filebeat.service - Filebeat sends log files to Logstash or directly to Elasticsearch.
Loaded: loaded (/lib/systemd/system/filebeat.service; enabled; vendor preset: enabled)
Active: active (running) since Tue 2023-07-11 10:57:55 WIB; 32min ago
Docs:
https://www.elastic.co/beats/filebeat Main PID: 4171761 (filebeat)
Tasks: 9 (limit: 9440)
Memory: 53.5M
CGroup: /system.slice/filebeat.service
└─4171761 /usr/share/filebeat/bin/filebeat --environment systemd -c /etc/filebeat/filebeat.yml --path.home /usr/share/filebeat --path.config /etc/filebeat --path.data /var/lib/filebeat --path.logs /var/log/filebeat
Jul 11 11:30:19 wazuh filebeat[4171761]: 2023-07-11T11:30:19.352+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:22 wazuh filebeat[4171761]: 2023-07-11T11:30:22.352+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:22 wazuh filebeat[4171761]: 2023-07-11T11:30:22.352+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:22 wazuh filebeat[4171761]: 2023-07-11T11:30:22.352+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:25 wazuh filebeat[4171761]: 2023-07-11T11:30:25.354+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:25 wazuh filebeat[4171761]: 2023-07-11T11:30:25.354+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:25 wazuh filebeat[4171761]: 2023-07-11T11:30:25.354+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:28 wazuh filebeat[4171761]: 2023-07-11T11:30:28.356+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:28 wazuh filebeat[4171761]: 2023-07-11T11:30:28.356+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
Jul 11 11:30:28 wazuh filebeat[4171761]: 2023-07-11T11:30:28.357+0700 WARN [elasticsearch] elasticsearch/client.go:414 Cannot index event publisher.Event{Content:beat.Event{Timestamp:time.Date(2023, time.>
~
and it say that the cluster reach maximum normal shards open, so is it that cause the dashboard wont show the event?
Thanks