# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=587

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 588

---

## [How to remove/drop entire logs after checking a condition in nested json fields](https://discuss.elastic.co/t/how-to-remove-drop-entire-logs-after-checking-a-condition-in-nested-json-fields/309322)

<div class="topic-metadata">

**Author:** [@Anusha\_Kusanghi](https://discuss.elastic.co/u/Anusha_Kusanghi)\
**Replies:** 3\
**Last updated:** [July 12, 2022, 1:43pm UTC](https://discuss.elastic.co/t/how-to-remove-drop-entire-logs-after-checking-a-condition-in-nested-json-fields/309322 "2022-07-12T13:43:46Z")

</div>

Hie , Im trying to check a condition for nested json fields and if the condition is met I want to drop the entire data , but it is not working Source: "Data" =\> \[ \[0\] { "Scales" =\> \[ \[0\] { "TaskInfos" =\> \[ \[0\] { …

---

## [Username/password required for Kibana - Elasticsearch Engineer (On-Demand)](https://discuss.elastic.co/t/username-password-required-for-kibana-elasticsearch-engineer-on-demand/309423)

<div class="topic-metadata">

**Author:** [@Madhava\_Sridhar](https://discuss.elastic.co/u/Madhava_Sridhar)\
**Replies:** 1\
**Last updated:** [July 12, 2022, 1:38pm UTC](https://discuss.elastic.co/t/username-password-required-for-kibana-elasticsearch-engineer-on-demand/309423 "2022-07-12T13:38:41Z")

</div>

I'm taking the Elasticsearch Engineer (On-Demand) course , I couldn't find the username/password for Kibana interface in Strigo lab. Could you please help me recovering username/password for Kibana in Strigo lab.

---

## [ES 7.15.1 APM reporting 302 as failure](https://discuss.elastic.co/t/es-7-15-1-apm-reporting-302-as-failure/309425)

<div class="topic-metadata">

**Author:** [@Roger\_Clark](https://discuss.elastic.co/u/Roger_Clark)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 1:37pm UTC](https://discuss.elastic.co/t/es-7-15-1-apm-reporting-302-as-failure/309425 "2022-07-12T13:37:28Z")

</div>

We're using a C# APM agent (Elastic.Apm 1.14.0, 1.16.1 current) in some of our code to report into an APM server on Elastic Stack, but we're seeing all of our API call responses that return a 302 (Found) as event.outcome…

---

## [Hi Wanted Some Help](https://discuss.elastic.co/t/hi-wanted-some-help/309370)

<div class="topic-metadata">

**Author:** [@Draco\_King](https://discuss.elastic.co/u/Draco_King)\
**Replies:** 6\
**Last updated:** [July 12, 2022, 1:28pm UTC](https://discuss.elastic.co/t/hi-wanted-some-help/309370 "2022-07-12T13:28:58Z")

</div>

The text about {"took":{"total":1,"successful":1,"skipped":1,"failed":1,"max\_score":1,"hits":1},"timed\_out":{"total":false,"successful":false,"skipped":false,"failed":false,"max\_score":false,"hits":false},"\_shards":{"tot…

---

## [Receiving org.elasticsearch.action.search.SearchPhaseExecutionException: all shards failed after 7.17.1 to 8.2.3 upgrade](https://discuss.elastic.co/t/receiving-org-elasticsearch-action-search-searchphaseexecutionexception-all-shards-failed-after-7-17-1-to-8-2-3-upgrade/309419)

<div class="topic-metadata">

**Author:** [@newlife007](https://discuss.elastic.co/u/newlife007)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 12:41pm UTC](https://discuss.elastic.co/t/receiving-org-elasticsearch-action-search-searchphaseexecutionexception-all-shards-failed-after-7-17-1-to-8-2-3-upgrade/309419 "2022-07-12T12:41:47Z")

</div>

Receiving org.elasticsearch.action.search.SearchPhaseExecutionException: all shards failed after 7.17.1 to 8.2.3 upgrade. This is causing permission issues in accessing indexes in kibana and API using elastic user statin…

---

## [Logstash with Localstack Kinesis](https://discuss.elastic.co/t/logstash-with-localstack-kinesis/309410)

<div class="topic-metadata">

**Author:** [@frank\_2](https://discuss.elastic.co/u/frank_2)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 11:15am UTC](https://discuss.elastic.co/t/logstash-with-localstack-kinesis/309410 "2022-07-12T11:15:56Z")

