High Memory Utilization on Security Onion 2.4.200 Standalone Deployment #15529
Unanswered
shreyas172003
asked this question in
2.4
Replies: 1 comment 3 replies
-
|
Do you know what component is using the most CPU? |
Beta Was this translation helpful? Give feedback.
3 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Version
2.4.200
Installation Method
Network installation on Red Hat derivative like Oracle, Rocky, Alma, etc. (unsupported)
Description
upgrading
Installation Type
Standalone
Location
cloud
Hardware Specs
Meets minimum requirements
CPU
4
RAM
15
Storage for /
250
Storage for /nsm
250
Network Traffic Collection
tap
Network Traffic Speeds
Less than 1Gbps
Status
Yes, all services on all nodes are running OK
Salt Status
No, there are no failures
Logs
No, there are no additional clues
Detail
Recently upgraded my Security Onion deployment from 2.4.190 → 2.4.200 on a standalone EC2 instance and I’m seeing unexpectedly high memory utilization.
CPU usage stays around 50–60%, and memory usage spikes to 95% after a few hours of uptime.
I’ve checked systemd services, Elastic and Suricata logs. Restarting services temporarily reduces memory, but it quickly climbs again.
Stopping and starting the EC2 instance temporarily frees memory, but the issue returns after some time.
Has anyone experienced high memory usage after upgrading to 2.4.200?
Are there known memory leaks or processes in this version causing high RAM consumption?
Any recommendations for monitoring or tuning memory usage on standalone deployments?
Guidelines
Beta Was this translation helpful? Give feedback.
All reactions