Docker compose ELK

j'ai fais comme vous avez dis j'ai repris avec le docker-compose sans modifier quelques chose elasticsearch/docs/reference/setup/install/docker/docker-compose.yml at 8.15 · elastic/elasticsearch · GitHub

et voici l'erreur

[billing@ogn-prebilling 8.13.0]$ docker compose logs | grep -i 'error'
WARN[0000] /home/billing/8.13.0/docker-compose.yml: `version` is obsolete
es01-1  | # An error report file with more information is saved as:
es01-1  | error:
es01-1  | OpenJDK 64-Bit Server VM warning: INFO: os::commit_memory(0x0000000614800000, 8246001664, 0) failed; error='Not enough space' (errno=12)
es01-1  |       at org.elasticsearch.cli.Command.mainWithoutErrorHandling(Command.java:85)
es03-1   | {"@timestamp":"2024-10-21T15:06:44.733Z", "log.level": "INFO", "message":"JVM arguments [-Des.networkaddress.cache.ttl=60, -Des.networkaddress.cache.negative.ttl=10, -Djava.security.manager=allow, -XX:+AlwaysPreTouch, -Xss1m, -Djava.awt.headless=true, -Dfile.encoding=UTF-8, -Djna.nosys=true, -XX:-OmitStackTraceInFastThrow, -Dio.netty.noUnsafe=true, -Dio.netty.noKeySetOptimization=true, -Dio.netty.recycler.maxCapacityPerThread=0, -Dlog4j.shutdownHookEnabled=false, -Dlog4j2.disable.jmx=true, -Dlog4j2.formatMsgNoLookups=true, -Djava.locale.providers=SPI,COMPAT, --add-opens=java.base/java.io=org.elasticsearch.preallocate, --enable-native-access=org.elasticsearch.nativeaccess, -Des.cgroups.hierarchy.override=/, -XX:ReplayDataFile=logs/replay_pid%p.log, -Des.distribution.type=docker, -XX:+UseG1GC, -Djava.io.tmpdir=/tmp/elasticsearch-15285475737445155684, --add-modules=jdk.incubator.vector, -XX:+HeapDumpOnOutOfMemoryError, -XX:+ExitOnOutOfMemoryError, -XX:HeapDumpPath=data, -XX:ErrorFile=logs/hs_err_pid%p.log, -Xlog:gc*,gc+age=trace,safepoint:file=logs/gc.log:utctime,level,pid,tags:filecount=32,filesize=64m, -Xms7864m, -Xmx7864m, -XX:MaxDirectMemorySize=4123000832, -XX:G1HeapRegionSize=4m, -XX:InitiatingHeapOccupancyPercent=30, -XX:G1ReservePercent=15, --module-path=/usr/share/elasticsearch/lib, --add-modules=jdk.net, --add-modules=ALL-MODULE-PATH, -Djdk.module.main=org.elasticsearch.server]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es03","elasticsearch.cluster.name":"docker-cluster"}
es03-1   | ERROR: Elasticsearch did not exit normally - check the logs at /usr/share/elasticsearch/logs/docker-cluster.log
es03-1   | {"@timestamp":"2024-10-21T15:07:14.904Z", "log.level":"ERROR", "message":"fatal exception while booting Elasticsearch", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.Elasticsearch","elasticsearch.node.name":"es03","elasticsearch.cluster.name":"docker-cluster","error.type":"org.elasticsearch.ElasticsearchSecurityException","error.message":"failed to load SSL configuration [xpack.security.transport.ssl] - cannot read configured PEM private key [/usr/share/elasticsearch/config/certs/es03/es03.key] because the file does not exist","error.stack_trace":"org.elasticsearch.ElasticsearchSecurityException: failed to load SSL configuration [xpack.security.transport.ssl] - cannot read configured PEM private key [/usr/share/elasticsearch/config/certs/es03/es03.key] because the file does not exist\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.lambda$loadSslConfigurations$11(SSLService.java:620)\n\tat java.base/java.util.HashMap.forEach(HashMap.java:1429)\n\tat java.base/java.util.Collections$UnmodifiableMap.forEach(Collections.java:1707)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.loadSslConfigurations(SSLService.java:616)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.<init>(SSLService.java:160)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.XPackPlugin.createSSLService(XPackPlugin.java:493)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.XPackPlugin.createComponents(XPackPlugin.java:323)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.NodeConstruction.lambda$construct$12(NodeConstruction.java:804)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.plugins.PluginsService.lambda$flatMap$1(PluginsService.java:253)\n\tat java.base/java.util.stream.ReferencePipeline$7$1.accept(ReferencePipeline.java:273)\n\tat java.base/java.util.stream.ReferencePipeline$3$1.accept(ReferencePipeline.java:197)\n\tat java.base/java.util.AbstractList$RandomAccessSpliterator.forEachRemaining(AbstractList.java:722)\n\tat java.base/java.util.stream.AbstractPipeline.copyInto(AbstractPipeline.java:509)\n\tat java.base/java.util.stream.AbstractPipeline.wrapAndCopyInto(AbstractPipeline.java:499)\n\tat java.base/java.util.stream.AbstractPipeline.evaluate(AbstractPipeline.java:575)\n\tat java.base/java.util.stream.AbstractPipeline.evaluateToArrayNode(AbstractPipeline.java:260)\n\tat java.base/java.util.stream.ReferencePipeline.toArray(ReferencePipeline.java:616)\n\tat java.base/java.util.stream.ReferencePipeline.toArray(ReferencePipeline.java:622)\n\tat java.base/java.util.stream.ReferencePipeline.toList(ReferencePipeline.java:627)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.NodeConstruction.construct(NodeConstruction.java:804)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.NodeConstruction.prepareConstruction(NodeConstruction.java:262)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.Node.<init>(Node.java:192)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.bootstrap.Elasticsearch$2.<init>(Elasticsearch.java:237)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.bootstrap.Elasticsearch.initPhase3(Elasticsearch.java:237)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.bootstrap.Elasticsearch.main(Elasticsearch.java:74)\nCaused by: org.elasticsearch.common.ssl.SslConfigException: cannot read configured PEM private key [/usr/share/elasticsearch/config/certs/es03/es03.key] because the file does not exist\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.SslFileUtil.fileNotFound(SslFileUtil.java:66)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.SslFileUtil.ioException(SslFileUtil.java:37)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.SslFileUtil.ioException(SslFileUtil.java:32)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemKeyConfig.getPrivateKey(PemKeyConfig.java:130)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemKeyConfig.createKeyManager(PemKeyConfig.java:88)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.createSslContext(SSLService.java:480)\n\tat java.base/java.util.HashMap.computeIfAbsent(HashMap.java:1228)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.lambda$loadSslConfigurations$11(SSLService.java:618)\n\t... 24 more\nCaused by: java.nio.file.NoSuchFileException: /usr/share/elasticsearch/config/certs/es03/es03.key\n\tat java.base/sun.nio.fs.UnixException.translateToIOException(UnixException.java:92)\n\tat java.base/sun.nio.fs.UnixException.rethrowAsIOException(UnixException.java:106)\n\tat java.base/sun.nio.fs.UnixException.rethrowAsIOException(UnixException.java:111)\n\tat java.base/sun.nio.fs.UnixFileSystemProvider.newByteChannel(UnixFileSystemProvider.java:261)\n\tat java.base/java.nio.file.Files.newByteChannel(Files.java:379)\n\tat java.base/java.nio.file.Files.newByteChannel(Files.java:431)\n\tat java.base/java.nio.file.spi.FileSystemProvider.newInputStream(FileSystemProvider.java:420)\n\tat java.base/java.nio.file.Files.newInputStream(Files.java:159)\n\tat java.base/java.nio.file.Files.newBufferedReader(Files.java:2897)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemUtils.parsePrivateKey(PemUtils.java:130)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemKeyConfig.getPrivateKey(PemKeyConfig.java:122)\n\t... 28 more\n"}
es03-1   | ERROR: Elasticsearch died while starting up, with exit code 1
es02-1   | {"@timestamp":"2024-10-21T15:09:27.069Z", "log.level": "INFO", "message":"JVM arguments [-Des.networkaddress.cache.ttl=60, -Des.networkaddress.cache.negative.ttl=10, -Djava.security.manager=allow, -XX:+AlwaysPreTouch, -Xss1m, -Djava.awt.headless=true, -Dfile.encoding=UTF-8, -Djna.nosys=true, -XX:-OmitStackTraceInFastThrow, -Dio.netty.noUnsafe=true, -Dio.netty.noKeySetOptimization=true, -Dio.netty.recycler.maxCapacityPerThread=0, -Dlog4j.shutdownHookEnabled=false, -Dlog4j2.disable.jmx=true, -Dlog4j2.formatMsgNoLookups=true, -Djava.locale.providers=SPI,COMPAT, --add-opens=java.base/java.io=org.elasticsearch.preallocate, --enable-native-access=org.elasticsearch.nativeaccess, -Des.cgroups.hierarchy.override=/, -XX:ReplayDataFile=logs/replay_pid%p.log, -Des.distribution.type=docker, -XX:+UseG1GC, -Djava.io.tmpdir=/tmp/elasticsearch-18028348945710722492, --add-modules=jdk.incubator.vector, -XX:+HeapDumpOnOutOfMemoryError, -XX:+ExitOnOutOfMemoryError, -XX:HeapDumpPath=data, -XX:ErrorFile=logs/hs_err_pid%p.log, -Xlog:gc*,gc+age=trace,safepoint:file=logs/gc.log:utctime,level,pid,tags:filecount=32,filesize=64m, -Xms7864m, -Xmx7864m, -XX:MaxDirectMemorySize=4123000832, -XX:G1HeapRegionSize=4m, -XX:InitiatingHeapOccupancyPercent=30, -XX:G1ReservePercent=15, --module-path=/usr/share/elasticsearch/lib, --add-modules=jdk.net, --add-modules=ALL-MODULE-PATH, -Djdk.module.main=org.elasticsearch.server]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es02","elasticsearch.cluster.name":"docker-cluster"}
es02-1   | {"@timestamp":"2024-10-21T15:09:36.836Z", "log.level":"ERROR", "message":"fatal exception while booting Elasticsearch", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.Elasticsearch","elasticsearch.node.name":"es02","elasticsearch.cluster.name":"docker-cluster","error.type":"org.elasticsearch.ElasticsearchSecurityException","error.message":"failed to load SSL configuration [xpack.security.transport.ssl] - cannot read configured PEM private key [/usr/share/elasticsearch/config/certs/es02/es02.key] because the file does not exist","error.stack_trace":"org.elasticsearch.ElasticsearchSecurityException: failed to load SSL configuration [xpack.security.transport.ssl] - cannot read configured PEM private key [/usr/share/elasticsearch/config/certs/es02/es02.key] because the file does not exist\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.lambda$loadSslConfigurations$11(SSLService.java:620)\n\tat java.base/java.util.HashMap.forEach(HashMap.java:1429)\n\tat java.base/java.util.Collections$UnmodifiableMap.forEach(Collections.java:1707)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.loadSslConfigurations(SSLService.java:616)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.<init>(SSLService.java:160)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.XPackPlugin.createSSLService(XPackPlugin.java:493)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.XPackPlugin.createComponents(XPackPlugin.java:323)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.NodeConstruction.lambda$construct$12(NodeConstruction.java:804)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.plugins.PluginsService.lambda$flatMap$1(PluginsService.java:253)\n\tat java.base/java.util.stream.ReferencePipeline$7$1.accept(ReferencePipeline.java:273)\n\tat java.base/java.util.stream.ReferencePipeline$3$1.accept(ReferencePipeline.java:197)\n\tat java.base/java.util.AbstractList$RandomAccessSpliterator.forEachRemaining(AbstractList.java:722)\n\tat java.base/java.util.stream.AbstractPipeline.copyInto(AbstractPipeline.java:509)\n\tat java.base/java.util.stream.AbstractPipeline.wrapAndCopyInto(AbstractPipeline.java:499)\n\tat java.base/java.util.stream.AbstractPipeline.evaluate(AbstractPipeline.java:575)\n\tat java.base/java.util.stream.AbstractPipeline.evaluateToArrayNode(AbstractPipeline.java:260)\n\tat java.base/java.util.stream.ReferencePipeline.toArray(ReferencePipeline.java:616)\n\tat java.base/java.util.stream.ReferencePipeline.toArray(ReferencePipeline.java:622)\n\tat java.base/java.util.stream.ReferencePipeline.toList(ReferencePipeline.java:627)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.NodeConstruction.construct(NodeConstruction.java:804)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.NodeConstruction.prepareConstruction(NodeConstruction.java:262)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.node.Node.<init>(Node.java:192)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.bootstrap.Elasticsearch$2.<init>(Elasticsearch.java:237)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.bootstrap.Elasticsearch.initPhase3(Elasticsearch.java:237)\n\tat org.elasticsearch.server@8.13.2/org.elasticsearch.bootstrap.Elasticsearch.main(Elasticsearch.java:74)\nCaused by: org.elasticsearch.common.ssl.SslConfigException: cannot read configured PEM private key [/usr/share/elasticsearch/config/certs/es02/es02.key] because the file does not exist\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.SslFileUtil.fileNotFound(SslFileUtil.java:66)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.SslFileUtil.ioException(SslFileUtil.java:37)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.SslFileUtil.ioException(SslFileUtil.java:32)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemKeyConfig.getPrivateKey(PemKeyConfig.java:130)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemKeyConfig.createKeyManager(PemKeyConfig.java:88)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.createSslContext(SSLService.java:480)\n\tat java.base/java.util.HashMap.computeIfAbsent(HashMap.java:1228)\n\tat org.elasticsearch.xcore@8.13.2/org.elasticsearch.xpack.core.ssl.SSLService.lambda$loadSslConfigurations$11(SSLService.java:618)\n\t... 24 more\nCaused by: java.nio.file.NoSuchFileException: /usr/share/elasticsearch/config/certs/es02/es02.key\n\tat java.base/sun.nio.fs.UnixException.translateToIOException(UnixException.java:92)\n\tat java.base/sun.nio.fs.UnixException.rethrowAsIOException(UnixException.java:106)\n\tat java.base/sun.nio.fs.UnixException.rethrowAsIOException(UnixException.java:111)\n\tat java.base/sun.nio.fs.UnixFileSystemProvider.newByteChannel(UnixFileSystemProvider.java:261)\n\tat java.base/java.nio.file.Files.newByteChannel(Files.java:379)\n\tat java.base/java.nio.file.Files.newByteChannel(Files.java:431)\n\tat java.base/java.nio.file.spi.FileSystemProvider.newInputStream(FileSystemProvider.java:420)\n\tat java.base/java.nio.file.Files.newInputStream(Files.java:159)\n\tat java.base/java.nio.file.Files.newBufferedReader(Files.java:2897)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemUtils.parsePrivateKey(PemUtils.java:130)\n\tat org.elasticsearch.sslconfig@8.13.2/org.elasticsearch.common.ssl.PemKeyConfig.getPrivateKey(PemKeyConfig.java:122)\n\t... 28 more\n"}
es02-1   | ERROR: Elasticsearch did not exit normally - check the logs at /usr/share/elasticsearch/logs/docker-cluster.log
es02-1   | ERROR: Elasticsearch died while starting up, with exit code 1
[billing@ogn-prebilling 8.13.0]$

