ElastAlert missing #11788
-
Hello, I did upgrade from 2.4.20-20231012 to the latest version 2.4.30-20231113 After that so-status showed me that so-elastalert is missing.
docker ps -a
docker logs so-elastalert docker images | grep elastalert
so-elastalert-restart
Any idea please? |
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 10 replies
-
Any clues in |
Beta Was this translation helpful? Give feedback.
-
Hello @dougburks OK, I set up elastalert like you told me: salt-call looks like without any errors: I am worried that fresh installation is not possible, because client will lost all alerts what are there now, also also all assets are already connected via elastagents. Wouldn't it be possible to order a service intervention, only for this problem? |
Beta Was this translation helpful? Give feedback.
You could try a fresh installation on a separate machine (perhaps just a VM) and then compare the two systems side-by-side to help pinpoint what is wrong with your production system.
I'm not sure what you're asking here. We do offer paid support options if that's what you're asking:
https://securityonionsolutions.com/support