Skip to content
Discussion options

You must be logged in to vote

https://docs.securityonion.net/en/2.4/elasticsearch.html#geoip

Check to see if you have the geoip databases shard with sudo so-elasticsearch-shards-list | grep geoip, if not run the command in the docs and check the log for the creation of the db. If not, run the command with false instead of true, then rerun the command with true.

Replies: 1 comment 4 replies

Comment options

You must be logged in to vote
4 replies
@rsneeden
Comment options

@rsneeden
Comment options

@rsneeden
Comment options

@rsneeden
Comment options

Answer selected by rsneeden
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
2.4
Labels
None yet
2 participants