J'attend toujours une aide venant de vous s'il vous plait

Comme ça, je dirais que le message indique un problème de mémoire (Not enough space).
Peut-être que ton Docker n'a pas assez de RAM allouée. Mais le mieux serait de partager le log de es01-1 complet.

le logs est trop long
c'est compliquer de mettre l'authentification avec votre platforme tout ça pour juste une authentification

Je ne sais pas. Chez moi, je fais juste "download" du .env et du docker-compose.yml.
Je supprime les noeuds es02 et es03.
Et tout fonctionne en environ 1 minute avec authentification et https par défaut...

Mon .env:

ELASTIC_PASSWORD=changeme
KIBANA_PASSWORD=changeme
STACK_VERSION=8.16.0-SNAPSHOT
CLUSTER_NAME=docker-cluster
LICENSE=basic
ES_PORT=9200
KIBANA_PORT=5601
MEM_LIMIT=1073741824

Mon docker-compose.yml:

version: "2.2"

services:
  setup:
    image: docker.elastic.co/elasticsearch/elasticsearch:${STACK_VERSION}
    volumes:
      - certs:/usr/share/elasticsearch/config/certs
    user: "0"
    command: >
      bash -c '
        if [ x${ELASTIC_PASSWORD} == x ]; then
          echo "Set the ELASTIC_PASSWORD environment variable in the .env file";
          exit 1;
        elif [ x${KIBANA_PASSWORD} == x ]; then
          echo "Set the KIBANA_PASSWORD environment variable in the .env file";
          exit 1;
        fi;
        if [ ! -f config/certs/ca.zip ]; then
          echo "Creating CA";
          bin/elasticsearch-certutil ca --silent --pem -out config/certs/ca.zip;
          unzip config/certs/ca.zip -d config/certs;
        fi;
        if [ ! -f config/certs/certs.zip ]; then
          echo "Creating certs";
          echo -ne \
          "instances:\n"\
          "  - name: es01\n"\
          "    dns:\n"\
          "      - es01\n"\
          "      - localhost\n"\
          "    ip:\n"\
          "      - 127.0.0.1\n"\
          > config/certs/instances.yml;
          bin/elasticsearch-certutil cert --silent --pem -out config/certs/certs.zip --in config/certs/instances.yml --ca-cert config/certs/ca/ca.crt --ca-key config/certs/ca/ca.key;
          unzip config/certs/certs.zip -d config/certs;
        fi;
        echo "Setting file permissions"
        chown -R root:root config/certs;
        find . -type d -exec chmod 750 \{\} \;;
        find . -type f -exec chmod 640 \{\} \;;
        echo "Waiting for Elasticsearch availability";
        until curl -s --cacert config/certs/ca/ca.crt https://es01:9200 | grep -q "missing authentication credentials"; do sleep 30; done;
        echo "Setting kibana_system password";
        until curl -s -X POST --cacert config/certs/ca/ca.crt -u "elastic:${ELASTIC_PASSWORD}" -H "Content-Type: application/json" https://es01:9200/_security/user/kibana_system/_password -d "{\"password\":\"${KIBANA_PASSWORD}\"}" | grep -q "^{}"; do sleep 10; done;
        echo "All done!";
      '
    healthcheck:
      test: ["CMD-SHELL", "[ -f config/certs/es01/es01.crt ]"]
      interval: 1s
      timeout: 5s
      retries: 120

  es01:
    depends_on:
      setup:
        condition: service_healthy
    image: docker.elastic.co/elasticsearch/elasticsearch:${STACK_VERSION}
    volumes:
      - certs:/usr/share/elasticsearch/config/certs
      - esdata01:/usr/share/elasticsearch/data
    ports:
      - ${ES_PORT}:9200
    environment:
      - node.name=es01
      - cluster.name=${CLUSTER_NAME}
      - cluster.initial_master_nodes=es01
      - ELASTIC_PASSWORD=${ELASTIC_PASSWORD}
      - bootstrap.memory_lock=true
      - xpack.security.enabled=true
      - xpack.security.http.ssl.enabled=true
      - xpack.security.http.ssl.key=certs/es01/es01.key
      - xpack.security.http.ssl.certificate=certs/es01/es01.crt
      - xpack.security.http.ssl.certificate_authorities=certs/ca/ca.crt
      - xpack.security.transport.ssl.enabled=true
      - xpack.security.transport.ssl.key=certs/es01/es01.key
      - xpack.security.transport.ssl.certificate=certs/es01/es01.crt
      - xpack.security.transport.ssl.certificate_authorities=certs/ca/ca.crt
      - xpack.security.transport.ssl.verification_mode=certificate
      - xpack.license.self_generated.type=${LICENSE}
    mem_limit: ${MEM_LIMIT}
    ulimits:
      memlock:
        soft: -1
        hard: -1
    healthcheck:
      test:
        [
          "CMD-SHELL",
          "curl -s --cacert config/certs/ca/ca.crt https://localhost:9200 | grep -q 'missing authentication credentials'",
        ]
      interval: 10s
      timeout: 10s
      retries: 120

