentions leaving 1kb Heap available per field in an index. Does this mean 1kb heap should be available per fiel…

---

## [Cycle through Dropdown Filter Values every minute in Canvas](https://discuss.elastic.co/t/cycle-through-dropdown-filter-values-every-minute-in-canvas/308990)

<div class="topic-metadata">

**Author:** [@Angad\_Panesar1](https://discuss.elastic.co/u/Angad_Panesar1)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 9:30pm UTC](https://discuss.elastic.co/t/cycle-through-dropdown-filter-values-every-minute-in-canvas/308990 "2022-07-15T21:30:19Z")

</div>

Hi In Kibana, is there any way that I can have the canvas automatically change the dropdown filter value chosen every minute? E.g. Location - 00000D changes to Location - 000064 after 1 minute and changes again after an…

---

## [Source code of kibana dashboard](https://discuss.elastic.co/t/source-code-of-kibana-dashboard/309463)

<div class="topic-metadata">

**Author:** [@Farah\_Bhr](https://discuss.elastic.co/u/Farah_Bhr)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 9:20pm UTC](https://discuss.elastic.co/t/source-code-of-kibana-dashboard/309463 "2022-07-15T21:20:38Z")

</div>

Hello After creating my dashboard with kibana , is there a way to view the source code of this dashboard and how can I find or view the source code of my kibana dashboard already created ?

---

## [Date range query with another query](https://discuss.elastic.co/t/date-range-query-with-another-query/309515)

<div class="topic-metadata">

**Author:** [@Krishna\_Sai\_Nag\_G](https://discuss.elastic.co/u/Krishna_Sai_Nag_G)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 9:11pm UTC](https://discuss.elastic.co/t/date-range-query-with-another-query/309515 "2022-07-15T21:11:21Z")

</div>

I have 2 queries like this and i have to apply date range filter, is it possible to merge the 2 queries, i am applying search on the same index in 2 queries. first query GET index\_1/\_search { "\_source": \["file.filen…

---

## [Unsupported scope was requested. Enterprise Search integration with Box using OAuth 2](https://discuss.elastic.co/t/unsupported-scope-was-requested-enterprise-search-integration-with-box-using-oauth-2/308964)

<div class="topic-metadata">

**Author:** [@rajkeshav](https://discuss.elastic.co/u/rajkeshav)\
**Replies:** 6\
**Last updated:** [July 15, 2022, 5:44pm UTC](https://discuss.elastic.co/t/unsupported-scope-was-requested-enterprise-search-integration-with-box-using-oauth-2/308964 "2022-07-15T17:44:09Z")

</div>

I am trying to connect a Box application as a Source in Workplace Search. The Box application is using OAuth 2.0 by following the documentation link: Connecting Box | Workplace Search Guide \[8.3\] | Elastic The redirect …

---

## [Unable to push messages to Kafka streams](https://discuss.elastic.co/t/unable-to-push-messages-to-kafka-streams/309458)

<div class="topic-metadata">

**Author:** [@Rao\_Nelakurti](https://discuss.elastic.co/u/Rao_Nelakurti)\
**Replies:** 5\
**Last updated:** [July 15, 2022, 4:39pm UTC](https://discuss.elastic.co/t/unable-to-push-messages-to-kafka-streams/309458 "2022-07-15T16:39:45Z")

</div>

Hi Team, I'm trying to send application logs (filebeat -\> logstash-\> kafka topic) to kafka stream. For some reason I'm not able to see logs in kafka. Here is my filebeat.conf filebeat.spool\_size: 2048 filebeat.idle\_ti…

---

## [Kibana Plugins Degraded](https://discuss.elastic.co/t/kibana-plugins-degraded/309748)

<div class="topic-metadata">

**Author:** [@francescouk](https://discuss.elastic.co/u/francescouk)\
**Replies:** 4\
**Last updated:** [July 15, 2022, 4:22pm UTC](https://discuss.elastic.co/t/kibana-plugins-degraded/309748 "2022-07-15T16:22:42Z")

</div>

Hi there, I´ve done a few searchs for this kind of solution and I could not find anywhere. Can someone help me? Jul 15 12:00:36 kbn kibana\[3899\]: \[2022-07-15T12:00:36.438-03:00\]\[ERROR\]\[plugins.securitySolution\] Bulk…

