
Hi Felipe
It seems that the Warning that appears in the logs is of an index (.monitoring) created by the Elastic X-Pack monitoring component, and that does not have much relation with the problem that you are reporting of not indexing new alerts after updating.
At this point, it occurs to me that you may have some error in the Filebeat configuration or even that the Filebeat service is not running. So, could you paste here the output of this commands?
systemctl status filebeat -lfilebeat test output
And on the other hand, check if new alerts are been generating in this file:
cat /var/ossec/logs/alerts/alerts.json
Let us know the results.
Regards,
Juan Carlos
--
You received this message because you are subscribed to the Google Groups "Wazuh mailing list" group.
To unsubscribe from this group and stop receiving emails from it, send an email to wazuh+un...@googlegroups.com.
To post to this group, send email to wa...@googlegroups.com.
Visit this group at https://groups.google.com/group/wazuh.
To view this discussion on the web visit https://groups.google.com/d/msgid/wazuh/8a8e7b45-6453-4960-8f37-278e076fca74%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.