  kibana:
    depends_on:
      es01:
        condition: service_healthy
    image: docker.elastic.co/kibana/kibana:${STACK_VERSION}
    volumes:
      - certs:/usr/share/kibana/config/certs
      - kibanadata:/usr/share/kibana/data
    ports:
      - ${KIBANA_PORT}:5601
    environment:
      - SERVERNAME=kibana
      - ELASTICSEARCH_HOSTS=https://es01:9200
      - ELASTICSEARCH_USERNAME=kibana_system
      - ELASTICSEARCH_PASSWORD=${KIBANA_PASSWORD}
      - ELASTICSEARCH_SSL_CERTIFICATEAUTHORITIES=config/certs/ca/ca.crt
    #  - I18N_LOCALE=fr-FR
    mem_limit: ${MEM_LIMIT}
    healthcheck:
      test:
        [
          "CMD-SHELL",
          "curl -s -I http://localhost:5601 | grep -q 'HTTP/1.1 302 Found'",
        ]
      interval: 10s
      timeout: 10s
      retries: 120

volumes:
  certs:
    driver: local
  esdata01:
    driver: local
  kibanadata:
    driver: local

bon j'ai essaiyé mais sa ne marche pas tjr avec ce que tu ma envoyez j'ai rien changer mais ça pas marcher .
ce que je voudrais tu adapte ceux script pour mon script et tu essaye voir s'il te plait

services:
  elasticsearch:
    image: docker.elastic.co/elasticsearch/elasticsearch:8.13.2
    container_name: elasticsearch
    environment:
      - node.name=es01
      - cluster.name=docker-cluster
      - discovery.type=single-node
      - "ES_JAVA_OPTS=-Xms4g -Xmx4g"
      - xpack.security.enabled=false
      - bootstrap.memory_lock=true
    ulimits:
      memlock:
        soft: -1
        hard: -1
    volumes:
      - esdata:/usr/share/elasticsearch/data
    ports:
      - 9200:9200
      - 9300:9300
    healthcheck:
      test: ["CMD-SHELL", "curl -f http://localhost:9200 || exit 1"]
      interval: 30s
      timeout: 10s
      retries: 3
    logging:
      driver: json-file
      options:
        max-size: "1g"
        max-file: "3"

  logstash:
    image: docker.elastic.co/logstash/logstash:8.13.2
    container_name: logstash
    depends_on:
      elasticsearch:
        condition: service_healthy
    ports:
      - "5044:5044"
    environment:
      - xpack.monitoring.elasticsearch.hosts=http://elasticsearch:9200
      - LS_JAVA_OPTS=-Xms4g -Xmx4g
    volumes:
     - ./logstash/pipeline:/usr/share/logstash/pipeline
    logging:
      driver: json-file
      options:
        max-size: "1g"
        max-file: "3"

  kibana:
    image: docker.elastic.co/kibana/kibana:8.13.2
    container_name: kibana
    ports:
      - "5601:5601"
    environment:
      - ELASTICSEARCH_URL=http://elasticsearch:9200
    depends_on:
      elasticsearch:
        condition: service_healthy
    logging:
      driver: json-file
      options:
        max-size: "1g"
        max-file: "3"

volumes:
  esdata:
    driver: local



type or paste code here

Tu peux poster les logs STP ?
Parce que "ça ne marche pas" est un peu trop vague pour diagnotiquer.

Non désolé. Je ne fais pas de consulting. Mais je peux t'aider à résoudre toi même le problème.
Pour cela, il faut qu'on parte d'une base saine et qui fonctionne avant de passer à l'étape suivante.

il a pris trop de temps a se demarrer et voila

[billing@ogn-prebilling test]$ docker-compose up -d
WARN[0003] /home/billing/test/docker-compose.yml: the attribute `version` is obsolete, it will be ignored, please remove it to avoid potential confusion
[+] Running 4/4
 ✔ Network test_default     Created                                                                                                                                      4.2s
 ✔ Container test-setup-1   Healthy                                                                                                                                     20.0s
 ✘ Container test-es01-1    Error                                                                                                                                     1270.5s
 ✔ Container test-kibana-1  Created                                                                                                                                      0.9s
dependency failed to start: container test-es01-1 is unhealthy
[billing@ogn-prebilling test]$

