# Top

**URL:** https://discuss.elastic.co/top.md?page=14&period=all

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 15

---

## [Replacing @timestamp with timestamp of my log](https://discuss.elastic.co/t/replacing-timestamp-with-timestamp-of-my-log/68413)

<div class="topic-metadata">

**Author:** [@taurs](https://discuss.elastic.co/u/taurs)\
**Replies:** 17\
**Last updated:** [December 8, 2016, 6:55pm UTC](https://discuss.elastic.co/t/replacing-timestamp-with-timestamp-of-my-log/68413 "2016-12-08T18:55:22Z")

</div>

I want to replace timestamp with the timestamp of my log.. In place of @timestamp, I want to replace with timestamp\_match. input { beats { port =\> "5044" } } filter { if \[type\] == "log" { grok { match =\> { "message" =\> …

---

## [Scripted Fields Date Math](https://discuss.elastic.co/t/scripted-fields-date-math/158649)

<div class="topic-metadata">

**Author:** [@kb2295](https://discuss.elastic.co/u/kb2295)\
**Replies:** 15\
**Last updated:** [November 29, 2018, 9:02pm UTC](https://discuss.elastic.co/t/scripted-fields-date-math/158649 "2018-11-29T21:02:07Z")

</div>

I'd like to perform date math in a scripted field. The only two languages available are Painless and Expressions. Want to calculate the duration between a date field and current date/time. Here is what I have, it doesn…

---

## [Continuous Data from SQL Server into Logstash](https://discuss.elastic.co/t/continuous-data-from-sql-server-into-logstash/159929)

<div class="topic-metadata">

**Author:** [@mubarak\_shaik](https://discuss.elastic.co/u/mubarak_shaik)\
**Replies:** 14\
**Last updated:** [December 13, 2018, 10:08am UTC](https://discuss.elastic.co/t/continuous-data-from-sql-server-into-logstash/159929 "2018-12-13T10:08:14Z")

</div>

I am using logstash to retrieve data from SQL into Elastic Search. I run query data on logstash and index is created and able to visualize data in Kibana. My concern is how to stream data always from SQL to logstash , …

---

## [Logstash Output File Rotate](https://discuss.elastic.co/t/logstash-output-file-rotate/76782)

<div class="topic-metadata">

**Author:** [@sdeshpande](https://discuss.elastic.co/u/sdeshpande)\
**Replies:** 9\
**Last updated:** [February 28, 2017, 3:11pm UTC](https://discuss.elastic.co/t/logstash-output-file-rotate/76782 "2017-02-28T15:11:09Z")

</div>

Hi Guys, Can someone please tell me if it is possible to rotate the Output File generated by Logstash output plugin ? In Logstash config I have following lines and was wondering if I can specify option to configure rot…

---

## [SOLVED: Logstash issue with shield - "action \[indices:data/write/bulk\] is unauthorized for user \[logstash\]"](https://discuss.elastic.co/t/solved-logstash-issue-with-shield-action-indices-data-write-bulk-is-unauthorized-for-user-logstash/48410)

<div class="topic-metadata">

**Author:** [@Clement\_Ros](https://discuss.elastic.co/u/Clement_Ros)\
**Replies:** 14\
**Last updated:** [April 28, 2016, 2:26pm UTC](https://discuss.elastic.co/t/solved-logstash-issue-with-shield-action-indices-data-write-bulk-is-unauthorized-for-user-logstash/48410 "2016-04-28T14:26:20Z")

</div>

Hi, I am about to install shield on my cluster and when I want to configure logstash to communicate with ES i have the following problem : I followed the documentation and when i did this configuration the authenticat…

---

## [Does filebeat cache?](https://discuss.elastic.co/t/does-filebeat-cache/35369)

<div class="topic-metadata">

**Author:** [@sijis](https://discuss.elastic.co/u/sijis)\
**Replies:** 20\
**Last updated:** [December 9, 2015, 6:33pm UTC](https://discuss.elastic.co/t/does-filebeat-cache/35369 "2015-12-09T18:33:04Z")

</div>

We bake our ami in AWS packer which includes filebeat. However, we've noticed that new instances are showing the ip of of the instance used to create the ami (aka wrong ip) as shipper in logstash. Currently, if we ju…

---

## [Cannot start ElasticSearch](https://discuss.elastic.co/t/cannot-start-elasticsearch/129779)

<div class="topic-metadata">

**Author:** [@No\_Executable](https://discuss.elastic.co/u/No_Executable)\
**Replies:** 9\
**Last updated:** [May 17, 2018, 7:53am UTC](https://discuss.elastic.co/t/cannot-start-elasticsearch/129779 "2018-05-17T07:53:50Z")

