Replies: 4 comments 2 replies
-
Are there any useful errors in the Elasticsearch logs on the Manager Node? They're located in /opt/so/log/elasticsearch/securityonion.log. |
Beta Was this translation helpful? Give feedback.
-
Elasticsearch is not running. In the soup log was:
Well before that, your first false result was regarding the ca.crt, which is noted above in the comment as well. I've seen a similar issue and ended up reinstalling as it was a lab system, but you may get by with recreating all your SSL certs. I think the way to do that is |
Beta Was this translation helpful? Give feedback.
-
First of all thank You very much and I'm so sorry for my terrible mistake. And also Kibana shows "404 page not found" Thank You very much once again. |
Beta Was this translation helpful? Give feedback.
-
Unfortunately after: and then after restarting all nodes (management, forwarding, search) it's still the same: I think I'll have to revert back to 2.4.20 :-( |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Version
2.4.20
Installation Method
Security Onion ISO image
Description
upgrading
Installation Type
Distributed
Location
on-prem with Internet access
Hardware Specs
Meets minimum requirements
CPU
8
RAM
16
Storage for /
240GB
Storage for /nsm
1,8TB
Network Traffic Collection
other (please provide detail below)
Network Traffic Speeds
1Gbps to 10Gbps
Status
No, one or more services are failed (please provide detail below)
Salt Status
Yes, there are salt failures (please provide detail below)
Logs
Yes, there are additional clues in /opt/so/log/ (please provide detail below)
Detail
Distributed on-prem deployment with 2 sensors, 1 search and 1 management node.
After soup from 2.4.20 to 2.4.40 so-elasticsearch status is missing on management node
All other nodes are OK on grid status.
sudo salt-call state.highstate on management shows 6 failed.
Logs included.
soup.log
state.highstate.txt
Any help appreciated
Guidelines
Beta Was this translation helpful? Give feedback.
All reactions