voici le log apres l'allumage

[billing@ogn-prebilling test]$ docker-compose logs
WARN[0001] /home/billing/test/docker-compose.yml: the attribute `version` is obsolete, it will be ignored, please remove it to avoid potential confusion
setup-1  | Setting file permissions
setup-1  | Waiting for Elasticsearch availability
es01-1   | Created elasticsearch keystore in /usr/share/elasticsearch/config/elasticsearch.keystore
es01-1   | Oct 25, 2024 10:16:27 AM sun.util.locale.provider.LocaleProviderAdapter <clinit>
es01-1   | WARNING: COMPAT locale provider will be removed in a future release
es01-1   | {"@timestamp":"2024-10-25T10:16:30.947Z", "log.level": "INFO", "message":"Using native vector library; to disable start with -Dorg.elasticsearch.nativeaccess.enableVectorLibrary=false", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.nativeaccess.NativeAccess","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:31.162Z", "log.level": "INFO", "message":"Using [jdk] native provider and native methods for [Linux]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.nativeaccess.NativeAccess","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:33.134Z", "log.level": "INFO", "message":"Java vector incubator API enabled; uses preferredBitSize=512; FMA enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.apache.lucene.internal.vectorization.PanamaVectorizationProvider","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:36.253Z", "log.level": "INFO", "message":"version[8.16.0-SNAPSHOT], pid[209], build[docker/5bdeaa1f6d03050c574a343edfe6c5e4aa60946d/2024-10-24T01:55:27.777070949Z], OS[Linux/4.18.0-553.22.1.el8_10.x86_64/amd64], JVM[Oracle Corporation/OpenJDK 64-Bit Server VM/22.0.1/22.0.1+8-16]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:36.254Z", "log.level": "INFO", "message":"JVM home [/usr/share/elasticsearch/jdk], using bundled JDK [true]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:36.254Z", "log.level": "INFO", "message":"JVM arguments [-Des.networkaddress.cache.ttl=60, -Des.networkaddress.cache.negative.ttl=10, -Djava.security.manager=allow, -XX:+AlwaysPreTouch, -Xss1m, -Djava.awt.headless=true, -Dfile.encoding=UTF-8, -Djna.nosys=true, -XX:-OmitStackTraceInFastThrow, -Dio.netty.noUnsafe=true, -Dio.netty.noKeySetOptimization=true, -Dio.netty.recycler.maxCapacityPerThread=0, -Dlog4j.shutdownHookEnabled=false, -Dlog4j2.disable.jmx=true, -Dlog4j2.formatMsgNoLookups=true, -Djava.locale.providers=SPI,COMPAT, --enable-native-access=org.elasticsearch.nativeaccess,org.apache.lucene.core, -Des.cgroups.hierarchy.override=/, -XX:ReplayDataFile=logs/replay_pid%p.log, -Des.distribution.type=docker, -XX:+UnlockDiagnosticVMOptions, -XX:G1NumCollectionsKeepPinned=10000000, -XX:+UseG1GC, -Djava.io.tmpdir=/tmp/elasticsearch-1553981215807435464, --add-modules=jdk.incubator.vector, -XX:+HeapDumpOnOutOfMemoryError, -XX:+ExitOnOutOfMemoryError, -XX:HeapDumpPath=data, -XX:ErrorFile=logs/hs_err_pid%p.log, -Xlog:gc*,gc+age=trace,safepoint:file=logs/gc.log:utctime,level,pid,tags:filecount=32,filesize=64m, -Xms512m, -Xmx512m, -XX:MaxDirectMemorySize=268435456, -XX:G1HeapRegionSize=4m, -XX:InitiatingHeapOccupancyPercent=30, -XX:G1ReservePercent=15, --module-path=/usr/share/elasticsearch/lib, --add-modules=jdk.net, --add-modules=ALL-MODULE-PATH, -Djdk.module.main=org.elasticsearch.server]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:36.255Z", "log.level": "INFO", "message":"Default Locale [en_US]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:36.255Z", "log.level": "WARN", "message":"version [8.16.0-SNAPSHOT] is a pre-release version of Elasticsearch and is not suitable for production", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:43.524Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [esql_date_nanos] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:16:51.251Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [esql_inlinestats] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.507Z", "log.level": "INFO", "message":"loaded module [repository-url]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.508Z", "log.level": "INFO", "message":"loaded module [rest-root]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.508Z", "log.level": "INFO", "message":"loaded module [x-pack-core]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.508Z", "log.level": "INFO", "message":"loaded module [x-pack-redact]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.508Z", "log.level": "INFO", "message":"loaded module [ingest-user-agent]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [x-pack-async-search]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [test-error-query]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [x-pack-monitoring]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [repository-s3]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [x-pack-analytics]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [x-pack-esql-core]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.509Z", "log.level": "INFO", "message":"loaded module [x-pack-ent-search]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [x-pack-autoscaling]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [lang-painless]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [x-pack-ml]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [test-die-with-dignity]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [lang-mustache]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [legacy-geo]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [logsdb]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.510Z", "log.level": "INFO", "message":"loaded module [x-pack-ql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.511Z", "log.level": "INFO", "message":"loaded module [rank-rrf]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.511Z", "log.level": "INFO", "message":"loaded module [analysis-common]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.511Z", "log.level": "INFO", "message":"loaded module [health-shards-availability]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.511Z", "log.level": "INFO", "message":"loaded module [transport-netty4]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.511Z", "log.level": "INFO", "message":"loaded module [aggregations]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.511Z", "log.level": "INFO", "message":"loaded module [ingest-common]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [frozen-indices]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [x-pack-identity-provider]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [x-pack-shutdown]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [x-pack-text-structure]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [snapshot-repo-test-kit]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [ml-package-loader]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [test-delayed-aggs]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.512Z", "log.level": "INFO", "message":"loaded module [kibana]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.513Z", "log.level": "INFO", "message":"loaded module [test-esql-heap-attack]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [constant-keyword]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [x-pack-logstash]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [x-pack-ccr]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [x-pack-graph]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [x-pack-esql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [parent-join]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.514Z", "log.level": "INFO", "message":"loaded module [counted-keyword]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [x-pack-enrich]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [repositories-metering-api]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [transform]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [repository-azure]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [dot-prefix-validation]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [repository-gcs]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [spatial]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [x-pack-otel-data]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [apm]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.515Z", "log.level": "INFO", "message":"loaded module [mapper-extras]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [mapper-version]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [test-jvm-crash]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [x-pack-rollup]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [percolator]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [data-streams]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [x-pack-stack]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [rank-eval]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [reindex]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [test-apm-integration]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [x-pack-security]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.516Z", "log.level": "INFO", "message":"loaded module [blob-cache]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [searchable-snapshots]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [x-pack-slm]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [x-pack-geoip-enterprise-downloader]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [snapshot-based-recoveries]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [test-latency-simulating-directory]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [x-pack-watcher]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [old-lucene-versions]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [x-pack-ilm]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [x-pack-inference]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.517Z", "log.level": "INFO", "message":"loaded module [x-pack-voting-only-node]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-deprecation]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-fleet]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-aggregate-metric]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-downsample]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-profiling]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [ingest-geoip]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-write-load-forecaster]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [search-business-rules]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [ingest-attachment]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [wildcard]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.518Z", "log.level": "INFO", "message":"loaded module [x-pack-apm-data]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [unsigned-long]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [x-pack-sql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [runtime-fields-common]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [x-pack-async]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [vector-tile]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [lang-expression]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:09.519Z", "log.level": "INFO", "message":"loaded module [x-pack-eql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:10.374Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [failure_store] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:17.709Z", "log.level": "INFO", "message":"using [1] data paths, mounts [[/usr/share/elasticsearch/data (/dev/mapper/rhel-root)]], net usable_space [110.1gb], net total_space [188.3gb], types [xfs]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.env.NodeEnvironment","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:17.710Z", "log.level": "INFO", "message":"heap size [512mb], compressed ordinary object pointers [true]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.env.NodeEnvironment","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:18.240Z", "log.level": "INFO", "message":"node name [es01], node ID [PikwzlnZSbGX0YFFSuHRHQ], cluster name [docker-cluster], roles [data_warm, data_content, transform, data_hot, ml, data_frozen, ingest, data_cold, data, remote_cluster_client, master]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:34.203Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [connector_secrets] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:36.257Z", "log.level": "INFO", "message":"using rate limit [40mb] with [default=40mb, read=0b, write=0b, max=0b]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.indices.recovery.RecoverySettings","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:37.773Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [sub_objects_auto] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:38.190Z", "log.level": "INFO", "message":"Registered local node features [data_stream.auto_sharding, data_stream.lifecycle.global_retention, data_stream.rollover.lazy, desired_node.version_deprecated, esql.agg_values, esql.async_query, esql.base64_decode_encode, esql.casting_operator, esql.counter_types, esql.disable_nullable_opts, esql.from_options, esql.metadata_fields, esql.metrics_counter_fields, esql.metrics_syntax, esql.mv_ordering_sorted_ascending, esql.mv_sort, esql.resolve_fields_api, esql.spatial_points_from_source, esql.spatial_shapes, esql.st_centroid_agg, esql.st_contains_within, esql.st_disjoint, esql.st_intersects, esql.st_x_y, esql.string_literal_auto_casting, esql.string_literal_auto_casting_extended, esql.timespan_abbreviations, features_supported, file_settings, flattened.ignore_above_support, geoip.downloader.database.configuration, get_database_configuration_action.multi_node, health.dsl.info, health.extended_repository_indicator, knn_retriever_supported, license-trial-independent-version, mapper.boolean_dimension, mapper.flattened.ignore_above_with_arrays_support, mapper.ignore_above_index_level_setting, mapper.index_sorting_on_nested, mapper.keyword_dimension_ignore_above, mapper.keyword_normalizer_synthetic_source, mapper.pass_through_priority, mapper.query_index_mode, mapper.range.null_values_off_by_one_fix, mapper.segment_level_fields_stats, mapper.source.synthetic_source_copy_to_fix, mapper.source.synthetic_source_copy_to_inside_objects_fix, mapper.source.synthetic_source_fallback, mapper.source.synthetic_source_stored_fields_advance_fix, mapper.source.synthetic_source_with_copy_to_and_doc_values_false, mapper.subobjects_auto, mapper.subobjects_auto_fixes, mapper.synthetic_source_keep, mapper.track_ignored_source, mapper.vectors.bbq, mapper.vectors.bit_vectors, mapper.vectors.int4_quantization, put_database_configuration_action.ipinfo, query_rules.test, random_reranker_retriever_supported, repositories.supports_usage_stats, rest.capabilities_action, rest.local_only_capabilities, retrievers_supported, routing.boolean_routing_path, routing.multi_value_routing_path, rrf_retriever_composition_supported, rrf_retriever_supported, script.hamming, script.term_stats, search.vectors.k_param_supported, security.migration_framework, security.roles_metadata_flattened, semantic_text.default_elser_2, semantic_text.search_inference_id, simulate.component.template.substitutions, simulate.index.template.substitutions, simulate.mapping.validation, simulate.mapping.validation.templates, slm.interval_schedule, snapshot.repository_verify_integrity, standard_retriever_supported, stats.include_disk_thresholds, text_similarity_reranker_retriever_composition_supported, text_similarity_reranker_retriever_supported, tsdb.ts_routing_hash_doc_value_parse_byte_ref, unified_highlighter_matched_fields, usage.data_tiers.precalculate_stats]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.features.FeatureService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:38.356Z", "log.level": "INFO", "message":"Updated default factory retention to [null]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.cluster.metadata.DataStreamGlobalRetentionSettings","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:38.356Z", "log.level": "INFO", "message":"Updated max factory retention to [null]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.cluster.metadata.DataStreamGlobalRetentionSettings","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:40.016Z", "log.level": "INFO", "message":"[controller/231] [Main.cc@123] controller (64 bit): Version 8.16.0-SNAPSHOT (Build e8ba5ef98f9e7b) Copyright (c) 2024 Elasticsearch BV", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"ml-cpp-log-tail-thread","log.logger":"org.elasticsearch.xpack.ml.process.logging.CppLogMessageHandler","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:41.878Z", "log.level": "INFO", "message":"OTel ingest plugin is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.oteldata.OTelPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:42.050Z", "log.level": "INFO", "message":"OpenTelemetry index template registry is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.core.template.YamlTemplateRegistry","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:42.054Z", "log.level": "INFO", "message":"Sending apm metrics is disabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.telemetry.apm.APM","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:42.054Z", "log.level": "INFO", "message":"Sending apm tracing is disabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.telemetry.apm.APM","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:42.277Z", "log.level": "INFO", "message":"Security is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.security.Security","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:43.479Z", "log.level": "INFO", "message":"parsed [0] roles from file [/usr/share/elasticsearch/config/roles.yml]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.security.authz.store.FileRolesStore","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:47.115Z", "log.level": "INFO", "message":"Watcher initialized components at 2024-10-25T10:17:47.115Z", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.watcher.Watcher","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:47.472Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [eis] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:47.617Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [inference_default_elser] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:47.814Z", "log.level": "INFO", "message":"Profiling is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.profiling.ProfilingPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:48.187Z", "log.level": "INFO", "message":"profiling index templates will not be installed or reinstalled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.profiling.ProfilingPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:48.270Z", "log.level": "INFO", "message":"APM ingest plugin is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.apmdata.APMPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:48.362Z", "log.level": "INFO", "message":"apm index template registry is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.core.template.YamlTemplateRegistry","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:50.064Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [connector_api] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:53.110Z", "log.level": "INFO", "message":"creating NettyAllocator with the following configs: [name=unpooled, suggested_max_allocation_size=1mb, factors={es.unsafe.use_unpooled_allocator=null, g1gc_enabled=true, g1gc_region_size=4mb, heap_size=512mb}]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.transport.netty4.NettyAllocator","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:17:53.933Z", "log.level": "INFO", "message":"using discovery type [multi-node] and seed hosts providers [settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.discovery.DiscoveryModule","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}