</div>

We have previously set up ELKStack and it has worked without error for several weeks but since yesterday we cannot start ElasticSearch. Logstash, Filebeat and Kibana works like they should. But when we try to start ES w…

---

## [Kibana Plugins List](https://discuss.elastic.co/t/kibana-plugins-list/41333)

<div class="topic-metadata">

**Author:** [@Adam\_Whittaker](https://discuss.elastic.co/u/Adam_Whittaker)\
**Replies:** 15\
**Last updated:** [March 9, 2017, 9:32am UTC](https://discuss.elastic.co/t/kibana-plugins-list/41333 "2017-03-09T09:32:34Z")

</div>

Hello, is there a site / list any where that lists all of the Kibana 4 Plugins that are available..? I was hoping that someone had made some new visualizations \[:slightly\_smiling:\]

---

## [Can not elect master when restarting cluster from 7.3 upgrade](https://discuss.elastic.co/t/can-not-elect-master-when-restarting-cluster-from-7-3-upgrade/197846)

<div class="topic-metadata">

**Author:** [@elastic\_paul](https://discuss.elastic.co/u/elastic_paul)\
**Replies:** 18\
**Last updated:** [September 4, 2019, 12:17pm UTC](https://discuss.elastic.co/t/can-not-elect-master-when-restarting-cluster-from-7-3-upgrade/197846 "2019-09-04T12:17:43Z")

</div>

Hi team, I have an 8 node ES cluster in dev. I shut it all down, upgraded to 7.3.1 Restarted, and no I can not get a master elected :frowning: Here is a sample of the log entry (similar appear on all nodes) \[2019-0…

---

## [Installing Elasticsearch 7.4 on a Raspberry Pi 4 (Raspbian Buster)](https://discuss.elastic.co/t/installing-elasticsearch-7-4-on-a-raspberry-pi-4-raspbian-buster/202599)

<div class="topic-metadata">

**Author:** [@glassman](https://discuss.elastic.co/u/glassman)\
**Replies:** 10\
**Last updated:** [October 30, 2019, 6:01pm UTC](https://discuss.elastic.co/t/installing-elasticsearch-7-4-on-a-raspberry-pi-4-raspbian-buster/202599 "2019-10-30T18:01:28Z")

</div>

I'm currently trying to install ES on an RPi 4B. I've used this thread as a sort of guide. Here are the steps I've taken: sudo apt-get install default-jre sudo nano /etc/profile export JAVA\_HOME=$(readlink -f /usr/bi…

---

## [Logstash-input-beats - File does not contain valid private key](https://discuss.elastic.co/t/logstash-input-beats-file-does-not-contain-valid-private-key/228140)

<div class="topic-metadata">

**Author:** [@quentin.legraverend](https://discuss.elastic.co/u/quentin.legraverend)\
**Replies:** 17\
**Last updated:** [May 12, 2020, 9:26am UTC](https://discuss.elastic.co/t/logstash-input-beats-file-does-not-contain-valid-private-key/228140 "2020-05-12T09:26:29Z")

</div>

Hi there, I am currently doing a stack upgrade from 7.0.1 to 7.6.2. Everything went fine on the Elasticsearch cluster and Kibana instances but I have issues upgrading Logstash. To be precise, Logstash upgrade was fine,…

---

## [Elasticsearch is still initializing the kibana index (please help)](https://discuss.elastic.co/t/elasticsearch-is-still-initializing-the-kibana-index-please-help/51535)

<div class="topic-metadata">

**Author:** [@Python\_Coder](https://discuss.elastic.co/u/Python_Coder)\
**Replies:** 11\
**Last updated:** [October 24, 2016, 3:44pm UTC](https://discuss.elastic.co/t/elasticsearch-is-still-initializing-the-kibana-index-please-help/51535 "2016-10-24T15:44:36Z")

</div>

Please help, i have an ES cluster with ES v2.3.3, but after installing kibana, i got this error and kibana displays statistics only Error: plugin:elasticsearch: Elasticsearch is still initializing the kibana index. …

---

## [Jdbc-streaming plugin seems not working](https://discuss.elastic.co/t/jdbc-streaming-plugin-seems-not-working/85530)

<div class="topic-metadata">

**Author:** [@Vittorio](https://discuss.elastic.co/u/Vittorio)\
**Replies:** 43\
**Last updated:** [May 24, 2017, 10:19am UTC](https://discuss.elastic.co/t/jdbc-streaming-plugin-seems-not-working/85530 "2017-05-24T10:19:08Z")