</div>

Hi, Has anyone successfully managed to run Logstash against a Localstack-provided Kinesis stream, or even just a plain kinesis-mock container? I would like very much to test Logstash configurations and throughput local…

---

## [Elastic - Extract index data based on timestamp using python library](https://discuss.elastic.co/t/elastic-extract-index-data-based-on-timestamp-using-python-library/309409)

<div class="topic-metadata">

**Author:** [@aniketdatir](https://discuss.elastic.co/u/aniketdatir)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 11:15am UTC](https://discuss.elastic.co/t/elastic-extract-index-data-based-on-timestamp-using-python-library/309409 "2022-07-12T11:15:29Z")

</div>

Hi Elastic team, I want to extract index data based on timestamp using python library where I want to provide custom start time and end time. So want to extract index within start & end time. Please suggest how can I r…

---

## [I have installed fleet server and now i want to install elastic agent but it showing me error like this](https://discuss.elastic.co/t/i-have-installed-fleet-server-and-now-i-want-to-install-elastic-agent-but-it-showing-me-error-like-this/309408)

<div class="topic-metadata">

**Author:** [@Nirmal\_Unagar](https://discuss.elastic.co/u/Nirmal_Unagar)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 11:10am UTC](https://discuss.elastic.co/t/i-have-installed-fleet-server-and-now-i-want-to-install-elastic-agent-but-it-showing-me-error-like-this/309408 "2022-07-12T11:10:40Z")

</div>

I have installed fleet server successfully. now i have other windows server and i have created policy for system, elastic endpoint. After downloading elastic agent, it showing me error like this and not able to connect w…

---

## [Real time data not syncing from oracle to Elasticsearch index](https://discuss.elastic.co/t/real-time-data-not-syncing-from-oracle-to-elasticsearch-index/309298)

<div class="topic-metadata">

**Author:** [@suresh\_u](https://discuss.elastic.co/u/suresh_u)\
**Replies:** 2\
**Last updated:** [July 12, 2022, 11:02am UTC](https://discuss.elastic.co/t/real-time-data-not-syncing-from-oracle-to-elasticsearch-index/309298 "2022-07-12T11:02:44Z")

</div>

Hi Team, I am using Logstash to sync data from Oracle to ES. When I update in Oracle db the same changes are not reflecting in ES. Could you please help to resolve the issue? Below is the Logstash configuration that …

---

## [Documents not getting udpated as per the pipeline](https://discuss.elastic.co/t/documents-not-getting-udpated-as-per-the-pipeline/309394)

<div class="topic-metadata">

**Author:** [@Apoorv\_Agarwal](https://discuss.elastic.co/u/Apoorv_Agarwal)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 9:29am UTC](https://discuss.elastic.co/t/documents-not-getting-udpated-as-per-the-pipeline/309394 "2022-07-12T09:29:03Z")

</div>

I am using one elapsed plugin to calculate the time difference between two events, with the output sending data into a "merged" index. For some reason, at certain times, the merged index is not getting updated in real ti…

---

## [Problem with ".transform-internal" and ".kibana\_task\_manager\_" index](https://discuss.elastic.co/t/problem-with-transform-internal-and-kibana-task-manager-index/309393)

<div class="topic-metadata">

**Author:** [@Carlos\_Trivino](https://discuss.elastic.co/u/Carlos_Trivino)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 9:28am UTC](https://discuss.elastic.co/t/problem-with-transform-internal-and-kibana-task-manager-index/309393 "2022-07-12T09:28:37Z")

</div>

hello, I have a problem with ".transform-internal" and ".kibana\_task\_manager\_" indexes, they are corrupt when I check the status (/\_cluster/allocation/explain) both show: "current\_state": "unassigned", "unassi…

---

## [Update security certificate with a different CA](https://discuss.elastic.co/t/update-security-certificate-with-a-different-ca/309288)

<div class="topic-metadata">

**Author:** [@rajvel](https://discuss.elastic.co/u/rajvel)\
**Replies:** 1\
**Last updated:** [July 12, 2022, 9:27am UTC](https://discuss.elastic.co/t/update-security-certificate-with-a-different-ca/309288 "2022-07-12T09:27:47Z")