suite du log

es01-1   | {"@timestamp":"2024-10-25T10:18:02.391Z", "log.level": "INFO", "message":"initialized", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:02.394Z", "log.level": "INFO", "message":"starting ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:02.690Z", "log.level": "INFO", "message":"persistent cache index loaded", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.searchablesnapshots.cache.full.PersistentCache","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:02.695Z", "log.level": "INFO", "message":"deprecation component started", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.deprecation.logging.DeprecationIndexingComponent","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:03.237Z", "log.level": "INFO", "message":"publish_address {172.31.0.3:9300}, bound_addresses {[::]:9300}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.transport.TransportService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:05.797Z", "log.level": "INFO", "message":"bound or publishing to a non-loopback address, enforcing bootstrap checks", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.BootstrapChecks","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:05.884Z", "log.level": "WARN", "message":"this node is locked into cluster UUID [7TWyMwWjRWOlL2hEGj9deg] but [cluster.initial_master_nodes] is set to [es01]; remove this setting to avoid possible data loss caused by subsequent cluster bootstrap attempts; for further information see https://www.elastic.co/guide/en/elasticsearch/reference/master/important-settings.html#initial_master_nodes", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.cluster.coordination.ClusterBootstrapService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:07.051Z", "log.level": "INFO", "message":"elected-as-master ([1] nodes joined in term 2)[_FINISH_ELECTION_, {es01}{PikwzlnZSbGX0YFFSuHRHQ}{B3vLuUziQp6Bgo3-ST-6Dw}{es01}{172.31.0.3}{172.31.0.3:9300}{cdfhilmrstw}{8.16.0}{7000099-8517000} completing election], term: 2, version: 53, delta: master node changed {previous [], current [{es01}{PikwzlnZSbGX0YFFSuHRHQ}{B3vLuUziQp6Bgo3-ST-6Dw}{es01}{172.31.0.3}{172.31.0.3:9300}{cdfhilmrstw}{8.16.0}{7000099-8517000}]}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.service.MasterService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:07.262Z", "log.level": "INFO", "message":"master node changed {previous [], current [{es01}{PikwzlnZSbGX0YFFSuHRHQ}{B3vLuUziQp6Bgo3-ST-6Dw}{es01}{172.31.0.3}{172.31.0.3:9300}{cdfhilmrstw}{8.16.0}{7000099-8517000}]}, term: 2, version: 53, reason: Publication{term=2, version=53}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.service.ClusterApplierService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:12.186Z", "log.level": "INFO", "message":"node-join: [{es01}{PikwzlnZSbGX0YFFSuHRHQ}{B3vLuUziQp6Bgo3-ST-6Dw}{es01}{172.31.0.3}{172.31.0.3:9300}{cdfhilmrstw}{8.16.0}{7000099-8517000}] with reason [completing election]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.coordination.NodeJoinExecutor","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:12.285Z", "log.level": "INFO", "message":"publish_address {172.31.0.3:9200}, bound_addresses {[::]:9200}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.http.AbstractHttpServerTransport","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:13.085Z", "log.level": "INFO", "message":"started {es01}{PikwzlnZSbGX0YFFSuHRHQ}{B3vLuUziQp6Bgo3-ST-6Dw}{es01}{172.31.0.3}{172.31.0.3:9300}{cdfhilmrstw}{8.16.0}{7000099-8517000}{xpack.installed=true, ml.config_version=12.0.0, ml.max_jvm_size=536870912, ml.allocated_processors_double=4.0, ml.allocated_processors=4, ml.machine_memory=1073741824, transform.config_version=10.0.0}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:15.921Z", "log.level": "WARN", "message":"[gc][11] overhead, spent [670ms] collecting in the last [1.3s]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][scheduler][T#1]","log.logger":"org.elasticsearch.monitor.jvm.JvmGcMonitorService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:19.228Z", "log.level": "INFO", "message":"license mode is [basic], currently licensed security realms are [reserved/reserved,file/default_file,native/default_native]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.security.authc.Realms","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:19.375Z", "log.level": "INFO", "message":"license [626fb033-0e18-44eb-b3aa-75ea31df6c93] mode [basic] - valid", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.license.ClusterStateLicenseService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:19.430Z", "log.level": "INFO", "message":"starting file watcher ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.common.file.AbstractFileWatchingService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:19.558Z", "log.level": "INFO", "message":"file settings service up and running [tid=66]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[file-watcher[/usr/share/elasticsearch/config/operator/settings.json]]","log.logger":"org.elasticsearch.common.file.AbstractFileWatchingService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:19.559Z", "log.level": "INFO", "message":"setting file [/usr/share/elasticsearch/config/operator/settings.json] not found, initializing [file_settings] as empty", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[file-watcher[/usr/share/elasticsearch/config/operator/settings.json]]","log.logger":"org.elasticsearch.reservedstate.service.FileSettingsService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:19.565Z", "log.level": "INFO", "message":"recovered [2] indices into cluster_state", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.gateway.GatewayService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:21.295Z", "log.level": "INFO", "message":"Node [{es01}{PikwzlnZSbGX0YFFSuHRHQ}] is selected as the current health node.", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][management][T#2]","log.logger":"org.elasticsearch.health.node.selection.HealthNodeTaskExecutor","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:24.621Z", "log.level": "INFO", "message":"The current build is a snapshot, feature flag [zstd_stored_fields] is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.common.util.FeatureFlag","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:18:28.756Z", "log.level": "INFO",  "current.health":"GREEN","message":"Cluster health status changed from [RED] to [GREEN] (reason: [shards started [[.ds-.logs-deprecation.elasticsearch-default-2024.10.24-000001][0], [.ds-ilm-history-7-2024.10.24-000001][0]]]).","previous.health":"RED","reason":"shards started [[.ds-.logs-deprecation.elasticsearch-default-2024.10.24-000001][0], [.ds-ilm-history-7-2024.10.24-000001][0]]" , "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.routing.allocation.AllocationService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:25:51.329Z", "log.level": "INFO", "message":"[gc][young][463][21] duration [846ms], collections [1]/[1.2s], total [846ms]/[2.5s], memory [378.7mb]->[90.3mb]/[512mb], all_pools {[young] [288mb]->[0b]/[0b]}{[old] [85.1mb]->[85.1mb]/[512mb]}{[survivor] [5.6mb]->[5.2mb]/[0b]}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][scheduler][T#1]","log.logger":"org.elasticsearch.monitor.jvm.JvmGcMonitorService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T10:25:51.357Z", "log.level": "WARN", "message":"[gc][463] overhead, spent [846ms] collecting in the last [1.2s]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][scheduler][T#1]","log.logger":"org.elasticsearch.monitor.jvm.JvmGcMonitorService","elasticsearch.cluster.uuid":"7TWyMwWjRWOlL2hEGj9deg","elasticsearch.node.id":"PikwzlnZSbGX0YFFSuHRHQ","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
[billing@ogn-prebilling test]$

J'aurais dû préciser de faire ça avec la 8.15.3:

ELASTIC_PASSWORD=changeme
KIBANA_PASSWORD=changeme
STACK_VERSION=8.15.3
CLUSTER_NAME=docker-cluster
LICENSE=basic
ES_PORT=9200
KIBANA_PORT=5601
MEM_LIMIT=1073741824

Peux-tu mettre à jour le fichier .env puis faire:

docker compose down -v
docker compose up

Puis partager les logs si au bout de quelques minutes, tu n'arrives toujours pas à ouvrir l'URL https://0.0.0.0:5601/

