# \#none

**URL:** https://discuss.elastic.co/tag/none.md?no_tags=true&page=591

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 592

---

## [How can I change my query from \_msearch to \_search using the bucket aggregation?](https://discuss.elastic.co/t/how-can-i-change-my-query-from-msearch-to-search-using-the-bucket-aggregation/309018)

<div class="topic-metadata">

**Author:** [@V\_o](https://discuss.elastic.co/u/V_o)\
**Replies:** 2\
**Last updated:** [July 6, 2022, 7:58pm UTC](https://discuss.elastic.co/t/how-can-i-change-my-query-from-msearch-to-search-using-the-bucket-aggregation/309018 "2022-07-06T19:58:37Z")

</div>

Hello, I am new to Elasticsearch. Does anybody have an idea on how to change this query from an currently \_msearch query to an \_search query? It would also be convenient if I didn't have to make a separate query for ev…

---

## [Broken ES 5.5.1 RPM](https://discuss.elastic.co/t/broken-es-5-5-1-rpm/309035)

<div class="topic-metadata">

**Author:** [@akasabov](https://discuss.elastic.co/u/akasabov)\
**Replies:** 0\
**Last updated:** [July 6, 2022, 4:50pm UTC](https://discuss.elastic.co/t/broken-es-5-5-1-rpm/309035 "2022-07-06T16:50:16Z")

</div>

\# dnf install --assumeyes https://artifacts.elastic.co/downloads/elasticsearch/elasticsearch-5.5.1.rpm Last metadata expiration check: 2:42:12 ago on Wed Jul 6 14:06:00 2022. elasticsearch-5.5.1.rpm …

---

## [Read the value from a file for a variable being used in elasticsearch plugin in input of logstash config file](https://discuss.elastic.co/t/read-the-value-from-a-file-for-a-variable-being-used-in-elasticsearch-plugin-in-input-of-logstash-config-file/309033)

<div class="topic-metadata">

**Author:** [@pooja5](https://discuss.elastic.co/u/pooja5)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 4:35pm UTC](https://discuss.elastic.co/t/read-the-value-from-a-file-for-a-variable-being-used-in-elasticsearch-plugin-in-input-of-logstash-config-file/309033 "2022-07-06T16:35:15Z")

</div>

Hello! We are working on a use case where we are trying to read delta load from an elasticsearch index using the elasticsearch plugin in the logstash configuration file. We are using this elasticsearch plugin in the in…

---

## [Insert epoch time as "date" field, without converting to ISO8601 format](https://discuss.elastic.co/t/insert-epoch-time-as-date-field-without-converting-to-iso8601-format/309029)

<div class="topic-metadata">

**Author:** [@Elie](https://discuss.elastic.co/u/Elie)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 4:32pm UTC](https://discuss.elastic.co/t/insert-epoch-time-as-date-field-without-converting-to-iso8601-format/309029 "2022-07-06T16:32:09Z")

</div>

Hello, I have an epoch time in the data that I am trying to parse via Logstash that I am trying to insert in a field in ES that represents the type "date". However, if i try to insert it just as it is, ES will assume th…

---

## [ElasticSearch 8 not automatically setting up SSL](https://discuss.elastic.co/t/elasticsearch-8-not-automatically-setting-up-ssl/309020)

<div class="topic-metadata">

**Author:** [@sergio.passalacqua](https://discuss.elastic.co/u/sergio.passalacqua)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 4:09pm UTC](https://discuss.elastic.co/t/elasticsearch-8-not-automatically-setting-up-ssl/309020 "2022-07-06T16:09:50Z")

</div>

Very odd...the first time I ran elasticsearch, at the end it showed me what I was expecting..the elastic user password, the encrollment token and cert fingerprint. I wanted to reinstall on a new machine, and no matter …

---

## [Configure Enterprise Search to Include Access-Control-Allow-Origin in Response to API Calls](https://discuss.elastic.co/t/configure-enterprise-search-to-include-access-control-allow-origin-in-response-to-api-calls/308611)

<div class="topic-metadata">

**Author:** [@TonyWRobinson](https://discuss.elastic.co/u/TonyWRobinson)\
**Replies:** 2\
**Last updated:** [July 6, 2022, 3:59pm UTC](https://discuss.elastic.co/t/configure-enterprise-search-to-include-access-control-allow-origin-in-response-to-api-calls/308611 "2022-07-06T15:59:06Z")

