Replies: 5 comments 2 replies
-
Does removing it from the grid members and re-running so-setup on the sensor get rid of the error? |
Beta Was this translation helpful? Give feedback.
-
hello, thank you for the reply. Yes that fixed the error and now it is seen in the grid list. But for some reason if the manager node and sensor node is up the search node will be down ..it is like one of them has to be down for the other two to work. i try salt-call state.highstate on all of them and no error on the sensor and search node but the manager node will shutdown immediately. How can i fix this? |
Beta Was this translation helpful? Give feedback.
-
This installation is on proxmox and all vms (manager node, sensor node and search node) are under the same node(on the same server). what is the minimum requirement of cpu and ram for each node to function properly? |
Beta Was this translation helpful? Give feedback.
-
Hello there, i have been able to fix the issues, it was a resource limitation problem and got it fixed. now that every node is up and so-status on all nodes are running i wanted to test it using so-test in the sensor node, but am getting "the search query encountered a failure with the elasticsearch cluster", even if elasticsearch is running and healthy on each node. I tried restarting elasticsearch but no luck. How can i fix this? below is the output of so-elasticsearch-query _cat/shards on the search node [root@search elasticsearch]# so-elasticsearch-query _cat/shards |
Beta Was this translation helpful? Give feedback.
-
update: |
Beta Was this translation helpful? Give feedback.
Uh oh!
There was an error while loading. Please reload this page.
-
Version
2.4.30
Installation Method
Security Onion ISO image
Description
configuration
Installation Type
Distributed
Location
cloud
Hardware Specs
Meets minimum requirements
CPU
8
RAM
64
Storage for /
200
Storage for /nsm
300
Network Traffic Collection
tap
Network Traffic Speeds
Less than 1Gbps
Status
Yes, all services on all nodes are running OK
Salt Status
Yes, there are salt failures (please provide detail below)
Logs
No, there are no additional clues
Detail
I have installed security onion distributed and have a manager node, search node and sensor node. The installation of both manager node and search node went smooth and works fine.when we come to sensor node its installed and is shown in the grid members list but not in the grid. when running sudo so-status on the sensor node it says "not yet available "and sudo salt-call state.highstate on the sensor node says " Data failed to compile: Rendering SLS 'base:ssl' failed: Jinja variable list object has no element 0; line 48" how can i fix this?
Guidelines
Beta Was this translation helpful? Give feedback.
All reactions