la je pense que l'elasticsearch est up c'est le kibana qui manque

type or paste cod[billing@ogn-prebilling test]$ docker compose down -v
WARN[0000] /home/billing/test/docker-compose.yml: `version` is obsolete
[+] Running 7/7
 ✔ Container test-kibana-1  Removed                                                                                                                                      0.0s
 ✔ Container test-es01-1    Removed                                                                                                                                      0.0s
 ✔ Container test-setup-1   Removed                                                                                                                                      0.1s
 ✔ Volume test_esdata01     Removed                                                                                                                                      0.0s
 ✔ Volume test_kibanadata   Removed                                                                                                                                      0.1s
 ✔ Volume test_certs        Removed                                                                                                                                      0.1s
 ✔ Network test_default     Removed                                                                                                                                      0.5s
[billing@ogn-prebilling test]$ docker compose up -d
WARN[0000] /home/billing/test/docker-compose.yml: `version` is obsolete
[+] Running 6/7
 ✔ Network test_default      Created                                                                                                                                     0.3s
 ✔ Volume "test_certs"       Created                                                                                                                                     0.0s
 ✔ Volume "test_esdata01"    Created                                                                                                                                     0.0s
 ✔ Volume "test_kibanadata"  Created                                                                                                                                     0.0s
 ✔ Container test-setup-1    Healthy                                                                                                                                    12.0s
 ✔ Container test-es01-1     Healthy                                                                                                                                   121.0s
 ⠧ Container test-kibana-1   Starting                                                                                                                                  124.5s
Error response from daemon: driver failed programming external connectivity on endpoint test-kibana-1 (22a95e060350ff0fe7fa70c82b9c37cb0fe2537950b57c57f614fa03148326f1): Bind for 0.0.0.0:5601 failed: port is already allocated
[billing@ogn-prebilling test]$ docker compose logs
WARN[0000] /home/billing/test/docker-compose.yml: `version` is obsolete
setup-1  | Creating CA
setup-1  | Archive:  config/certs/ca.zip
setup-1  |    creating: config/certs/ca/
setup-1  |   inflating: config/certs/ca/ca.crt
setup-1  |   inflating: config/certs/ca/ca.key
setup-1  | Creating certs
setup-1  | Archive:  config/certs/certs.zip
setup-1  |    creating: config/certs/es01/
setup-1  |   inflating: config/certs/es01/es01.crt
setup-1  |   inflating: config/certs/es01/es01.key
setup-1  | Setting file permissions
setup-1  | Waiting for Elasticsearch availability
setup-1  | Setting kibana_system password
setup-1  | All done!
es01-1   | Created elasticsearch keystore in /usr/share/elasticsearch/config/elasticsearch.keystore
es01-1   | Oct 25, 2024 11:49:29 AM sun.util.locale.provider.LocaleProviderAdapter <clinit>
es01-1   | WARNING: COMPAT locale provider will be removed in a future release
es01-1   | {"@timestamp":"2024-10-25T11:49:30.293Z", "log.level": "INFO", "message":"Using native vector library; to disable start with -Dorg.elasticsearch.nativeaccess.enableVectorLibrary=false", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.nativeaccess.NativeAccess","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:49:32.338Z", "log.level": "INFO", "message":"Using [jdk] native provider and native methods for [Linux]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.nativeaccess.NativeAccess","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:49:35.391Z", "log.level": "INFO", "message":"Java vector incubator API enabled; uses preferredBitSize=512; FMA enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.apache.lucene.internal.vectorization.PanamaVectorizationProvider","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:49:37.843Z", "log.level": "INFO", "message":"version[8.15.3], pid[189], build[docker/f97532e680b555c3a05e73a74c28afb666923018/2024-10-09T22:08:00.328917561Z], OS[Linux/4.18.0-553.22.1.el8_10.x86_64/amd64], JVM[Oracle Corporation/OpenJDK 64-Bit Server VM/22.0.1/22.0.1+8-16]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:49:37.844Z", "log.level": "INFO", "message":"JVM home [/usr/share/elasticsearch/jdk], using bundled JDK [true]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:49:37.845Z", "log.level": "INFO", "message":"JVM arguments [-Des.networkaddress.cache.ttl=60, -Des.networkaddress.cache.negative.ttl=10, -Djava.security.manager=allow, -XX:+AlwaysPreTouch, -Xss1m, -Djava.awt.headless=true, -Dfile.encoding=UTF-8, -Djna.nosys=true, -XX:-OmitStackTraceInFastThrow, -Dio.netty.noUnsafe=true, -Dio.netty.noKeySetOptimization=true, -Dio.netty.recycler.maxCapacityPerThread=0, -Dlog4j.shutdownHookEnabled=false, -Dlog4j2.disable.jmx=true, -Dlog4j2.formatMsgNoLookups=true, -Djava.locale.providers=SPI,COMPAT, --add-opens=java.base/java.io=org.elasticsearch.preallocate, --enable-native-access=org.elasticsearch.nativeaccess,org.apache.lucene.core, -Des.cgroups.hierarchy.override=/, -XX:ReplayDataFile=logs/replay_pid%p.log, -Djava.library.path=/usr/share/elasticsearch/lib/platform/linux-x64:/usr/java/packages/lib:/usr/lib64:/lib64:/lib:/usr/lib, -Djna.library.path=/usr/share/elasticsearch/lib/platform/linux-x64:/usr/java/packages/lib:/usr/lib64:/lib64:/lib:/usr/lib, -Des.distribution.type=docker, -XX:+UnlockDiagnosticVMOptions, -XX:G1NumCollectionsKeepPinned=10000000, -XX:+UseG1GC, -Djava.io.tmpdir=/tmp/elasticsearch-16255351046692265524, --add-modules=jdk.incubator.vector, -XX:+HeapDumpOnOutOfMemoryError, -XX:+ExitOnOutOfMemoryError, -XX:HeapDumpPath=data, -XX:ErrorFile=logs/hs_err_pid%p.log, -Xlog:gc*,gc+age=trace,safepoint:file=logs/gc.log:utctime,level,pid,tags:filecount=32,filesize=64m, -Xms512m, -Xmx512m, -XX:MaxDirectMemorySize=268435456, -XX:G1HeapRegionSize=4m, -XX:InitiatingHeapOccupancyPercent=30, -XX:G1ReservePercent=15, --module-path=/usr/share/elasticsearch/lib, --add-modules=jdk.net, --add-modules=ALL-MODULE-PATH, -Djdk.module.main=org.elasticsearch.server]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:49:37.845Z", "log.level": "INFO", "message":"Default Locale [en_US]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.498Z", "log.level": "INFO", "message":"loaded module [repository-url]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [rest-root]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [x-pack-core]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [x-pack-redact]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [ingest-user-agent]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [x-pack-async-search]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [x-pack-monitoring]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [repository-s3]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.500Z", "log.level": "INFO", "message":"loaded module [x-pack-analytics]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [x-pack-esql-core]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [x-pack-ent-search]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [x-pack-autoscaling]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [lang-painless]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [x-pack-ml]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [lang-mustache]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [legacy-geo]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.501Z", "log.level": "INFO", "message":"loaded module [x-pack-ql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [rank-rrf]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [analysis-common]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [health-shards-availability]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [transport-netty4]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [aggregations]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [ingest-common]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.502Z", "log.level": "INFO", "message":"loaded module [frozen-indices]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [x-pack-identity-provider]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [x-pack-shutdown]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [x-pack-text-structure]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [snapshot-repo-test-kit]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [ml-package-loader]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [kibana]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [constant-keyword]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.503Z", "log.level": "INFO", "message":"loaded module [x-pack-logstash]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [x-pack-ccr]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [x-pack-graph]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [x-pack-esql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [parent-join]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [counted-keyword]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [x-pack-enrich]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [repositories-metering-api]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [transform]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.504Z", "log.level": "INFO", "message":"loaded module [repository-azure]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.505Z", "log.level": "INFO", "message":"loaded module [repository-gcs]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.505Z", "log.level": "INFO", "message":"loaded module [spatial]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.505Z", "log.level": "INFO", "message":"loaded module [apm]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.505Z", "log.level": "INFO", "message":"loaded module [mapper-extras]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.505Z", "log.level": "INFO", "message":"loaded module [mapper-version]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.505Z", "log.level": "INFO", "message":"loaded module [x-pack-rollup]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [percolator]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [data-streams]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [x-pack-stack]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [rank-eval]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [reindex]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [x-pack-security]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [blob-cache]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [searchable-snapshots]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.506Z", "log.level": "INFO", "message":"loaded module [x-pack-slm]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.507Z", "log.level": "INFO", "message":"loaded module [x-pack-geoip-enterprise-downloader]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.507Z", "log.level": "INFO", "message":"loaded module [snapshot-based-recoveries]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.507Z", "log.level": "INFO", "message":"loaded module [x-pack-watcher]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.511Z", "log.level": "INFO", "message":"loaded module [old-lucene-versions]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.511Z", "log.level": "INFO", "message":"loaded module [x-pack-ilm]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.511Z", "log.level": "INFO", "message":"loaded module [x-pack-inference]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.511Z", "log.level": "INFO", "message":"loaded module [x-pack-voting-only-node]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [x-pack-deprecation]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [x-pack-fleet]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [x-pack-aggregate-metric]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [x-pack-downsample]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [x-pack-profiling]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [ingest-geoip]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [x-pack-write-load-forecaster]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [search-business-rules]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.512Z", "log.level": "INFO", "message":"loaded module [ingest-attachment]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [wildcard]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [x-pack-apm-data]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [unsigned-long]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [x-pack-sql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [runtime-fields-common]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [x-pack-async]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [vector-tile]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [lang-expression]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:00.513Z", "log.level": "INFO", "message":"loaded module [x-pack-eql]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.plugins.PluginsService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:06.970Z", "log.level": "INFO", "message":"using [1] data paths, mounts [[/usr/share/elasticsearch/data (/dev/mapper/rhel-root)]], net usable_space [107.8gb], net total_space [188.3gb], types [xfs]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.env.NodeEnvironment","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:06.971Z", "log.level": "INFO", "message":"heap size [512mb], compressed ordinary object pointers [true]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.env.NodeEnvironment","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:07.061Z", "log.level": "INFO", "message":"node name [es01], node ID [Eu_oMEkoTCWPXYjVIGPnBA], cluster name [docker-cluster], roles [data_cold, ingest, data_frozen, ml, data_hot, transform, data_content, data_warm, master, remote_cluster_client, data]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:25.379Z", "log.level": "INFO", "message":"using rate limit [40mb] with [default=40mb, read=0b, write=0b, max=0b]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.indices.recovery.RecoverySettings","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:27.428Z", "log.level": "INFO", "message":"Registered local node features [data_stream.auto_sharding, data_stream.lifecycle.global_retention, data_stream.rollover.lazy, desired_node.version_deprecated, esql.agg_values, esql.async_query, esql.base64_decode_encode, esql.casting_operator, esql.counter_types, esql.disable_nullable_opts, esql.from_options, esql.metadata_fields, esql.metrics_counter_fields, esql.mv_ordering_sorted_ascending, esql.mv_sort, esql.spatial_points_from_source, esql.spatial_shapes, esql.st_centroid_agg, esql.st_contains_within, esql.st_disjoint, esql.st_intersects, esql.st_x_y, esql.string_literal_auto_casting, esql.string_literal_auto_casting_extended, esql.timespan_abbreviations, features_supported, file_settings, geoip.downloader.database.configuration, health.dsl.info, health.extended_repository_indicator, knn_retriever_supported, license-trial-independent-version, mapper.index_sorting_on_nested, mapper.keyword_dimension_ignore_above, mapper.pass_through_priority, mapper.range.null_values_off_by_one_fix, mapper.source.synthetic_source_fallback, mapper.source.synthetic_source_stored_fields_advance_fix, mapper.track_ignored_source, mapper.vectors.bit_vectors, mapper.vectors.int4_quantization, rest.capabilities_action, retrievers_supported, rrf_retriever_supported, script.hamming, search.vectors.k_param_supported, security.migration_framework, security.roles_metadata_flattened, standard_retriever_supported, stats.include_disk_thresholds, text_similarity_reranker_retriever_supported, unified_highlighter_matched_fields, usage.data_tiers.precalculate_stats]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.features.FeatureService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:29.978Z", "log.level": "INFO", "message":"[controller/211] [Main.cc@123] controller (64 bit): Version 8.15.3 (Build 44a990dc4c07de) Copyright (c) 2024 Elasticsearch BV", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"ml-cpp-log-tail-thread","log.logger":"org.elasticsearch.xpack.ml.process.logging.CppLogMessageHandler","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:33.240Z", "log.level": "INFO", "message":"Sending apm metrics is disabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.telemetry.apm.APM","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:33.240Z", "log.level": "INFO", "message":"Sending apm tracing is disabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.telemetry.apm.APM","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:33.492Z", "log.level": "INFO", "message":"Security is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.security.Security","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:35.202Z", "log.level": "INFO", "message":"parsed [0] roles from file [/usr/share/elasticsearch/config/roles.yml]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.security.authz.store.FileRolesStore","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:38.691Z", "log.level": "INFO", "message":"Watcher initialized components at 2024-10-25T11:50:38.691Z", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.watcher.Watcher","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:39.527Z", "log.level": "INFO", "message":"Profiling is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.profiling.ProfilingPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:39.601Z", "log.level": "INFO", "message":"profiling index templates will not be installed or reinstalled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.profiling.ProfilingPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:39.618Z", "log.level": "INFO", "message":"APM ingest plugin is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.apmdata.APMPlugin","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:39.784Z", "log.level": "INFO", "message":"APM index template registry is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.apmdata.APMIndexTemplateRegistry","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:43.291Z", "log.level": "INFO", "message":"creating NettyAllocator with the following configs: [name=unpooled, suggested_max_allocation_size=1mb, factors={es.unsafe.use_unpooled_allocator=null, g1gc_enabled=true, g1gc_region_size=4mb, heap_size=512mb}]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.transport.netty4.NettyAllocator","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:43.627Z", "log.level": "INFO", "message":"using discovery type [multi-node] and seed hosts providers [settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.discovery.DiscoveryModule","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:50.988Z", "log.level": "INFO", "message":"initialized", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:50.989Z", "log.level": "INFO", "message":"starting ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:51.081Z", "log.level": "INFO", "message":"persistent cache index loaded", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.searchablesnapshots.cache.full.PersistentCache","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:51.082Z", "log.level": "INFO", "message":"deprecation component started", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.deprecation.logging.DeprecationIndexingComponent","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:52.648Z", "log.level": "INFO", "message":"publish_address {192.168.16.3:9300}, bound_addresses {[::]:9300}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.transport.TransportService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:53.257Z", "log.level": "INFO", "message":"bound or publishing to a non-loopback address, enforcing bootstrap checks", "ecs.version": 

