-
Version2.4.111 Installation MethodSecurity Onion ISO image Descriptionother (please provide detail below) Installation TypeDistributed Locationon-prem with Internet access Hardware SpecsMeets minimum requirements CPU6 RAM16 Storage for /163G Storage for /nsm327G Network Traffic Collectionspan port Network Traffic Speeds1Gbps to 10Gbps StatusNo, one or more services are failed (please provide detail below) Salt StatusNo, there are no failures LogsNo, there are no additional clues DetailI ran into a storage issue. Now the elastalert index will not come online. Is there a way to rebuild that? The command "sudo so-elasticsearch-query _cluster/allocation/explain pretty" comes back with this:
Guidelines
|
Beta Was this translation helpful? Give feedback.
Replies: 1 comment 1 reply
-
You should be able to remove the Elastalert indices and restart the service to recreate them,
|
Beta Was this translation helpful? Give feedback.
You should be able to remove the Elastalert indices and restart the service to recreate them,