</div>

Hello Team, As per the document , first we need to take a backup of elaticsearch.yml, the elasticsearch.yml file in the current 8 version looks different. Enable security features xpack.security.enabled: true xpack.…

---

## [Adding new node to existing cluster, not being recognized](https://discuss.elastic.co/t/adding-new-node-to-existing-cluster-not-being-recognized/309327)

<div class="topic-metadata">

**Author:** [@Rowan05](https://discuss.elastic.co/u/Rowan05)\
**Replies:** 10\
**Last updated:** [July 12, 2022, 9:21am UTC](https://discuss.elastic.co/t/adding-new-node-to-existing-cluster-not-being-recognized/309327 "2022-07-12T09:21:57Z")

</div>

Hello, I have a server which is running ElasticSearch 7.2 on an Ubuntu virtual machine. This server has limited disk space, so i want to add disk space. I was thinking of two options. Add an hard drive to server and…

---

## [Logs didn't show in kibana, but there is no relevant error in logs](https://discuss.elastic.co/t/logs-didnt-show-in-kibana-but-there-is-no-relevant-error-in-logs/309385)

<div class="topic-metadata">

**Author:** [@Baguette](https://discuss.elastic.co/u/Baguette)\
**Replies:** 1\
**Last updated:** [July 12, 2022, 8:46am UTC](https://discuss.elastic.co/t/logs-didnt-show-in-kibana-but-there-is-no-relevant-error-in-logs/309385 "2022-07-12T08:46:18Z")

</div>

Hello, I have troubles with my ELK stack for the past few weeks; in fact, logs stop showing in kibana, but i don't have any error on the logs. My stack is composed of logstash - elasticsearch and kibana installed on a …

---

## [Error: Cannot read properties of undefined (reading 'includes')](https://discuss.elastic.co/t/error-cannot-read-properties-of-undefined-reading-includes/303696)

<div class="topic-metadata">

**Author:** [@Amitesh\_Gupta](https://discuss.elastic.co/u/Amitesh_Gupta)\
**Replies:** 10\
**Last updated:** [July 12, 2022, 8:29am UTC](https://discuss.elastic.co/t/error-cannot-read-properties-of-undefined-reading-includes/303696 "2022-07-12T08:29:43Z")

</div>

When I am trying to access security from kibana dashboard I'm getting this error. Error Error: Cannot read properties of undefined (reading 'includes') at c (http://10.9.1.8:5601/50723/bundles/plugin/securitySoluti…

---

## [Boost score for prefix matches](https://discuss.elastic.co/t/boost-score-for-prefix-matches/309384)

<div class="topic-metadata">

**Author:** [@bogdanjsx](https://discuss.elastic.co/u/bogdanjsx)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 7:43am UTC](https://discuss.elastic.co/t/boost-score-for-prefix-matches/309384 "2022-07-12T07:43:18Z")

</div>

Hello! I'm trying to implement something similar to a store search for products and I'm having a hard time boosting result score to order them in a specific manner. Let's say I have a name field in my documents and I w…

---

## [Sudo ./logstash --path.settings /etc/logstash command is throwing error](https://discuss.elastic.co/t/sudo-logstash-path-settings-etc-logstash-command-is-throwing-error/309381)

<div class="topic-metadata">

**Author:** [@pooja5](https://discuss.elastic.co/u/pooja5)\
**Replies:** 0\
**Last updated:** [July 12, 2022, 7:14am UTC](https://discuss.elastic.co/t/sudo-logstash-path-settings-etc-logstash-command-is-throwing-error/309381 "2022-07-12T07:14:32Z")

</div>

Hello! We are trying to trigger multiple pipelines from pipelines.yml using the command sudo ./logstash --path.settings /etc/logstash However, we are facing the below errors \[ERROR\]\[logstash.agent \] Fail…

---

## [How to install plugins without restarting the cluster](https://discuss.elastic.co/t/how-to-install-plugins-without-restarting-the-cluster/309367)

<div class="topic-metadata">

**Author:** [@eom3835](https://discuss.elastic.co/u/eom3835)\
**Replies:** 1\
**Last updated:** [July 12, 2022, 5:58am UTC](https://discuss.elastic.co/t/how-to-install-plugins-without-restarting-the-cluster/309367 "2022-07-12T05:58:23Z")