</div>

hi all, I'm using jdbc filter plugin to enrich data from Postgres DB but I don't see the output log enriched. here's the configuration I'm using: input { stdin { } } filter { jdbc\_streaming { jdbc\_driver…

---

## [Change date format need help](https://discuss.elastic.co/t/change-date-format-need-help/28309)

<div class="topic-metadata">

**Author:** [@Erik\_Parienty](https://discuss.elastic.co/u/Erik_Parienty)\
**Replies:** 14\
**Last updated:** [September 9, 2015, 4:35pm UTC](https://discuss.elastic.co/t/change-date-format-need-help/28309 "2015-09-09T16:35:14Z")

</div>

i all i am new to logstash i have a input log {"message":"08/30/2015 16:17:36.442,16.003765,20.503670","@version":"1","@timestamp":"2015-08-30T13:17:46.745Z","host":"ERIKP-PC","LogDate":"08/30/2015 16:17:36.442","RamUse…

---

## [Kibana error "Request Timeout after 30000ms" during login](https://discuss.elastic.co/t/kibana-error-request-timeout-after-30000ms-during-login/198564)

<div class="topic-metadata">

**Author:** [@O\_K](https://discuss.elastic.co/u/O_K)\
**Replies:** 13\
**Last updated:** [September 13, 2019, 3:13pm UTC](https://discuss.elastic.co/t/kibana-error-request-timeout-after-30000ms-during-login/198564 "2019-09-13T15:13:28Z")

</div>

Hello, Do you know what might be the reason of this error? It's very annoying {"type":"log","@timestamp":"2019-09-08T14:50:12Z","tags":\["error","task\_manager"\],"pid":1,"message":"Failed to poll for work: Error: Request…

---

## [Not all documents copied after reindex](https://discuss.elastic.co/t/not-all-documents-copied-after-reindex/140235)

<div class="topic-metadata">

**Author:** [@daq](https://discuss.elastic.co/u/daq)\
**Replies:** 17\
**Last updated:** [July 23, 2018, 5:09pm UTC](https://discuss.elastic.co/t/not-all-documents-copied-after-reindex/140235 "2018-07-23T17:09:42Z")

</div>

I modified a template for the index to convert a couple of variables from string to long. Then I issued a reindex call: POST \_reindex { "source": { "index": "index-old" }, "dest": { "index": "index-new" …

---

## [Fetching specific fields in ES 5.X Java client API](https://discuss.elastic.co/t/fetching-specific-fields-in-es-5-x-java-client-api/67623)

<div class="topic-metadata">

**Author:** [@teemu](https://discuss.elastic.co/u/teemu)\
**Replies:** 10\
**Last updated:** [December 12, 2016, 1:00pm UTC](https://discuss.elastic.co/t/fetching-specific-fields-in-es-5-x-java-client-api/67623 "2016-12-12T13:00:10Z")

</div>

Hello, I am still working on upgrading to ES 5.X. This time problems on my Java client API code. In ES 2.X this would return specific field data as expected: public List\<String\> getNames(String index, String ty…

---

## [Elastic Enterprise Search is starting successfully but URL doesn't works](https://discuss.elastic.co/t/elastic-enterprise-search-is-starting-successfully-but-url-doesnt-works/264853)

<div class="topic-metadata">

**Author:** [@rams1](https://discuss.elastic.co/u/rams1)\
**Replies:** 13\
**Last updated:** [April 21, 2022, 2:27pm UTC](https://discuss.elastic.co/t/elastic-enterprise-search-is-starting-successfully-but-url-doesnt-works/264853 "2022-04-21T14:27:13Z")

</div>

Hi! I'm new here and I'm new with elastic too. I'm trying to run enterprise search version 7.10.2 on elasticsearch 7.10.2 and kibana 7.10.2. I think this is fine because this on app-server.log: Success! Elastic Enterp…

---

## [There is no data to display](https://discuss.elastic.co/t/there-is-no-data-to-display/167664)

<div class="topic-metadata">

**Author:** [@alexus](https://discuss.elastic.co/u/alexus)\
**Replies:** 17\
**Last updated:** [May 6, 2019, 8:48am UTC](https://discuss.elastic.co/t/there-is-no-data-to-display/167664 "2019-05-06T08:48:41Z")

</div>

Hello World! I'm trying out Infrastructure (infra) Kibana' app, yet getting following message: There is no data to display. metricbeat-\* exists with some data in it (mostly from system module) Please advise.

