No Alert showing on Web Interface #12133
Replies: 4 comments 4 replies
-
On your distributed grid, what does |
Beta Was this translation helpful? Give feedback.
-
I performed the command line on each nodes Search & Manager node return : Fleet & Elastic Agent : Healthy status - Running Forward nodes return below message : elastic-agent Looking in the Dashboard & Hunt, it seems Suricata does not forward any data. Thanks again for your assistance |
Beta Was this translation helpful? Give feedback.
-
Looks like there is a problem connecting with your Fleet server:
Have you tried to restart the elastic agent on the sensors? |
Beta Was this translation helpful? Give feedback.
-
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
Version
2.4.30
Installation Method
Security Onion ISO image
Description
installation
Installation Type
Distributed
Location
airgap
Hardware Specs
Exceeds minimum requirements
CPU
8
RAM
64
Storage for /
300G
Storage for /nsm
1T
Network Traffic Collection
tap
Network Traffic Speeds
1Gbps to 10Gbps
Status
Yes, all services on all nodes are running OK
Salt Status
No, there are no failures
Logs
No, there are no additional clues
Detail
Good day,
Under this distributed deployment (version 2.4.30-20231219), when I logged into the Web Interface, there is no Alerts showing. Under "Dashboards, and Hunt" there are event that populate daily. Looking in /nsm/pcap folder on the Sensor node, PCAP are generated daily.
I do have a Standalone configuration which is getting the same traffic as the Distributed Deployment. Post Standalone installation, Alerts started to populate with no extra configuration from me.
Not sure which setting I have to turn ON in other to get Alerts on the Manager node. I looked at the Troubleshooting Guidelines in the Security Onion documentation, I verified everything that it is mention in the guidelines.
Any assistance would be much appreciated
Thanks
Guidelines
Beta Was this translation helpful? Give feedback.
All reactions