dsiem
dsiem copied to clipboard
Disconnected from ES http://:9200: Error: No Living connection
I know this issue was closed but I have tried { "elasticsearch": "http://localhost:9200/" "kibana": "http://localhost:5601/" }
and I also tried { "elasticsearch": "http://:9200" "kibana": "http://l/<ipAddress of my vm:5601"
}
But the result is the same. That is "Disconnected from ES http://localhost:9200/: Error: No Living connections" and " Disconnected from ES http://:9200: Error: No Living connections" AM running this on Ubuntu 20.4 VM. The ELK is working fine and I have Suricata also installed with the suricata-* logs and siem_events-* visible in my kibana. I have followed the instructions in the installation
maybe u can setup a env
Thanks for coming back to me.
what do you mean by evn please.
I also have another issue. I have logs of siem_alarm_events.json
as you can see attached
but this is not being displayed in kibana because its not indexing it to elasticsearch.
am running elk version 7.17.5.
Please could you help