Elastic Search CSV Download limited to 10,000 rows

1,344 views
Skip to first unread message

Martin Gluckman

unread,
Jun 26, 2022, 7:23:21 PM6/26/22
to Wazuh mailing list
Hi,

We are exporting a report using the Open Distro for Elasticsearch section of Wazuh (version v 7.10.2).

We can see there is data there for 30 days but when we export the report it only has 10,000 rows and does not have the full 30 days of data.

Please could anyone help and advise how to resolve this.

Thank you!

Martin

mayte...@wazuh.com

unread,
Jun 27, 2022, 1:46:32 AM6/27/22
to Wazuh mailing list
Hi Martin Gluckman!

It seems that there is already a feature request to include this option. It was created for Open Distro and has been moved to Opensearch:

The OpenSearch issue has recently been updated asking for a workaround until the feature is included (although it has not been answered yet).

At the moment we are not aware of any workaround for this purpose.

Best regards,
Mayte Ariza

Martin Gluckman

unread,
Aug 11, 2022, 8:23:56 PM8/11/22
to Wazuh mailing list
Crazy in this day and age to have a limit of 10,000 rows for a CSV export, is there anyone who has any ideas how to overcome this limit?

Martin Gluckman

unread,
Jul 25, 2024, 9:48:19 PM7/25/24
to Wazuh | Mailing List
Has this been resolved?
Reply all
Reply to author
Forward
0 new messages