suite du logs

1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.BootstrapChecks","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:53.263Z", "log.level": "INFO", "message":"this node has not joined a bootstrapped cluster yet; [cluster.initial_master_nodes] is set to [es01]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.cluster.coordination.ClusterBootstrapService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:53.278Z", "log.level": "INFO", "message":"setting initial configuration to VotingConfiguration{Eu_oMEkoTCWPXYjVIGPnBA}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.cluster.coordination.Coordinator","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:54.045Z", "log.level": "INFO", "message":"elected-as-master ([1] nodes joined in term 1)[_FINISH_ELECTION_, {es01}{Eu_oMEkoTCWPXYjVIGPnBA}{MRfp4U4DR-GmaUXg6YCPjw}{es01}{192.168.16.3}{192.168.16.3:9300}{cdfhilmrstw}{8.15.3}{7000099-8512000} completing election], term: 1, version: 1, delta: master node changed {previous [], current [{es01}{Eu_oMEkoTCWPXYjVIGPnBA}{MRfp4U4DR-GmaUXg6YCPjw}{es01}{192.168.16.3}{192.168.16.3:9300}{cdfhilmrstw}{8.15.3}{7000099-8512000}]}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.service.MasterService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:54.147Z", "log.level": "INFO", "message":"cluster UUID set to [IljAlIv9R7anlriT9SWvhg]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][cluster_coordination][T#1]","log.logger":"org.elasticsearch.cluster.coordination.CoordinationState","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:54.173Z", "log.level": "INFO", "message":"master node changed {previous [], current [{es01}{Eu_oMEkoTCWPXYjVIGPnBA}{MRfp4U4DR-GmaUXg6YCPjw}{es01}{192.168.16.3}{192.168.16.3:9300}{cdfhilmrstw}{8.15.3}{7000099-8512000}]}, term: 1, version: 1, reason: Publication{term=1, version=1}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.service.ClusterApplierService","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:54.564Z", "log.level": "INFO", "message":"node-join: [{es01}{Eu_oMEkoTCWPXYjVIGPnBA}{MRfp4U4DR-GmaUXg6YCPjw}{es01}{192.168.16.3}{192.168.16.3:9300}{cdfhilmrstw}{8.15.3}{7000099-8512000}] with reason [completing election]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.coordination.NodeJoinExecutor","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:54.585Z", "log.level": "INFO", "message":"publish_address {192.168.16.3:9200}, bound_addresses {[::]:9200}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.http.AbstractHttpServerTransport","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:54.749Z", "log.level": "INFO", "message":"started {es01}{Eu_oMEkoTCWPXYjVIGPnBA}{MRfp4U4DR-GmaUXg6YCPjw}{es01}{192.168.16.3}{192.168.16.3:9300}{cdfhilmrstw}{8.15.3}{7000099-8512000}{ml.machine_memory=1073741824, ml.allocated_processors=4, ml.allocated_processors_double=4.0, ml.max_jvm_size=536870912, ml.config_version=12.0.0, xpack.installed=true, transform.config_version=10.0.0}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:55.158Z", "log.level": "INFO", "message":"starting file watcher ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.common.file.AbstractFileWatchingService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:55.199Z", "log.level": "INFO", "message":"recovered [0] indices into cluster_state", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.gateway.GatewayService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:55.200Z", "log.level": "INFO", "message":"file settings service up and running [tid=81]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[file-watcher[/usr/share/elasticsearch/config/operator/settings.json]]","log.logger":"org.elasticsearch.common.file.AbstractFileWatchingService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:55.201Z", "log.level": "INFO", "message":"setting file [/usr/share/elasticsearch/config/operator/settings.json] not found, initializing [file_settings] as empty", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[file-watcher[/usr/share/elasticsearch/config/operator/settings.json]]","log.logger":"org.elasticsearch.reservedstate.service.FileSettingsService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:57.624Z", "log.level": "INFO", "message":"adding index template [.monitoring-kibana-mb] for index patterns [.monitoring-kibana-8-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:58.803Z", "log.level": "INFO", "message":"adding index template [.monitoring-es-mb] for index patterns [.monitoring-es-8-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:58.840Z", "log.level": "INFO", "message":"adding index template [.monitoring-logstash-mb] for index patterns [.monitoring-logstash-8-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:58.861Z", "log.level": "INFO", "message":"adding template [.monitoring-kibana] for index patterns [.monitoring-kibana-7-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:58.899Z", "log.level": "INFO", "message":"adding template [.monitoring-alerts-7] for index patterns [.monitoring-alerts-7]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:58.942Z", "log.level": "INFO", "message":"adding index template [.monitoring-ent-search-mb] for index patterns [.monitoring-ent-search-8-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:58.958Z", "log.level": "INFO", "message":"adding template [.monitoring-logstash] for index patterns [.monitoring-logstash-7-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:59.033Z", "log.level": "INFO", "message":"adding template [.monitoring-es] for index patterns [.monitoring-es-7-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:59.184Z", "log.level": "INFO", "message":"adding index template [.monitoring-beats-mb] for index patterns [.monitoring-beats-8-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:50:59.246Z", "log.level": "INFO", "message":"adding template [.monitoring-beats] for index patterns [.monitoring-beats-7-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:00.495Z", "log.level": "INFO", "message":"adding index template [.ml-anomalies-] for index patterns [.ml-anomalies-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:00.602Z", "log.level": "INFO", "message":"adding index template [search-acl-filter] for index patterns [.search-acl-filter-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.184Z", "log.level": "INFO", "message":"adding component template [elastic-connectors-sync-jobs-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.236Z", "log.level": "INFO", "message":"adding component template [elastic-connectors-sync-jobs-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.265Z", "log.level": "INFO", "message":"adding component template [elastic-connectors-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.272Z", "log.level": "INFO", "message":"adding component template [elastic-connectors-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.341Z", "log.level": "INFO", "message":"adding index template [.ml-state] for index patterns [.ml-state*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.386Z", "log.level": "INFO", "message":"adding index template [.ml-stats] for index patterns [.ml-stats-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.421Z", "log.level": "INFO", "message":"adding index template [.ml-notifications-000002] for index patterns [.ml-notifications-000002]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.641Z", "log.level": "INFO", "message":"adding component template [behavioral_analytics-events-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:01.906Z", "log.level": "INFO", "message":"adding component template [synthetics-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.182Z", "log.level": "INFO", "message":"adding component template [ecs@dynamic_templates]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.262Z", "log.level": "INFO", "message":"adding component template [metrics-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.283Z", "log.level": "INFO", "message":"adding component template [data-streams-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.288Z", "log.level": "INFO", "message":"adding component template [metrics-tsdb-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.344Z", "log.level": "INFO", "message":"adding component template [synthetics-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.351Z", "log.level": "INFO", "message":"adding component template [metrics-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.399Z", "log.level": "INFO", "message":"adding component template [logs-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.405Z", "log.level": "INFO", "message":"adding component template [synthetics@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.424Z", "log.level": "INFO", "message":"adding component template [metrics@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.437Z", "log.level": "INFO", "message":"adding component template [synthetics@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.456Z", "log.level": "INFO", "message":"adding component template [logs@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.484Z", "log.level": "INFO", "message":"adding component template [ecs@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.519Z", "log.level": "INFO", "message":"adding component template [metrics@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.550Z", "log.level": "INFO", "message":"adding component template [data-streams@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.556Z", "log.level": "INFO", "message":"adding component template [kibana-reporting@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.636Z", "log.level": "INFO", "message":"adding index template [.watch-history-16] for index patterns [.watcher-history-16*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.667Z", "log.level": "INFO", "message":"adding index template [.slm-history-7] for index patterns [.slm-history-7*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.683Z", "log.level": "INFO", "message":"adding component template [metrics@tsdb-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.733Z", "log.level": "INFO", "message":"adding index template [ilm-history-7] for index patterns [ilm-history-7*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.745Z", "log.level": "INFO", "message":"adding component template [.deprecation-indexing-mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.810Z", "log.level": "INFO", "message":"adding index template [.fleet-fileds-tohost-meta] for index patterns [.fleet-fileds-tohost-meta-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.869Z", "log.level": "INFO", "message":"adding component template [.deprecation-indexing-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.894Z", "log.level": "INFO", "message":"adding index template [.fleet-fileds-fromhost-data] for index patterns [.fleet-fileds-fromhost-data-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.911Z", "log.level": "INFO", "message":"adding index template [.fleet-fileds-fromhost-meta] for index patterns [.fleet-fileds-fromhost-meta-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.944Z", "log.level": "INFO", "message":"adding index template [.fleet-fileds-tohost-data] for index patterns [.fleet-fileds-tohost-data-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.949Z", "log.level": "INFO", "message":"adding component template [metrics-apm.transaction.1m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.956Z", "log.level": "INFO", "message":"adding component template [traces-apm.rum@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.961Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_summary.10m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.965Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_destination.1m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.969Z", "log.level": "INFO", "message":"adding component template [apm-390d@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.974Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_summary.60m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:02.978Z", "log.level": "INFO", "message":"adding component template [apm-180d@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.002Z", "log.level": "INFO", "message":"adding component template [metrics-apm.transaction@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.010Z", "log.level": "INFO", "message":"adding component template [metrics-apm.transaction.10m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.015Z", "log.level": "INFO", "message":"adding component template [apm-10d@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.020Z", "log.level": "INFO", "message":"adding component template [metrics-apm.transaction.60m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.025Z", "log.level": "INFO", "message":"adding component template [traces-apm-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.031Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_destination@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.037Z", "log.level": "INFO", "message":"adding component template [apm@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.042Z", "log.level": "INFO", "message":"adding component template [apm-90d@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.046Z", "log.level": "INFO", "message":"adding component template [traces-apm.rum-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.051Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_summary@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.064Z", "log.level": "INFO", "message":"adding component template [traces-apm@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.070Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_transaction.60m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.074Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_transaction.10m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.091Z", "log.level": "INFO", "message":"adding component template [metrics-apm@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.097Z", "log.level": "INFO", "message":"adding component template [metrics-apm.app-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.104Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_transaction@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.110Z", "log.level": "INFO", "message":"adding component template [traces@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.114Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_transaction.1m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.119Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_summary.1m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.136Z", "log.level": "INFO", "message":"adding component template [logs-apm.error-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.143Z", "log.level": "INFO", "message":"adding component template [apm@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.147Z", "log.level": "INFO", "message":"adding component template [traces-apm.sampled-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.289Z", "log.level": "INFO", "message":"adding component template [logs-apm.error@mappings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.313Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_destination.10m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.318Z", "log.level": "INFO", "message":"adding component template [logs-apm@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.323Z", "log.level": "INFO", "message":"adding component template [metrics-apm.service_destination.60m-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.327Z", "log.level": "INFO", "message":"adding component template [metrics-apm.internal-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.331Z", "log.level": "INFO", "message":"adding component template [metrics-apm@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:03.335Z", "log.level": "INFO", "message":"adding component template [logs-apm.app-fallback@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}

