ECK on OpenShift in Azure - Storage Tiers
Discuss Elastic Forums » Orchestation
by bcam135
6d ago
We are currently running a DEV OpenShift 4.14 cluster and we installed and configured the ECK operator and have all the cluster logs forwarding from the from the Red Hat OpenShift Logging operator with a ClusterLogForwarder and those logs are accessible via Kibana on the ECK side with a route. The reason we're using ECK vs the OpenShift Elasticsearch Operator managed instances is that we have a request from the app team to also be able to have external application logs outside the OpenShift cluster sent to the same Elasticsearch/Kibana instances and that wasn't supported through the Red Hat Op ..read more
Visit website
How to replacing ECK data node with minimal downtime/data moving?
Discuss Elastic Forums » Orchestation
by elastic13
6d ago
Hello, we running an ES cluster using ECK installed on AWS EKS, with each ES instance per node. We often need to update the underlying AWS worker nodes for many scenarios: fixing runC CVE-2024-21626 upgrade K8S version - which happens every 5-6 months How to replacing k8s node with minimal data migrate to other nodes (we have many TB) ? Is there a way to create new node, then replacing the old pod on old node with new pod on new node, and detach VPC from old node, attach the existing VPC? If that is possible then we can afford having down time like < 1 min per node. Thanks PS: we using ka ..read more
Visit website
How to set a user with customized roles for kibana on ECK
Discuss Elastic Forums » Orchestation
by wangxr1985
6d ago
apiVersion: kibana.k8s.elastic.co/v1 kind: Kibana metadata: name: quickstart spec: version: 8.12.0 count: 1 elasticsearchRef: name: quickstart namespace: default http: tls: selfSignedCertificate: disabled: true When I create a kibana pod which connects to an ES cluster managed by ECK, the default user in kibana.yaml is "default-quickstart-kibana-user", its role is kibana_system. This user just has permissions to access internal indices, just like .kibana*、.monitoring-*. I'd like to know how to modify the role, for example, setting it as a superuser. 6 post ..read more
Visit website
Cannot expose Enterprise Search together with Kibana and Elasticsearch using Ingress controller - ESS POD crashes
Discuss Elastic Forums » Orchestation
by sebastianboelling
1w ago
Hi all, I am using ECK 2.9.0. I'll try to set up a cluster containt Elasticsearch, Kibana and Enterprise Search. The cluster runs well. No I want ro expose Elasticsearch, Kibana and Enterprise Search via Ingress controller to the outside. Exposing Kibana is running fine. I am using that manifest below: --- apiVersion: kibana.k8s.elastic.co/v1 kind: Kibana metadata: name: kibana namespace: srv247 spec: version: 8.10.2 elasticsearchRef: name: elasticsearch enterpriseSearchRef: name: enterprise-search count: 1 http: service: spec: type: ClusterIP tls ..read more
Visit website
Need help with building Docker image to deploy K8, error relates to Auto-configuration
Discuss Elastic Forums » Orchestation
by SippingOnesAndZeros
1w ago
Hi, I am trying to built elastic data node on a Linux, Redhat UBI 8. I can't get the elasticsearch to launch property to accept API calls. When the elasticsearch start, the log has this error. Auto-configuration will not generate a password for the elastic built-in superuser, as we cannot determine if there is a terminal attached to the elasticsearch process. When I try to check that elasticsearch is running using the command from this URL: Install Elasticsearch from archive on Linux or MacOS | Elasticsearch Guide [8.12] | Elastic. I don't get the same output showing ES is running. I can't use ..read more
Visit website
Failed to obtain node locks, tried [/usr/share/elasticsearch/data]
Discuss Elastic Forums » Orchestation
by ebonybubbles
2w ago
Hello Team, I have installed ECK Operator(v2.11.1). Installation of the operator is successful. If I am creating Elasticsearch cluster via an operator, pods are getting crashed with following error: {"@timestamp":"2024-02-12T20:52:58.133Z", "log.level":"ERROR", "message":"fatal exception while booting Elasticsearch", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.Elasticsearch","elasticsearch.node.name":"quickstart-es-default-0","elasticsearch.cluster.name":"quickstart","error.type":"j ..read more
Visit website
Cross cluster search
Discuss Elastic Forums » Orchestation
by nitzang1
2w ago
I'd like to do a CCS between Elastisearch service and a local ECK. It should/can be uni-directional. Using only the ESS Kibana to search. The ESS is on an enterprise subscription and the ECK is on a free subscription. I followed the Elastic documentation and it didn't work. Remote cluster is "Not Connected" in Kibana. Does anyone manage to do that successfully and share? 3 posts - 3 participants Read full topic ..read more
Visit website
Haproxy in front of elastic ECK
Discuss Elastic Forums » Orchestation
by saeeddeep
2w ago
Hi I need help configure HAProxy in front of Elastic ECK Using curl, when I connect directly to the backend elasticsearch I got the correct response. example : curl -k -L -XGET 'https://192.168.0.10:31800/_cat/nodes?v' -u 'elastic:MyPasswordHere' --header 'Host: elasticsearch.lab.localdomain.com' ip heap.percent ram.percent cpu load_1m load_5m load_15m node.role master name 192.168.90.7 22 51 0 0.23 0.22 0.23 dilrt - lab-main-elasticsearch-es-hot-nodes-3 ...snip... But when I connect through haproxy I got Error 404 Not Found. curl -k -L ..read more
Visit website
Collect container logs with elastic-agent
Discuss Elastic Forums » Orchestation
by lduvnjak
2w ago
Hey Everyone, I'm having some trouble getting the Kubernetes integration to fully work on my ECK cluster. What I'm trying to do is get elastic-agent to read container logs and forward them to ES. Here's my elastic-agent.yaml: --- apiVersion: agent.k8s.elastic.co/v1alpha1 kind: Agent metadata: name: elastic-agent namespace: default spec: version: 8.12.0 kibanaRef: name: kibana fleetServerRef: name: fleet-server mode: fleet policyID: eck-agent daemonSet: podTemplate: spec: tolerations: - key: "node-role.kubernetes.io/control-plane" ope ..read more
Visit website
Custom Logstash user role
Discuss Elastic Forums » Orchestation
by rokkolesa
3w ago
Hi, I'm trying to deploy multiple Logstash instances to two separate k8s namespaces and they both connect to the same Elasticsearch cluster. The problem is that they both write to different ES indices but use the same user role eck_logstash_user_role. It seems that the role is now hard-coded and cannot be changed? I know I can modify the eck_logstash_user_role to include both indices (either by exact name or by pattern), but then both Logstash instances would be able to write to both indices. Example: ES cluster: my-es Logstash1: writes to sandbox-1 Logstash2: writes to sandbox-2 I configure m ..read more
Visit website

Follow Discuss Elastic Forums » Orchestation on FeedSpot

Continue with Google
Continue with Apple
OR