---

## [Can someone give pattern for Tomcat logs](https://discuss.elastic.co/t/can-someone-give-pattern-for-tomcat-logs/1709)

<div class="topic-metadata">

**Author:** [@Raman\_Saini](https://discuss.elastic.co/u/Raman_Saini)\
**Replies:** 16\
**Last updated:** [January 25, 2017, 9:24am UTC](https://discuss.elastic.co/t/can-someone-give-pattern-for-tomcat-logs/1709 "2017-01-25T09:24:03Z")

</div>

Hi, I am using logstash to process Tomcat logs and i am using below pattern \[smile\] Java Logs JAVATHREAD (?:\[A-Z\]{2}-Processor\[\\d\]+) JAVACLASS (?:\[a-zA-Z0-9-\]+.)+\[A-Za-z0-9$\]+ JAVAFILE (?:\[A-Za-z0-9\_.-\]+) JAVASTACKTRA…

---

## [How to define the patterns for filters in logstash](https://discuss.elastic.co/t/how-to-define-the-patterns-for-filters-in-logstash/34150)

<div class="topic-metadata">

**Author:** [@shravankodipaka](https://discuss.elastic.co/u/shravankodipaka)\
**Replies:** 9\
**Last updated:** [November 11, 2015, 9:42pm UTC](https://discuss.elastic.co/t/how-to-define-the-patterns-for-filters-in-logstash/34150 "2015-11-11T21:42:48Z")

</div>

Hi all, I am new to Logstash, I've just set up a new ELK-stack for analyzing of Tomcat and EC2 instance logs in Kibana. For this how to define the patterns and how to configure custom patterns in logstash.conf file...…

---

## ["no known master node, scheduling a retry"](https://discuss.elastic.co/t/no-known-master-node-scheduling-a-retry/56187)

<div class="topic-metadata">

**Author:** [@infinitetutts](https://discuss.elastic.co/u/infinitetutts)\
**Replies:** 14\
**Last updated:** [August 1, 2016, 2:29pm UTC](https://discuss.elastic.co/t/no-known-master-node-scheduling-a-retry/56187 "2016-08-01T14:29:24Z")

</div>

I Suspect my Elasticsearch is not setup correctly to handle the massive amounts of logs I have. Logs of this morning: \[2016-07-22 04:01:50,401\]\[WARN \]\[cluster.action.shard \] \[Margali Szardos\] \[filebeat-2016.07.22\]…

---

## [Filebeat send a json log but is stored as a string](https://discuss.elastic.co/t/filebeat-send-a-json-log-but-is-stored-as-a-string/38410)

<div class="topic-metadata">

**Author:** [@djvidov](https://discuss.elastic.co/u/djvidov)\
**Replies:** 16\
**Last updated:** [January 8, 2016, 10:17am UTC](https://discuss.elastic.co/t/filebeat-send-a-json-log-but-is-stored-as-a-string/38410 "2016-01-08T10:17:24Z")

</div>

Hello, I have logs from a file, like that: {"LogLevel":"INFO","StartTime":"15:01:30.625528","ExecutionTime":1,"CallingMethod":"GetHistoryComments"} {"LogLevel":"INFO","StartTime":"15:01:25.5745528","ExecutionTime":0,"…

---

## [How to increase score for exact word/phrase match in elastic search?](https://discuss.elastic.co/t/how-to-increase-score-for-exact-word-phrase-match-in-elastic-search/184901)

<div class="topic-metadata">

**Author:** [@Aco\_Strkalj](https://discuss.elastic.co/u/Aco_Strkalj)\
**Replies:** 10\
**Last updated:** [June 11, 2019, 4:01am UTC](https://discuss.elastic.co/t/how-to-increase-score-for-exact-word-phrase-match-in-elastic-search/184901 "2019-06-11T04:01:08Z")

</div>

I have a index with movie franchises in them, and I would like the exact word/phrase matches to score higher. For example, if I search for "Star Trek" I want "Star Trek" to score highest (first result) followed by "…

---

## [Cannot get my template to work](https://discuss.elastic.co/t/cannot-get-my-template-to-work/27150)

<div class="topic-metadata">

**Author:** [@FrankC](https://discuss.elastic.co/u/FrankC)\
**Replies:** 16\
**Last updated:** [April 14, 2017, 1:26pm UTC](https://discuss.elastic.co/t/cannot-get-my-template-to-work/27150 "2017-04-14T13:26:27Z")

