[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Re: kibana does not show logs: No results found



Hi Den,

If you only have those three pods in your logging project, that means fluentd isn't currently running.

To answer your question about which logs to look at - you will want to check in logging-es-kkr0h3tw-1-3xc6d, that's your Elasticsearch instance.  You'll want to look for messages like the following, which indicates that ES has received logs from fluentd and is indexing them.

[Halloween Jack] [logging.2015.12.09] creating index, cause [auto(bulk api)], templates [], shards [5]/[1], mappings [fluentd]
[Halloween Jack] [logging.2015.12.09] update_mapping [fluentd] (dynamic)

That error in the ES logs that you posted is most likely a result of Kibana trying to get a list of fields for the logstash-* index (which we don't use).  We are probably missing an ACL configuration to handle that case, so the search-guard plugin is throwing the error you see.

Thanks,
Eric

On Wed, Dec 9, 2015 at 10:15 AM, Den Cowboy <dencowboy hotmail com> wrote:
Hi everyone,

I'm using an OpenShift Origing 1.1 platform.
Today I'm busy with the installation of Kibana, fluentd and elasticsearch. Therefor I'm following this tutorial:
https://docs.openshift.org/latest/install_config/aggregate_logging.html

I did not have an issue during the installation. I'm able to access kibana. But after that I'm stuck
It's impossible for me to see my logs in Kibana. Fluentd isn't gatering the logs probably.

I know this issue is a bit wide and difficult to solve with this information. So my first question is:
To which logs of which pod do I have to look?

I have 3 pods in my logging-project:
logging-deployer-7ca2l        0/1       Completed   0          2h
logging-es-kkr0h3tw-1-3xc6d   1/1       Running     0          2h
logging-kibana-1-n0qsu        2/2       Running     0          2h

The second one contains an error.
oc logs logging-es-kkr0h3tw-1-3xc6d
[2015-12-09 15:49:16,287][ERROR][com.floragunn.searchguard.filter.SearchGuardActionFilter] Error while apply() due to com.floragunn.searchguard.tokeneval.MalformedConfigurationException: no bypass or execute filters at all for action indices:admin/mappings/fields/get
com.floragunn.searchguard.tokeneval.MalformedConfigurationException: no bypass or execute filters at all

Some note:
Kibana is showing this text in the left top corner:
OpenShift Origin
Logs for Untitled Container

Thanks,
Den


_______________________________________________
users mailing list
users lists openshift redhat com
http://lists.openshift.redhat.com/openshiftmm/listinfo/users

[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]