---

## [Kibana Error in Report Generation](https://discuss.elastic.co/t/kibana-error-in-report-generation/309401)

<div class="topic-metadata">

**Author:** [@Apoorv\_Agarwal](https://discuss.elastic.co/u/Apoorv_Agarwal)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 3:40pm UTC](https://discuss.elastic.co/t/kibana-error-in-report-generation/309401 "2022-07-15T15:40:00Z")

</div>

I am getting the following error while trying to generate a csv report from Kibana. Following is the error code I can see in the logs: {"type":"log","@timestamp":"2022-07-12T10:20:45Z","tags":\["debug","legacy-service…

---

## [Aggregate values of multi-value fields from one document?](https://discuss.elastic.co/t/aggregate-values-of-multi-value-fields-from-one-document/309549)

<div class="topic-metadata">

**Author:** [@Muhammed\_Ashique](https://discuss.elastic.co/u/Muhammed_Ashique)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 2:43pm UTC](https://discuss.elastic.co/t/aggregate-values-of-multi-value-fields-from-one-document/309549 "2022-07-15T14:43:51Z")

</div>

I am parsing a json object into elasticsearch. one object is consist of nested json and this have multiple value. This field is provid ing multiple values like below. (also attached screenshot. How can i aggregate…

---

## [Add a new node to ES cluster v 8.1](https://discuss.elastic.co/t/add-a-new-node-to-es-cluster-v-8-1/309743)

<div class="topic-metadata">

**Author:** [@pcb1](https://discuss.elastic.co/u/pcb1)\
**Replies:** 0\
**Last updated:** [July 15, 2022, 1:46pm UTC](https://discuss.elastic.co/t/add-a-new-node-to-es-cluster-v-8-1/309743 "2022-07-15T13:46:47Z")

</div>

Hello, I have ES -8,1 cluster working . The only change I made to the existing nodes in the cluster is : xpack.security.http.ssl: enabled: false Now , I want to add new data node but getting errors here are my steps…

---

## [How to implement with complicate wording (hero hero hero)](https://discuss.elastic.co/t/how-to-implement-with-complicate-wording-hero-hero-hero/309722)

<div class="topic-metadata">

**Author:** [@Ch\_Corporate](https://discuss.elastic.co/u/Ch_Corporate)\
**Replies:** 10\
**Last updated:** [July 15, 2022, 1:00pm UTC](https://discuss.elastic.co/t/how-to-implement-with-complicate-wording-hero-hero-hero/309722 "2022-07-15T13:00:58Z")

</div>

My data is Doc 1 hero hero hero Doc 2 hero hero Doc 3 hero We would have Result is Doc 3:"hero" How do I implement this case use regular expression or wild card

---

## [Creating type in ES](https://discuss.elastic.co/t/creating-type-in-es/308666)

<div class="topic-metadata">

**Author:** [@smitak](https://discuss.elastic.co/u/smitak)\
**Replies:** 23\
**Last updated:** [July 15, 2022, 12:13pm UTC](https://discuss.elastic.co/t/creating-type-in-es/308666 "2022-07-15T12:13:18Z")

</div>

Hello , I am new to Elasticsearch. I have created index. And Now adding type and document. But getting error. {"error":"no handler found for uri \[/my\_first\_index/message\] and method \[POST\]"} Entering this command c…

---

## [Unable to run Logstash 8.3.1 (not even to check plugins): Errno::EACCES: Permission denied - NUL](https://discuss.elastic.co/t/unable-to-run-logstash-8-3-1-not-even-to-check-plugins-errno-permission-denied-nul/308871)

<div class="topic-metadata">

**Author:** [@stevedearl](https://discuss.elastic.co/u/stevedearl)\
**Replies:** 4\
**Last updated:** [July 15, 2022, 10:54am UTC](https://discuss.elastic.co/t/unable-to-run-logstash-8-3-1-not-even-to-check-plugins-errno-permission-denied-nul/308871 "2022-07-15T10:54:35Z")

</div>

I'm seeing an issue after installing Logstash 8.3.1 on Windows 10 (as part of an upgrade from Logstash 8.1.2 which has been running perfectly fine). All I've done is unpack the Logstash 8.3.1 zip file into a suitable fo…

