I am trying to send log data of my nginx server to AWS elasticsearch service. i am done with the changes in filebeat.yml file and then run the command "filebeat setup" but then i got the error like " Overwriting ILM policy is disabled. Set setup.ilm.overwrite: true for enabling.
Exiting: request checking for ILM availability failed: 401 Unauthorized: {"Message":"Your request: '/_xpack' is not allowed."}
". So can anyone please help me to come out of this error?
Thanks
Hi, Looks like you have made changes to the default index name (filebeat*). Which means you need to enable the default ILM config to be overridden by setting setup.ilm.overwrite to true.
Hi, i did not made any changes to the index i left them as default. But as you said i made setup.ilm.overwrite to true but hen also the same error is repeated as mentiond above
Cloud by elastic is one way to have access to all features, all managed by us. Think about what is there yet like Security, Monitoring, Reporting, SQL, Canvas, Maps UI, Alerting and built-in solutions named Observability, Security, Enterprise Search and what is coming next ...
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.