Hi,
I'm trying to deploy a completely fresh instance of Wazuh on a completely
fresh Debian 11 installation and running into the error No matching indices found: No indices match pattern "wazuh-alerts-*" upon first logon.
I am NOT overall familiar with Wazuh or Elasticsearch but I can follow a guide. I've tried multiple times with fresh VMs and double checking i'm not missing any steps but every time I run into the same issue.
Below is the output from a command I found on one of the many pages I landed on today trying to troubleshoot the issue. This is for 4.2, but the output for a 4.3 attempt is similar but with an additional index...wazuh-archive-2022.40w IF I recall correctly.
An index starting wazuh-alerts- is missing in all cases
green open .geoip_databases mMdqEFcER2KvAtTqqpDMDQ 1 0 40 0 38.3mb 38.3mb
green open .security-7 Xz7MF7c-SJSL7ADT-znbzg 1 0 57 0 245.6kb 245.6kb
green open wazuh-monitoring-2022.40w flWXcr_fTAql3WdT2IStFw 1 0 0 0 208b 208b
green open .apm-custom-link ZFYFtz9xSRCkkAAbqMAIAQ 1 0 0 0 208b 208b
green open wazuh-statistics-2022.40w xMvSVS6ZSxOk6dE7TfE6zQ 2 0 6 0 75.3kb 75.3kb
green open .fleet-enrollment-api-keys-7 SjoFcG-6Sq2YjV0eszldnw 1 0 2 0 6.6kb 6.6kb
green open .apm-agent-configuration om2q4TE4Q_a_85ka3aC-kQ 1 0 0 0 208b 208b
green open .kibana_task_manager_7.14.2_001 7jolkCwsQmiZ635I1hg8IA 1 0 15 864 164kb 164kb
green open .kibana_7.14.2_001 1nM2iMnYS020sVgKPaBhow 1 0 1345 0 9.1mb 9.1mb
green open .fleet-policies-7 PLRm_nyFRGm91sre08tKPQ 1 0 2 0 8.7kb 8.7kb
green open .kibana-event-log-7.14.2-000001 IMzBhRHWRhGtghK5PGXbeg 1 0 1 0 5.6kb 5.6kb
I've burnt two days on this already. I'm at by wits end. If anyone can offer any assistance I'll be eternally grateful!
Cheers
Steve