</div>

Hi. We are building an in-house client application (in Angular) that will invoke the enterprise search sources and sources/search APIs directly. However, we have to configure the Enterprise Search server to allow reque…

---

## [Elasticsearch node crashed](https://discuss.elastic.co/t/elasticsearch-node-crashed/308889)

<div class="topic-metadata">

**Author:** [@catadetest](https://discuss.elastic.co/u/catadetest)\
**Replies:** 4\
**Last updated:** [July 6, 2022, 3:32pm UTC](https://discuss.elastic.co/t/elasticsearch-node-crashed/308889 "2022-07-06T15:32:26Z")

</div>

Hello, I am new to elasticsearch and I'm trying to understand why sometimes our elasticsearch cluster breaks. We have 3 nodes in the cluster running on Ubuntu 20.04 LTS, with 8 cores CPU and 32 GB of RAM, out of which …

---

## [I can't access to laoclhost:9200 it ask me username and password](https://discuss.elastic.co/t/i-cant-access-to-laoclhost-9200-it-ask-me-username-and-password/309024)

<div class="topic-metadata">

**Author:** [@Akassh\_Mathur](https://discuss.elastic.co/u/Akassh_Mathur)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 3:01pm UTC](https://discuss.elastic.co/t/i-cant-access-to-laoclhost-9200-it-ask-me-username-and-password/309024 "2022-07-06T15:01:51Z")

</div>

---

## [Kibana stopped showing logs; error failed to poll for work](https://discuss.elastic.co/t/kibana-stopped-showing-logs-error-failed-to-poll-for-work/308894)

<div class="topic-metadata">

**Author:** [@Baguette](https://discuss.elastic.co/u/Baguette)\
**Replies:** 10\
**Last updated:** [July 6, 2022, 1:43pm UTC](https://discuss.elastic.co/t/kibana-stopped-showing-logs-error-failed-to-poll-for-work/308894 "2022-07-06T13:43:48Z")

</div>

Hello there, I recently have some trouble with my ELK stack which suddently stoppend working since 2022 july 4th. With some research in the logs, i've found somehting strange : {"ecs":{"version":"8.0.0"},"@timestamp":…

---

## [Hard drive usage for monitoring logs too high](https://discuss.elastic.co/t/hard-drive-usage-for-monitoring-logs-too-high/309017)

<div class="topic-metadata">

**Author:** [@kristofdc](https://discuss.elastic.co/u/kristofdc)\
**Replies:** 0\
**Last updated:** [July 6, 2022, 1:27pm UTC](https://discuss.elastic.co/t/hard-drive-usage-for-monitoring-logs-too-high/309017 "2022-07-06T13:27:56Z")

</div>

Our Azure Elasticsearch instance has a hard disk of 60 Gb. On our dev/acc environments, the hard disk took more than 55 Gb of space. Which resulted into a disk usage exceeded flood-stage-watermark, Kibana was not avail…

---

## [Problem with the stream log filebeat to logstash](https://discuss.elastic.co/t/problem-with-the-stream-log-filebeat-to-logstash/309007)

<div class="topic-metadata">

**Author:** [@AnotherGuy](https://discuss.elastic.co/u/AnotherGuy)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 12:30pm UTC](https://discuss.elastic.co/t/problem-with-the-stream-log-filebeat-to-logstash/309007 "2022-07-06T12:30:09Z")

</div>

Okay ... I'm done i don't know how to resolv my problem with the stream log. I do the all step on the i modif my filebeat.yml like that: filebeat.inputs: - type: log enabled: true paths: - /home/epnp/epnp-d…

---

## [Elasticsearch, Kibana, Snapshot and Restore, Registering a Repository, Mount point](https://discuss.elastic.co/t/elasticsearch-kibana-snapshot-and-restore-registering-a-repository-mount-point/308794)

<div class="topic-metadata">

**Author:** [@balasani\_sri](https://discuss.elastic.co/u/balasani_sri)\
**Replies:** 2\
**Last updated:** [July 6, 2022, 9:47am UTC](https://discuss.elastic.co/t/elasticsearch-kibana-snapshot-and-restore-registering-a-repository-mount-point/308794 "2022-07-06T09:47:22Z")