</div>

I am using the modified plugin. I always have to restart to apply my modified plugin to ES. I can't stop nodes that are currently live, so I have to increase the server and copy the data. And I need to reinstall the p…

---

## [How do I do Case Sensitive Match Query in Elastic Search?](https://discuss.elastic.co/t/how-do-i-do-case-sensitive-match-query-in-elastic-search/309348)

<div class="topic-metadata">

**Author:** [@DataStorageMuse](https://discuss.elastic.co/u/DataStorageMuse)\
**Replies:** 5\
**Last updated:** [July 12, 2022, 5:53am UTC](https://discuss.elastic.co/t/how-do-i-do-case-sensitive-match-query-in-elastic-search/309348 "2022-07-12T05:53:47Z")

</div>

I'm trying to do a match query that is case sensitive such that it only returns words where the html field contains the string. Here is the query I have so far: POST data/\_search { "track\_total\_hits": true, "query"…

---

## [Copy\_to vs appending all terms in a string : Are the search results going to be the same?](https://discuss.elastic.co/t/copy-to-vs-appending-all-terms-in-a-string-are-the-search-results-going-to-be-the-same/308385)

<div class="topic-metadata">

**Author:** [@ano](https://discuss.elastic.co/u/ano)\
**Replies:** 2\
**Last updated:** [July 12, 2022, 3:09am UTC](https://discuss.elastic.co/t/copy-to-vs-appending-all-terms-in-a-string-are-the-search-results-going-to-be-the-same/308385 "2022-07-12T03:09:14Z")

</div>

Hi, I'm building an e-commerce search engine, and I want to do a full text search on product name, category, and a few other fields. I'm currently using copy\_to to copy all the individual fields into 1 single field (cal…

---

## [Timestamp for global target](https://discuss.elastic.co/t/timestamp-for-global-target/309358)

<div class="topic-metadata">

**Author:** [@INS](https://discuss.elastic.co/u/INS)\
**Replies:** 1\
**Last updated:** [July 12, 2022, 1:34am UTC](https://discuss.elastic.co/t/timestamp-for-global-target/309358 "2022-07-12T01:34:01Z")

</div>

Hi I'm facing with case that I couldn't brake the setting for timestamp for the rest of messages here my input: input { generator { lines =\> \[ "# snapshot,66472243,20220704061503", "list…

---

## [How to use logstash imap plugin to acquire data from multiple user account?](https://discuss.elastic.co/t/how-to-use-logstash-imap-plugin-to-acquire-data-from-multiple-user-account/309300)

<div class="topic-metadata">

**Author:** [@Ayush\_Gupta](https://discuss.elastic.co/u/Ayush_Gupta)\
**Replies:** 0\
**Last updated:** [July 11, 2022, 8:47am UTC](https://discuss.elastic.co/t/how-to-use-logstash-imap-plugin-to-acquire-data-from-multiple-user-account/309300 "2022-07-11T08:47:07Z")

</div>

Hi, I am new to Elasticsearch and logstash. I am able to extract data from one user account.Now I want to extract data from multiple user accounts, plz help over this.

---

## [Index template pattern error](https://discuss.elastic.co/t/index-template-pattern-error/309351)

<div class="topic-metadata">

**Author:** [@Thuunder7](https://discuss.elastic.co/u/Thuunder7)\
**Replies:** 0\
**Last updated:** [July 11, 2022, 5:58pm UTC](https://discuss.elastic.co/t/index-template-pattern-error/309351 "2022-07-11T17:58:36Z")

</div>

Hi guys, I am trying to create a new index template but for some reason elasticsearch is assuming that there is already one index template with the index pattern requested... { "error" : { "root\_cause" : \[ …

---

## [Get my systems with Filebeat  on them to communicate with my logstash system using Certs](https://discuss.elastic.co/t/get-my-systems-with-filebeat-on-them-to-communicate-with-my-logstash-system-using-certs/309341)

<div class="topic-metadata">

**Author:** [@timfox123](https://discuss.elastic.co/u/timfox123)\
**Replies:** 0\
**Last updated:** [July 11, 2022, 3:55pm UTC](https://discuss.elastic.co/t/get-my-systems-with-filebeat-on-them-to-communicate-with-my-logstash-system-using-certs/309341 "2022-07-11T15:55:11Z")

