# Cluster state RED when restoring the snapshot

**URL:** <https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756>\
**Category:** Elasticsearch\
**Created:** [May 15, 2017, 11:48am UTC](https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756 "2017-05-15T11:48:17Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![ultimate.duwal](https://avatars.discourse-cdn.com/v4/letter/u/2acd7d/32.png) [@ultimate.duwal](https://discuss.elastic.co/u/ultimate.duwal)\
**Post date:** [May 15, 2017, 11:48am UTC](https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756/1 "2017-05-15T11:48:17Z")

</div>

Hello,

I am using snapshot api to create and restore my index to s3. Everything is fine while creating snapshot to s3.  
But the problem arises when I restore the snapshot with two methods.

**Firstly** I tried to restore the snapshot directly to a different cluster. The index was RED and hence cluster was RED.  
**Secondly** , I ran the mapping for the index and then closed the index, with the same settings as of the index i created snapshot with. Now, I restored the index. During this process, the index went RED and OPEN, due to which the cluster was RED.

How can I avoid cluster to be RED?

Updates: This seems to be issue only when the snapshot is created with server\_side\_encryption enabled.

---

<div class="post-metadata">

**Author:** ![Igor\_Motov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/igor_motov/32/45193_2.png) [@Igor\_Motov](https://discuss.elastic.co/u/Igor_Motov)\
**Post date:** [May 22, 2017, 3:00pm UTC](https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756/2 "2017-05-22T15:00:26Z")

</div>

During restore process we create an index first, but until restore is complete this index is not available for searching and indexing. Therefore it is marked as RED, making entire cluster RED. This is expected and you cannot avoid it.

> [@ultimate.duwal](#):
>
> Updates: This seems to be issue only when the snapshot is created with server\_side\_encryption enabled.

I am really not sure how encryption would change that, so this update is really puzzling.

---

<div class="post-metadata">

**Author:** ![ultimate.duwal](https://avatars.discourse-cdn.com/v4/letter/u/2acd7d/32.png) [@ultimate.duwal](https://discuss.elastic.co/u/ultimate.duwal)\
**Post date:** [May 25, 2017, 9:39am UTC](https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756/3 "2017-05-25T09:39:05Z")

</div>

Yes, the document specifies the same behavior of the cluster being red until restore is complete. In Second Process, the cluster was RED only when I had created the snapshot with **server\_side\_encryption** _enabled_.  
If I don't use any encryption while creating the snapshot then, and following the same steps as in Second process, the cluster doesn't go into RED state.

This is very confusing but. I replicated the behavior thrice to verify.

---

<div class="post-metadata">

**Author:** ![abeyad](https://avatars.discourse-cdn.com/v4/letter/a/278dde/32.png) [@abeyad](https://discuss.elastic.co/u/abeyad)\
**Post date:** [May 25, 2017, 4:48pm UTC](https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756/4 "2017-05-25T16:48:26Z")

</div>

Can you please provide the exact steps to replicate the problem (including where setting server\_side\_encryption is set to false and the cluster isn't RED), including all the JSON configuration you provided in each step?

Also, what version of Elasticsearch are you running?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 22, 2017, 4:48pm UTC](https://discuss.elastic.co/t/cluster-state-red-when-restoring-the-snapshot/85756/5 "2017-06-22T16:48:52Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