</div>

I am trying to do a simple test to get ES to use a template of relying on default mapping to make sure the correct mappings are applied for each data type and not analyze all fields. It does not seem to apply the templat…

---

## [Kibana Reporting Tool?](https://discuss.elastic.co/t/kibana-reporting-tool/27223)

<div class="topic-metadata">

**Author:** [@Dillon\_Wolf](https://discuss.elastic.co/u/Dillon_Wolf)\
**Replies:** 9\
**Last updated:** [June 27, 2016, 3:20am UTC](https://discuss.elastic.co/t/kibana-reporting-tool/27223 "2016-06-27T03:20:03Z")

</div>

Does Kibana have some sort of reporting tool that can be used to email out summary reports of the current logs? Here is the current situation I am in. Currently I am using logstash, elasticsearch, and kibana to collect…

---

## [Bytes per second - Is it possible?](https://discuss.elastic.co/t/bytes-per-second-is-it-possible/83497)

<div class="topic-metadata">

**Author:** [@Sjaak01](https://discuss.elastic.co/u/Sjaak01)\
**Replies:** 18\
**Last updated:** [June 16, 2017, 8:12am UTC](https://discuss.elastic.co/t/bytes-per-second-is-it-possible/83497 "2017-06-16T08:12:35Z")

</div>

Hi there, I've been fighting this for a couple of days but I can't figure it out. I'm feeding netflow data into Elastic and obviously I want to create a nice bandwidth graph that shows utilization in bytes per second…

---

## [Elk sizing architecture](https://discuss.elastic.co/t/elk-sizing-architecture/38510)

<div class="topic-metadata">

**Author:** [@Navneet\_Mathpal](https://discuss.elastic.co/u/Navneet_Mathpal)\
**Replies:** 12\
**Last updated:** [January 7, 2016, 6:44am UTC](https://discuss.elastic.co/t/elk-sizing-architecture/38510 "2016-01-07T06:44:36Z")

</div>

Hi , for moving to the production environment , I am planing to have the below architecture for elk. I am getting around 5 GB data/day and I am keeping the data for 60 days , after 60 days I am taking the backup of dat…

---

## [Date field mapping error with type \[date\] to \[long\]](https://discuss.elastic.co/t/date-field-mapping-error-with-type-date-to-long/270766)

<div class="topic-metadata">

**Author:** [@Lorenzo\_Zuluaga](https://discuss.elastic.co/u/Lorenzo_Zuluaga)\
**Replies:** 12\
**Last updated:** [April 21, 2021, 1:45am UTC](https://discuss.elastic.co/t/date-field-mapping-error-with-type-date-to-long/270766 "2021-04-21T01:45:10Z")

</div>

Hi, I'm currently having a strange issue and I can't find anything related to it. I have an elasticsearch cluster for my production environment with 3 nodes. Recently I created a single-node cluster for my staging enviro…

---

## [Filter data from field name on elasticsearch-PHP](https://discuss.elastic.co/t/filter-data-from-field-name-on-elasticsearch-php/268)

<div class="topic-metadata">

**Author:** [@DamPe](https://discuss.elastic.co/u/DamPe)\
**Replies:** 26\
**Last updated:** [February 4, 2016, 10:50am UTC](https://discuss.elastic.co/t/filter-data-from-field-name-on-elasticsearch-php/268 "2016-02-04T10:50:36Z")

</div>

I have written an index on Elasticsearch with following fields. $indexData = \[ 'index' =\> 'profiles', 'type' =\> 'profile', 'body' =\>\[ 'id' =\> $data-\>id, …

---

## [Logstash jdbc query issue](https://discuss.elastic.co/t/logstash-jdbc-query-issue/48725)

<div class="topic-metadata">

**Author:** [@docjay](https://discuss.elastic.co/u/docjay)\
**Replies:** 17\
**Last updated:** [March 31, 2017, 2:20pm UTC](https://discuss.elastic.co/t/logstash-jdbc-query-issue/48725 "2017-03-31T14:20:36Z")

</div>

I have the latest ELK stack installed and all three are communicating correctly. I'm trying to get logstash to query a 'mysql' database. my logstash.conf file: input { jdbc { jdbc\_driver\_library =\> "/opt/logstash/j…

---

## [\[Still Not Solved!\] Filebeat cannot recognize timezone in syslog](https://discuss.elastic.co/t/still-not-solved-filebeat-cannot-recognize-timezone-in-syslog/192661)