---

## [How to filter out "-" values in Kibana?](https://discuss.elastic.co/t/how-to-filter-out-values-in-kibana/309389)

<div class="topic-metadata">

**Author:** [@Mebravo](https://discuss.elastic.co/u/Mebravo)\
**Replies:** 2\
**Last updated:** [July 15, 2022, 9:37am UTC](https://discuss.elastic.co/t/how-to-filter-out-values-in-kibana/309389 "2022-07-15T09:37:34Z")

</div>

Hi, I am trying to visualize the top process with their CPU percentage. However, when I put this in a table some values are "-". These are also sorted above normal percentages. Is there a way to filter these values out …

---

## [Error: getsockopt: connection refused](https://discuss.elastic.co/t/error-getsockopt-connection-refused/309564)

<div class="topic-metadata">

**Author:** [@benjamin\_brightson](https://discuss.elastic.co/u/benjamin_brightson)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 9:04am UTC](https://discuss.elastic.co/t/error-getsockopt-connection-refused/309564 "2022-07-15T09:04:29Z")

</div>

Hi Team, This is to inform you that am trying to setup the multiple beat config with logstash , so initially i started with the single beat config where am facing the " \[Error: getsockopt: connection refused\]" this erro…

---

## [Issue for the multiline input](https://discuss.elastic.co/t/issue-for-the-multiline-input/309459)

<div class="topic-metadata">

**Author:** [@INS](https://discuss.elastic.co/u/INS)\
**Replies:** 5\
**Last updated:** [July 15, 2022, 9:00am UTC](https://discuss.elastic.co/t/issue-for-the-multiline-input/309459 "2022-07-15T09:00:08Z")

</div>

Hi @leandrojmp There we will continue topic from Grok for data - #13 by leandrojmp now we need to complete process for parsing below date with the exact content: input { file { mode =\> read path =\>…

---

## [I need to query restaurants scoring by match +distance](https://discuss.elastic.co/t/i-need-to-query-restaurants-scoring-by-match-distance/308746)

<div class="topic-metadata">

**Author:** [@Ch\_Corporate](https://discuss.elastic.co/u/Ch_Corporate)\
**Replies:** 5\
**Last updated:** [July 15, 2022, 8:41am UTC](https://discuss.elastic.co/t/i-need-to-query-restaurants-scoring-by-match-distance/308746 "2022-07-15T08:41:31Z")

</div>

I need to query restaurants scoring by match +distance here is what I want Example Data field “restaurant name”:burger(nearest) , BurgerA Case 1 if in put is “burger” The result must be 1.Burger (Nearest) 2.Burger A …

---

## [How to analyze data in ES？](https://discuss.elastic.co/t/how-to-analyze-data-in-es/309719)

<div class="topic-metadata">

**Author:** [@wentao\_Xiong](https://discuss.elastic.co/u/wentao_Xiong)\
**Replies:** 0\
**Last updated:** [July 15, 2022, 8:11am UTC](https://discuss.elastic.co/t/how-to-analyze-data-in-es/309719 "2022-07-15T08:11:22Z")

</div>

Environment Description: Rocky Linux 8 JDK 1.8 elasticsearch-7.17.5, logstash-7.17.5, kibana-7.17.5, filebeat-7.17.5 Statement of needs: The log data has been collected into ELK, and now it is necessary to analyze t…

---

## [Determine search fields dynamically based on user input - native Elastic solution?](https://discuss.elastic.co/t/determine-search-fields-dynamically-based-on-user-input-native-elastic-solution/309711)

<div class="topic-metadata">

**Author:** [@seb.sch](https://discuss.elastic.co/u/seb.sch)\
**Replies:** 1\
**Last updated:** [July 15, 2022, 7:37am UTC](https://discuss.elastic.co/t/determine-search-fields-dynamically-based-on-user-input-native-elastic-solution/309711 "2022-07-15T07:37:43Z")

</div>

Hello, let's assume my index looks like the following: "mappings" : { "properties" : { "id" : { "type" : "text" }, "mail" : { "type" : "text" }, "fullName" : { "type" : "text" }, "dateOfBirth" : { …

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=582)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=584)