</div>

Hello does anyone knows how to add a folder to the default mount point to the shared file system while registering a repository for a snapshot in kibana? Basically, I can keep the path.repo: /opt/elk but it is throwing a…

---

## [Помогите с выгрузкой из логсташа пожалуйста](https://discuss.elastic.co/t/topic/308996)

<div class="topic-metadata">

**Author:** [@PJss](https://discuss.elastic.co/u/PJss)\
**Replies:** 0\
**Last updated:** [July 6, 2022, 9:36am UTC](https://discuss.elastic.co/t/topic/308996 "2022-07-06T09:36:21Z")

</div>

Добрый день, досталась мне в управление настроенная система, но не могу разобраться как изменить выгрузку. Выгружается в arcsight : 2022-07-04T12:50:30.046Z {name=TST-FT13} Jul 4 15:50:29 TST-FT13 sshd\[1872\]: Accepted k…

---

## [Nested json field mutate string to number](https://discuss.elastic.co/t/nested-json-field-mutate-string-to-number/308991)

<div class="topic-metadata">

**Author:** [@mangeshmj1992](https://discuss.elastic.co/u/mangeshmj1992)\
**Replies:** 0\
**Last updated:** [July 6, 2022, 8:32am UTC](https://discuss.elastic.co/t/nested-json-field-mutate-string-to-number/308991 "2022-07-06T08:32:03Z")

</div>

Hello, I'm trying to convert a nested json field from a string to an integer. But i am not getting field into Integer. field Name: events.data.custom\_attributes.txn\_total\_time\_to\_complete\_in\_sec Code: mutate {con…

---

## [Tweaking pipeline performance](https://discuss.elastic.co/t/tweaking-pipeline-performance/308801)

<div class="topic-metadata">

**Author:** [@anon90868141](https://discuss.elastic.co/u/anon90868141)\
**Replies:** 1\
**Last updated:** [July 6, 2022, 4:48am UTC](https://discuss.elastic.co/t/tweaking-pipeline-performance/308801 "2022-07-06T04:48:52Z")

</div>

Hello, I'm trying to get the hang off tweaking logstashs performance. I searched the net but unfortunately, I can't seem to find a good guide on how to tweak and actually measure the performance of a pipeline. I can't …

---

## [Compound DSL Querys on Logstash template](https://discuss.elastic.co/t/compound-dsl-querys-on-logstash-template/308965)

<div class="topic-metadata">

**Author:** [@jubilla073](https://discuss.elastic.co/u/jubilla073)\
**Replies:** 0\
**Last updated:** [July 6, 2022, 1:31am UTC](https://discuss.elastic.co/t/compound-dsl-querys-on-logstash-template/308965 "2022-07-06T01:31:14Z")

</div>

Hi guys, Today, i working to include query's templates into my logstash pipelines. In this use case, i need search by two factors, an especific field and only get last X hours (around 6 hours). For this, i wrote a Compo…

---

## [I am not getting mutiple Controller log in Kibana Dashboard ? any one have idea about this... Log Override \[Result display last controller log\]](https://discuss.elastic.co/t/i-am-not-getting-mutiple-controller-log-in-kibana-dashboard-any-one-have-idea-about-this-log-override-result-display-last-controller-log/308825)

<div class="topic-metadata">

**Author:** [@jignesh7559](https://discuss.elastic.co/u/jignesh7559)\
**Replies:** 3\
**Last updated:** [July 6, 2022, 1:19am UTC](https://discuss.elastic.co/t/i-am-not-getting-mutiple-controller-log-in-kibana-dashboard-any-one-have-idea-about-this-log-override-result-display-last-controller-log/308825 "2022-07-06T01:19:39Z")

</div>

SecondController public class SecondController : Controller { private readonly ILogger \_logger; public SecondController(ILogger\<SecondController\> logger) { \_logger = logger; \_logger.LogInforma…

---

## [Test field type with ruby filter and rename the field](https://discuss.elastic.co/t/test-field-type-with-ruby-filter-and-rename-the-field/308831)

<div class="topic-metadata">

**Author:** [@austin0918](https://discuss.elastic.co/u/austin0918)\
**Replies:** 4\
**Last updated:** [July 6, 2022, 1:03am UTC](https://discuss.elastic.co/t/test-field-type-with-ruby-filter-and-rename-the-field/308831 "2022-07-06T01:03:10Z")