<div class="topic-metadata">

**Author:** [@cosloli](https://discuss.elastic.co/u/cosloli)\
**Replies:** 24\
**Last updated:** [July 31, 2019, 6:02am UTC](https://discuss.elastic.co/t/still-not-solved-filebeat-cannot-recognize-timezone-in-syslog/192661 "2019-07-31T06:02:04Z")

</div>

I THOUGHT THE PROBLEM HAS BEEN SOLVED, BUT IS'T NOT! ########### Original Question: I'm using filebeat to harvest logs directly to ES. The timezone on my server is UTC +08:00 (Asia/Shanghai). I used filebeat modules …

---

## [\[\[main\]\<beats\] rejectedExecution - Failed to submit a listener notification task. Event loop shut down?](https://discuss.elastic.co/t/main-beats-rejectedexecution-failed-to-submit-a-listener-notification-task-event-loop-shut-down/127608)

<div class="topic-metadata">

**Author:** [@karto](https://discuss.elastic.co/u/karto)\
**Replies:** 16\
**Last updated:** [April 12, 2018, 11:37am UTC](https://discuss.elastic.co/t/main-beats-rejectedexecution-failed-to-submit-a-listener-notification-task-event-loop-shut-down/127608 "2018-04-12T11:37:42Z")

</div>

Hello all, I'm new to elastic stack and i'm seeking some help. The log shipping worked just fine when i had 2 nodes but the second i'v added a third one i had this error when running the config file help would be much…

---

## [Logstash not working for multiple instances](https://discuss.elastic.co/t/logstash-not-working-for-multiple-instances/90876)

<div class="topic-metadata">

**Author:** [@Prateek\_Kshtriya](https://discuss.elastic.co/u/Prateek_Kshtriya)\
**Replies:** 13\
**Last updated:** [June 28, 2017, 9:15am UTC](https://discuss.elastic.co/t/logstash-not-working-for-multiple-instances/90876 "2017-06-28T09:15:03Z")

</div>

Hi All, I am getting below while trying to run second instance of logstash- Error- \[FATAL\]\[logstash.runner \] Logstash could not b e started because there is already another instance using the configured data…

---

## [Create multiple nodes elasticsearch 5.4](https://discuss.elastic.co/t/create-multiple-nodes-elasticsearch-5-4/86101)

<div class="topic-metadata">

**Author:** [@pjayramkumar](https://discuss.elastic.co/u/pjayramkumar)\
**Replies:** 18\
**Last updated:** [May 24, 2017, 12:42pm UTC](https://discuss.elastic.co/t/create-multiple-nodes-elasticsearch-5-4/86101 "2017-05-24T12:42:55Z")

</div>

Hello i want to create multiple nodes in single cluster in the single server what steps i need to follow i try many but not success yet i am using elasticsearch 5.4

---

## [cURL commands on Windows](https://discuss.elastic.co/t/curl-commands-on-windows/32833)

<div class="topic-metadata">

**Author:** [@Sameer\_Dharur](https://discuss.elastic.co/u/Sameer_Dharur)\
**Replies:** 9\
**Last updated:** [May 26, 2017, 12:59pm UTC](https://discuss.elastic.co/t/curl-commands-on-windows/32833 "2017-05-26T12:59:44Z")

</div>

How exactly does one go about using cURL commands on Windows to manipulate Elasticsearch? What are the prerequisite installations required in order to use them? Could someone please guide me through this process?

---

## [Elasticsearch and the CAP theorem](https://discuss.elastic.co/t/elasticsearch-and-the-cap-theorem/15102)

<div class="topic-metadata">

**Author:** [@nicolaslong](https://discuss.elastic.co/u/nicolaslong)\
**Replies:** 9\
**Last updated:** [April 18, 2017, 12:20pm UTC](https://discuss.elastic.co/t/elasticsearch-and-the-cap-theorem/15102 "2017-04-18T12:20:37Z")

</div>

I've been looking into CAP recently and wanted to develop my understanding of the various tradeoffs and failure modes of Elasticsearch as a distributed system. I came across this post from a while back in which Ki…

---

## [Too many unassigned replica shards everyday](https://discuss.elastic.co/t/too-many-unassigned-replica-shards-everyday/112550)

<div class="topic-metadata">

**Author:** [@sbanagiri](https://discuss.elastic.co/u/sbanagiri)\
**Replies:** 10\
**Last updated:** [January 9, 2018, 9:33am UTC](https://discuss.elastic.co/t/too-many-unassigned-replica-shards-everyday/112550 "2018-01-09T09:33:51Z")