</div>

Objective: To get my systems with Filebeat on them to communicate with my logstash system using Certs. License: Free Environment Elasticsearch nodes: We have 3 ES 7.17 Linux nodes that are working together just f…

---

## [Update\_by\_query with proceed does not return failure](https://discuss.elastic.co/t/update-by-query-with-proceed-does-not-return-failure/309338)

<div class="topic-metadata">

**Author:** [@Paul\_Le\_Tilly](https://discuss.elastic.co/u/Paul_Le_Tilly)\
**Replies:** 0\
**Last updated:** [July 11, 2022, 3:48pm UTC](https://discuss.elastic.co/t/update-by-query-with-proceed-does-not-return-failure/309338 "2022-07-11T15:48:19Z")

</div>

HI all, So I was reading a bit about the documentation for the api update\_by\_query. From my understanding of the conflict, parameter. You can have 2 behaviours Abort, that will stop at the first issue and report on…

---

## [Logstash not running in Remote Windows Continuously](https://discuss.elastic.co/t/logstash-not-running-in-remote-windows-continuously/309005)

<div class="topic-metadata">

**Author:** [@suresh\_u](https://discuss.elastic.co/u/suresh_u)\
**Replies:** 8\
**Last updated:** [July 11, 2022, 3:33pm UTC](https://discuss.elastic.co/t/logstash-not-running-in-remote-windows-continuously/309005 "2022-07-11T15:33:17Z")

</div>

I am using Logstash-7.17.4 version to index data from oracle db to Elasticsearch. When I am running through Command Prompt, it is running but when running through Task Scheduler, logstash has stopped automatically after…

---

## [Logstash Issue - export kafka messages into tsv format](https://discuss.elastic.co/t/logstash-issue-export-kafka-messages-into-tsv-format/309321)

<div class="topic-metadata">

**Author:** [@aniketdatir](https://discuss.elastic.co/u/aniketdatir)\
**Replies:** 1\
**Last updated:** [July 11, 2022, 3:22pm UTC](https://discuss.elastic.co/t/logstash-issue-export-kafka-messages-into-tsv-format/309321 "2022-07-11T15:22:23Z")

</div>

Hi Elastic team, I am trying to export Kafka messages into tab separated file (tsv) file using below logstash configuration file......But not able to get desired output. input { kafka { bootstrap\_servers =\> "host:por…

---

## [Logging configuration Kibana](https://discuss.elastic.co/t/logging-configuration-kibana/308580)

<div class="topic-metadata">

**Author:** [@Lily\_si](https://discuss.elastic.co/u/Lily_si)\
**Replies:** 3\
**Last updated:** [July 11, 2022, 1:40pm UTC](https://discuss.elastic.co/t/logging-configuration-kibana/308580 "2022-07-11T13:40:21Z")

</div>

Hello Everyone, I'm trying to set logging parameters in the file kibana.yml by using the "rolling-file" function, here is my configuration : logging: appenders: rolling-file: type: rolling-file fileNa…

---

## [Http\_poller logstash input plugin : socks5](https://discuss.elastic.co/t/http-poller-logstash-input-plugin-socks5/309333)

<div class="topic-metadata">

**Author:** [@toog](https://discuss.elastic.co/u/toog)\
**Replies:** 0\
**Last updated:** [July 11, 2022, 3:16pm UTC](https://discuss.elastic.co/t/http-poller-logstash-input-plugin-socks5/309333 "2022-07-11T15:16:14Z")

</div>

I try to use http\_poller to request url but i need to use a dynamic ssh forwarding. How i can specify to http\_poller to use the socks5 proxy to resolve the url request ? i try this config but i have this message http\_…

---

## [Logstash Auto Reconnect Stomp](https://discuss.elastic.co/t/logstash-auto-reconnect-stomp/309332)

<div class="topic-metadata">

**Author:** [@tahseenjamal](https://discuss.elastic.co/u/tahseenjamal)\
**Replies:** 0\
**Last updated:** [July 11, 2022, 2:59pm UTC](https://discuss.elastic.co/t/logstash-auto-reconnect-stomp/309332 "2022-07-11T14:59:37Z")

</div>

Am using stomp input plugin to fetch data from ActiveMQ I tested a scenario, where I stopped and then started ActiveMQ. This caused logstash to stop fetching data from ActiveMQ. This means logstash is not auto reconnect…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=586)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=588)