</div>

I have a field "identity" that is mapped as a keyword, but some logs received have the field as an object. How do I rename the field? I tried the below config but got a syntax error, unexpected tCONSTANT. Please advise. …

---

## [Enterprise Search - Configure Kibana to trust your SSL CA](https://discuss.elastic.co/t/enterprise-search-configure-kibana-to-trust-your-ssl-ca/308139)

<div class="topic-metadata">

**Author:** [@rajkeshav](https://discuss.elastic.co/u/rajkeshav)\
**Replies:** 2\
**Last updated:** [July 6, 2022, 12:51am UTC](https://discuss.elastic.co/t/enterprise-search-configure-kibana-to-trust-your-ssl-ca/308139 "2022-07-06T00:51:12Z")

</div>

Kibana cannot find or does not trust the SSL certificates for Enterprise Search Kibana logs the following: {"type":"log","@timestamp":"2021-09-28T17:42:11+00:00","tags":\["error","plugins","enterpriseSearch"\],"pid":1220…

---

## [Kibana Visualization (Options List/Selector Control)](https://discuss.elastic.co/t/kibana-visualization-options-list-selector-control/307701)

<div class="topic-metadata">

**Author:** [@Ryan\_Clark](https://discuss.elastic.co/u/Ryan_Clark)\
**Replies:** 4\
**Last updated:** [July 5, 2022, 10:27pm UTC](https://discuss.elastic.co/t/kibana-visualization-options-list-selector-control/307701 "2022-07-05T22:27:56Z")

</div>

Are there any plans to allow the "Controls" visualizations to connect to a saved search? Currently it only connects to an index pattern which allows the "Controls" to affect the whole dashboard. It would be nice to tie a…

---

## [Updating index.max\_shingle\_diff](https://discuss.elastic.co/t/updating-index-max-shingle-diff/308937)

<div class="topic-metadata">

**Author:** [@Benjamin1](https://discuss.elastic.co/u/Benjamin1)\
**Replies:** 4\
**Last updated:** [July 5, 2022, 9:12pm UTC](https://discuss.elastic.co/t/updating-index-max-shingle-diff/308937 "2022-07-05T21:12:47Z")

</div>

When I try to create an index I get this message: ServerError: Type: illegal\_argument\_exception Reason: "In Shingle TokenFilter the difference between max\_shingle\_size and min\_shingle\_size (and +1 if outputting unigrams…

---

## [How to restrict access to an external plugin using privileges?](https://discuss.elastic.co/t/how-to-restrict-access-to-an-external-plugin-using-privileges/308951)

<div class="topic-metadata">

**Author:** [@josemartinez](https://discuss.elastic.co/u/josemartinez)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 8:25pm UTC](https://discuss.elastic.co/t/how-to-restrict-access-to-an-external-plugin-using-privileges/308951 "2022-07-05T20:25:26Z")

</div>

Hello. I have created a plugin as indicated here. How can I restrict access to the plugin with privileges? This means that only the superuser can view the plugin and that in the menu it is only visible by the superuse…

---

## [Inventory data being aggregated with periodic data](https://discuss.elastic.co/t/inventory-data-being-aggregated-with-periodic-data/308614)

<div class="topic-metadata">

**Author:** [@mtuska](https://discuss.elastic.co/u/mtuska)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 5:57pm UTC](https://discuss.elastic.co/t/inventory-data-being-aggregated-with-periodic-data/308614 "2022-07-05T17:57:41Z")

</div>

Hi, I am working on creating an application that will do a nightly inventory of CPE equipment, meanwhile also do every minute and every 5 minute statistics. I then would like to be able to display this data via Kibana d…

---

## [Curl: (77) error setting certificate verify locations:](https://discuss.elastic.co/t/curl-77-error-setting-certificate-verify-locations/308945)

<div class="topic-metadata">

**Author:** [@CBrad](https://discuss.elastic.co/u/CBrad)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 5:38pm UTC](https://discuss.elastic.co/t/curl-77-error-setting-certificate-verify-locations/308945 "2022-07-05T17:38:05Z")