</div>

Hello, We have a ELK cluster setup with 35 nodes (3 masters and 32 data nodes). New indices get created everyday once. Approximately, 280 indices are created everyday. Number of shards per index is 24 with replicatio…

---

## [Convert field containing a timestamp from string to a date / time or timestamp?](https://discuss.elastic.co/t/convert-field-containing-a-timestamp-from-string-to-a-date-time-or-timestamp/265594)

<div class="topic-metadata">

**Author:** [@riahc3](https://discuss.elastic.co/u/riahc3)\
**Replies:** 47\
**Last updated:** [March 9, 2021, 5:34pm UTC](https://discuss.elastic.co/t/convert-field-containing-a-timestamp-from-string-to-a-date-time-or-timestamp/265594 "2021-03-09T17:34:55Z")

</div>

Hello As you can observe here, I have a two fields containing date and time: Id like to change it so Elastic stores it as a date/time and maybe even change the order (yyyy/mm/dd hh/mm ) How can I change this? My lo…

---

## [Unable to authenticate user \[es\_admin\] for REST request \[/\]](https://discuss.elastic.co/t/unable-to-authenticate-user-es-admin-for-rest-request/53653)

<div class="topic-metadata">

**Author:** [@ajoealex](https://discuss.elastic.co/u/ajoealex)\
**Replies:** 9\
**Last updated:** [June 27, 2016, 12:26pm UTC](https://discuss.elastic.co/t/unable-to-authenticate-user-es-admin-for-rest-request/53653 "2016-06-27T12:26:40Z")

</div>

I am using elasticsearch 2.3.3 and kibana 4.5. Also configured shield. I can authenticate localhost:9200 with es\_admin user and kibana with a kibana4-server user. Now I configured shield for active directory users. The …

---

## [Large aggregate (too\_many\_buckets\_exception)](https://discuss.elastic.co/t/large-aggregate-too-many-buckets-exception/189091)

<div class="topic-metadata">

**Author:** [@rvanegmond](https://discuss.elastic.co/u/rvanegmond)\
**Replies:** 17\
**Last updated:** [July 12, 2019, 5:10pm UTC](https://discuss.elastic.co/t/large-aggregate-too-many-buckets-exception/189091 "2019-07-12T17:10:33Z")

</div>

I have an index with millions of rows, most of the rows contain a hash value (md5) I want to group by the hashed value and calculate the count of documents per hash and then sum the total count. This only for buckets wi…

---

## [Splunk vs. Elastic search performance?](https://discuss.elastic.co/t/splunk-vs-elastic-search-performance/17090)

<div class="topic-metadata">

**Author:** [@Frank\_Flynn](https://discuss.elastic.co/u/Frank_Flynn)\
**Replies:** 26\
**Last updated:** [April 30, 2015, 4:01pm UTC](https://discuss.elastic.co/t/splunk-vs-elastic-search-performance/17090 "2015-04-30T16:01:05Z")

</div>

We have a large Splunk instance. We load about 1.25 Tb of logs a day. We have about 1,300 loaders (servers that collect and load logs - they may do other things too). As I look at Elasticsearch / Logstash / Kiba…

---

## [Базовые настройки индекса для работы с русской морфологией](https://discuss.elastic.co/t/topic/56395)

<div class="topic-metadata">

**Author:** [@whispersofdew](https://discuss.elastic.co/u/whispersofdew)\
**Replies:** 13\
**Last updated:** [March 22, 2017, 8:45pm UTC](https://discuss.elastic.co/t/topic/56395 "2017-03-22T20:45:04Z")

</div>

Всем привет! Это мой первый пост на данном ресурсе. Пишу т.к. уже отчаялся ) Уже неделю играю с elasticsearch. Поднял сервер на debian, разобрался с sence, kibana, написал даже программку на node.js , которая по одно…

---

## [Unable to revive connection](https://discuss.elastic.co/t/unable-to-revive-connection/71645)

<div class="topic-metadata">

**Author:** [@ssasporta](https://discuss.elastic.co/u/ssasporta)\
**Replies:** 10\
**Last updated:** [February 5, 2017, 8:25am UTC](https://discuss.elastic.co/t/unable-to-revive-connection/71645 "2017-02-05T08:25:26Z")

</div>

Whenever starting Kibana I am getting the following errors in endless loop: {"type":"log","@timestamp":"2017-01-15T13:01:28Z","tags":\["warning","elasticsearch"\],"pid":65037,"message":"No living connections"} {"type":"l…

---

## [ElasticSearch PHP client v2.0 keeps throwing “No alive nodes found in your cluster”](https://discuss.elastic.co/t/elasticsearch-php-client-v2-0-keeps-throwing-no-alive-nodes-found-in-your-cluster/40270)

<div class="topic-metadata">

**Author:** [@despot](https://discuss.elastic.co/u/despot)\
**Replies:** 18\
**Last updated:** [January 31, 2016, 8:06pm UTC](https://discuss.elastic.co/t/elasticsearch-php-client-v2-0-keeps-throwing-no-alive-nodes-found-in-your-cluster/40270 "2016-01-31T20:06:54Z")

</div>

The elasticSearch runs fine on my centos as a non-service. I run it as "sh bin/elasticsearch". The client I installed using composer is PHP v2.0. It just won't do anything it used to do before. I used this before and …

---

## [Exporting and Importing](https://discuss.elastic.co/t/exporting-and-importing/55334)

<div class="topic-metadata">

**Author:** [@Stuart\_Cracraft](https://discuss.elastic.co/u/Stuart_Cracraft)\
**Replies:** 11\
**Last updated:** [July 25, 2016, 10:29pm UTC](https://discuss.elastic.co/t/exporting-and-importing/55334 "2016-07-25T22:29:39Z")

</div>

Hi, I have a very small ELK cluster with about 1.6B documents in about 500GB. I need to export this data to another much larger ELK cluster. Are there any documents which describe this and/or tips you can give? Tha…

---

## [Kibana unable to authenticate](https://discuss.elastic.co/t/kibana-unable-to-authenticate/260830)

<div class="topic-metadata">

**Author:** [@Daniel\_J1996](https://discuss.elastic.co/u/Daniel_J1996)\
**Replies:** 9\
**Last updated:** [January 29, 2021, 8:08pm UTC](https://discuss.elastic.co/t/kibana-unable-to-authenticate/260830 "2021-01-29T20:08:29Z")

</div>

Hello, I have been running into an issue with my Kibana dashboard. Currently, it shows "Kibana server is not ready yet". When I use the journalctl -xe command, I see the following error for Kibana: \["warning","plugins"…

---

## [Dial tcp (ip number):5044: getsockopt: connection refused](https://discuss.elastic.co/t/dial-tcp-ip-number-5044-getsockopt-connection-refused/77104)

<div class="topic-metadata">

**Author:** [@tomer](https://discuss.elastic.co/u/tomer)\
**Replies:** 11\
**Last updated:** [March 11, 2017, 6:03pm UTC](https://discuss.elastic.co/t/dial-tcp-ip-number-5044-getsockopt-connection-refused/77104 "2017-03-11T18:03:53Z")

</div>

Hi, I am trying to transfer logs from filebeats to logstash, but I get this error in the filebeats log: dial tcp (ip number):5044: getsockopt: connection refused In my LogStash config.d the configuration file is: a…

---

## [New Install ELK 6.1 with Filebeat 6.1 for Tomcat Catalina Logs](https://discuss.elastic.co/t/new-install-elk-6-1-with-filebeat-6-1-for-tomcat-catalina-logs/113559)

<div class="topic-metadata">

**Author:** [@vvsvinu](https://discuss.elastic.co/u/vvsvinu)\
**Replies:** 13\
**Last updated:** [January 20, 2018, 10:56am UTC](https://discuss.elastic.co/t/new-install-elk-6-1-with-filebeat-6-1-for-tomcat-catalina-logs/113559 "2018-01-20T10:56:27Z")

</div>

Hai, I am a newbie to ELK Stack. I have tried to configure the ELK Stack in a test machine in our LAB environment and was not able to succeed in parsing Apache Tomcat Logs. It would be great help if any one could assist…

---

## [Update nested object using script with params in Logstash Elasticsearch output](https://discuss.elastic.co/t/update-nested-object-using-script-with-params-in-logstash-elasticsearch-output/49983)

<div class="topic-metadata">

**Author:** [@LetMeR00t](https://discuss.elastic.co/u/LetMeR00t)\
**Replies:** 14\
**Last updated:** [October 20, 2016, 2:30am UTC](https://discuss.elastic.co/t/update-nested-object-using-script-with-params-in-logstash-elasticsearch-output/49983 "2016-10-20T02:30:08Z")

</div>

Hello everyone, I would like to update a document that contains a nested object. I've already seen that sounds possible using script. However, it appears that we can't use params in Logstash ... My mapping for the co…

[Previous page](https://discuss.elastic.co/top.md?page=13&per_page=50&period=all)

[Next page](https://discuss.elastic.co/top.md?page=15&per_page=50&period=all)