</div>

I am installing Elasticsearch on Amazon Linux 2 EC2 instances, and using the latest version of ES 8.2.3. When I run: sudo systemctl status elasticsearch.service ES shows as running on all three, but when I check: $ cu…

---

## [No index pattern for logstash](https://discuss.elastic.co/t/no-index-pattern-for-logstash/308124)

<div class="topic-metadata">

**Author:** [@AkilanGIP](https://discuss.elastic.co/u/AkilanGIP)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 5:14pm UTC](https://discuss.elastic.co/t/no-index-pattern-for-logstash/308124 "2022-07-05T17:14:09Z")

</div>

Hello, I am strugling because i have installed logstash but it don't appear and when i type filebeat-\* it says " The index pattern you've entered doesn't match any indices. You can match your 1 index, below." but it isn'…

---

## [CPU utilization visualization showing 0 % always](https://discuss.elastic.co/t/cpu-utilization-visualization-showing-0-always/308915)

<div class="topic-metadata">

**Author:** [@ritesh811](https://discuss.elastic.co/u/ritesh811)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 5:00pm UTC](https://discuss.elastic.co/t/cpu-utilization-visualization-showing-0-always/308915 "2022-07-05T17:00:54Z")

</div>

Hi team, I am trying to create the time series visualization in Kibana for CPU usage on the server, but CPU utilization is showing up as 0% all the time. However, data for the fields system.cpu.user.pct, system.cpu.sys…

---

## [Setting elasticsearch and kibana versions 8.3.0 on windows](https://discuss.elastic.co/t/setting-elasticsearch-and-kibana-versions-8-3-0-on-windows/308897)

<div class="topic-metadata">

**Author:** [@Chigozie\_Mbonu](https://discuss.elastic.co/u/Chigozie_Mbonu)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 4:52pm UTC](https://discuss.elastic.co/t/setting-elasticsearch-and-kibana-versions-8-3-0-on-windows/308897 "2022-07-05T16:52:59Z")

</div>

I ran Elasticsearch from the directory where I unzipped the file, using the command "bin\\elasticsearch.bat", the command ran successfully, and part of the outputs printed on the console are a 'Password' created for user …

---

## [How to create a dashboard to monitor CPU and memory usage of Kubernetes cluster?](https://discuss.elastic.co/t/how-to-create-a-dashboard-to-monitor-cpu-and-memory-usage-of-kubernetes-cluster/308402)

<div class="topic-metadata">

**Author:** [@Nimit\_Batham](https://discuss.elastic.co/u/Nimit_Batham)\
**Replies:** 8\
**Last updated:** [July 5, 2022, 4:49pm UTC](https://discuss.elastic.co/t/how-to-create-a-dashboard-to-monitor-cpu-and-memory-usage-of-kubernetes-cluster/308402 "2022-07-05T16:49:19Z")

</div>

How to create a dashboard to monitor CPU and memory usage of Kubernetes cluster?

---

## [Update errors to version 8.3.1](https://discuss.elastic.co/t/update-errors-to-version-8-3-1/308808)

<div class="topic-metadata">

**Author:** [@PM75](https://discuss.elastic.co/u/PM75)\
**Replies:** 1\
**Last updated:** [July 5, 2022, 3:41pm UTC](https://discuss.elastic.co/t/update-errors-to-version-8-3-1/308808 "2022-07-05T15:41:57Z")

</div>

Hello, I would like to specify that I am French and that my English is not my best. Following the security alert : I have just tried to update from 8.2.0 to 8.3.1 by following the instructions: Since then, I have t…

---

## [Check, wehen an Engine was last updated](https://discuss.elastic.co/t/check-wehen-an-engine-was-last-updated/308747)

<div class="topic-metadata">

**Author:** [@John\_Agricola](https://discuss.elastic.co/u/John_Agricola)\
**Replies:** 2\
**Last updated:** [July 5, 2022, 3:28pm UTC](https://discuss.elastic.co/t/check-wehen-an-engine-was-last-updated/308747 "2022-07-05T15:28:53Z")

</div>

Hi everyone, We are running a script to keep our engines up to date. So now I try to build a little sanity check that iterates through all engines to see if they are up to date. Is there a possibility to see, when an e…

[Previous page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=590)

[Next page](https://discuss.elastic.co/tag/none.md?no_tags=true&page=592)