fin du logs

es01-1   | {"@timestamp":"2024-10-25T11:51:04.039Z", "log.level": "INFO", "message":"adding index template [elastic-connectors] for index patterns [.elastic-connectors-v1]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.054Z", "log.level": "INFO", "message":"adding index template [elastic-connectors-sync-jobs] for index patterns [.elastic-connectors-sync-jobs-v1]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.087Z", "log.level": "INFO", "message":"adding index template [metrics] for index patterns [metrics-*-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.270Z", "log.level": "INFO", "message":"adding index template [metrics-apm.transaction.1m@template] for index patterns [metrics-apm.transaction.1m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.307Z", "log.level": "INFO", "message":"adding index template [traces-apm.rum@template] for index patterns [traces-apm.rum-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.320Z", "log.level": "INFO", "message":"adding index template [logs-apm.error@template] for index patterns [logs-apm.error-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.330Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_transaction.10m@template] for index patterns [metrics-apm.service_transaction.10m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.340Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_summary.10m@template] for index patterns [metrics-apm.service_summary.10m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.353Z", "log.level": "INFO", "message":"adding index template [metrics-apm.transaction.60m@template] for index patterns [metrics-apm.transaction.60m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.399Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_transaction.1m@template] for index patterns [metrics-apm.service_transaction.1m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.484Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_destination.10m@template] for index patterns [metrics-apm.service_destination.10m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.521Z", "log.level": "INFO", "message":"adding index template [synthetics] for index patterns [synthetics-*-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.532Z", "log.level": "INFO", "message":"adding index template [.kibana-reporting] for index patterns [.kibana-reporting*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}

es01-1   | {"@timestamp":"2024-10-25T11:51:04.542Z", "log.level": "INFO", "message":"adding index template [.deprecation-indexing-template] for index patterns [.logs-deprecation.*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.553Z", "log.level": "INFO", "message":"adding index template [metrics-apm.transaction.10m@template] for index patterns [metrics-apm.transaction.10m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.563Z", "log.level": "INFO", "message":"adding index template [metrics-apm.internal@template] for index patterns [metrics-apm.internal-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.599Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_destination.1m@template] for index patterns [metrics-apm.service_destination.1m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.619Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_summary.60m@template] for index patterns [metrics-apm.service_summary.60m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.633Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_summary.1m@template] for index patterns [metrics-apm.service_summary.1m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.680Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_destination.60m@template] for index patterns [metrics-apm.service_destination.60m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.699Z", "log.level": "INFO", "message":"adding index template [metrics-apm.service_transaction.60m@template] for index patterns [metrics-apm.service_transaction.60m-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.772Z", "log.level": "INFO", "message":"adding index template [logs-apm.app@template] for index patterns [logs-apm.app.*-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.869Z", "log.level": "INFO", "message":"adding index template [traces-apm@template] for index patterns [traces-apm-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.970Z", "log.level": "INFO", "message":"adding index template [traces-apm.sampled@template] for index patterns [traces-apm.sampled-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:04.998Z", "log.level": "INFO", "message":"adding index template [metrics-apm.app@template] for index patterns [metrics-apm.app.*-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:05.287Z", "log.level": "INFO", "message":"adding index lifecycle policy [.monitoring-8-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:05.915Z", "log.level": "INFO", "message":"adding index lifecycle policy [ml-size-based-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:06.119Z", "log.level": "INFO", "message":"adding index lifecycle policy [logs]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:06.295Z", "log.level": "INFO", "message":"security index does not exist, creating [.security-7] with alias [.security]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][transport_worker][T#3]","log.logger":"org.elasticsearch.xpack.security.support.SecurityIndexManager","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:07.224Z", "log.level": "INFO", "message":"[.security-7] creating index, cause [api], templates [], shards [1]/[1]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataCreateIndexService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:07.331Z", "log.level": "INFO", "message":"updating number_of_replicas to [0] for indices [.security-7]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.routing.allocation.AllocationService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:08.738Z", "log.level": "INFO", "message":"adding index lifecycle policy [synthetics]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:08.891Z", "log.level": "INFO", "message":"adding index lifecycle policy [metrics]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.010Z", "log.level": "INFO", "message":"adding index lifecycle policy [365-days-default]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.177Z", "log.level": "INFO", "message":"adding index lifecycle policy [180-days-default]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.333Z", "log.level": "INFO", "message":"adding index lifecycle policy [30-days-default]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.509Z", "log.level": "INFO", "message":"adding index lifecycle policy [90-days-default]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.571Z", "log.level": "INFO", "message":"adding index lifecycle policy [7-days-default]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.644Z", "log.level": "INFO", "message":"adding index lifecycle policy [logs@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.786Z", "log.level": "INFO", "message":"adding index lifecycle policy [synthetics@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.866Z", "log.level": "INFO", "message":"adding index lifecycle policy [365-days@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:09.967Z", "log.level": "INFO", "message":"adding index lifecycle policy [7-days@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:10.118Z", "log.level": "INFO", "message":"adding index lifecycle policy [90-days@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:10.352Z", "log.level": "INFO",  "current.health":"GREEN","message":"Cluster health status changed from [YELLOW] to [GREEN] (reason: [shards started [[.security-7][0]]]).","previous.health":"YELLOW","reason":"shards started [[.security-7][0]]" , "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.routing.allocation.AllocationService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:10.602Z", "log.level": "INFO", "message":"adding index lifecycle policy [metrics@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:10.887Z", "log.level": "INFO", "message":"adding index lifecycle policy [slm-history-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:10.989Z", "log.level": "INFO", "message":"adding index lifecycle policy [30-days@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.061Z", "log.level": "INFO", "message":"adding index lifecycle policy [180-days@lifecycle]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.143Z", "log.level": "INFO", "message":"adding index lifecycle policy [watch-history-ilm-policy-16]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.282Z", "log.level": "INFO", "message":"adding index lifecycle policy [ilm-history-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.574Z", "log.level": "INFO", "message":"adding ingest pipeline behavioral_analytics-events-final_pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.576Z", "log.level": "INFO", "message":"adding ingest pipeline logs-default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.576Z", "log.level": "INFO", "message":"adding ingest pipeline ent-search-generic-ingestion", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.576Z", "log.level": "INFO", "message":"adding ingest pipeline logs@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.576Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm.service_summary@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.576Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm.service_transaction@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.576Z", "log.level": "INFO", "message":"adding ingest pipeline logs-apm.app@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline logs-apm.error@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline traces-apm@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline apm@pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm.service_destination@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm.app@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline traces-apm.rum@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm.transaction@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline search-default-ingestion", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.577Z", "log.level": "INFO", "message":"adding ingest pipeline logs@json-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.578Z", "log.level": "INFO", "message":"adding ingest pipeline logs@json-message", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.587Z", "log.level": "INFO", "message":"adding component template [behavioral_analytics-events-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.591Z", "log.level": "INFO", "message":"adding component template [logs@settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.728Z", "log.level": "INFO", "message":"adding component template [logs-settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.813Z", "log.level": "INFO", "message":"adding index template [logs] for index patterns [logs-*-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.824Z", "log.level": "INFO", "message":"adding index template [behavioral_analytics-events-default] for index patterns [behavioral_analytics-events-*]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.cluster.metadata.MetadataIndexTemplateService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.866Z", "log.level": "INFO", "message":"adding index lifecycle policy [.fleet-actions-results-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:11.901Z", "log.level": "INFO", "message":"adding index lifecycle policy [.deprecation-indexing-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:12.004Z", "log.level": "INFO", "message":"adding index lifecycle policy [.fleet-file-tohost-data-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:12.100Z", "log.level": "INFO", "message":"adding index lifecycle policy [.fleet-file-fromhost-data-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:12.155Z", "log.level": "INFO", "message":"adding index lifecycle policy [.fleet-file-fromhost-meta-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:12.228Z", "log.level": "INFO", "message":"adding index lifecycle policy [.fleet-file-tohost-meta-ilm-policy]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.ilm.action.TransportPutLifecycleAction","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:12.732Z", "log.level": "INFO", "message":"[gc][21] overhead, spent [350ms] collecting in the last [1.2s]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][scheduler][T#1]","log.logger":"org.elasticsearch.monitor.jvm.JvmGcMonitorService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:13.149Z", "log.level": "INFO", "message":"Node [{es01}{Eu_oMEkoTCWPXYjVIGPnBA}] is selected as the current health node.", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][management][T#1]","log.logger":"org.elasticsearch.health.node.selection.HealthNodeTaskExecutor","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:13.710Z", "log.level": "INFO", "message":"license mode is [basic], currently licensed security realms are [reserved/reserved,file/default_file,native/default_native]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.security.authc.Realms","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:13.872Z", "log.level": "INFO", "message":"license [fcc48d28-409e-45b8-bdfb-7a7e3d13837b] mode [basic] - valid", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][clusterApplierService#updateTask][T#1]","log.logger":"org.elasticsearch.license.ClusterStateLicenseService","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:14.159Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm.internal@default-pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:14.160Z", "log.level": "INFO", "message":"adding ingest pipeline traces-apm@pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:14.160Z", "log.level": "INFO", "message":"adding ingest pipeline metrics-apm@pipeline", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.core.template.IndexTemplateRegistry","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
es01-1   | {"@timestamp":"2024-10-25T11:51:14.330Z", "log.level": "INFO", "message":"Security migration not needed. Setting current version to: [1]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch[es01][masterService#updateTask][T#1]","log.logger":"org.elasticsearch.xpack.security.support.SecurityMigrationExecutor","elasticsearch.cluster.uuid":"IljAlIv9R7anlriT9SWvhg","elasticsearch.node.id":"Eu_oMEkoTCWPXYjVIGPnBA","elasticsearch.node.name":"es01","elasticsearch.cluster.name":"docker-cluster"}
[billing@ogn-prebilling test]$ docker ps
CONTAINER ID   IMAGE                                                  COMMAND                  CREATED         STATUS                   PORTS                                                                                  NAMES
48a5bb5c05ad   docker.elastic.co/elasticsearch/elasticsearch:8.15.3   "/bin/tini -- /usr/l…"   5 minutes ago   Up 5 minutes (healthy)   9300/tcp, 0.0.0.0:9201->9200/tcp, :::9201->9200/tcp                                    test-es01-1
a26ccbbbdf9b   docker.elastic.co/logstash/logstash:8.13.2             "/usr/local/bin/dock…"   3 days ago      Up 3 days                0.0.0.0:5044->5044/tcp, :::5044->5044/tcp, 9600/tcp                                    logstash
3e50a89bb06f   docker.elastic.co/kibana/kibana:8.13.2                 "/bin/tini -- /usr/l…"   3 days ago      Up 3 days                0.0.0.0:5601->5601/tcp, :::5601->5601/tcp                                              kibana
72bba99a3aaf   docker.elastic.co/elasticsearch/elasticsearch:8.13.2   "/bin/tini -- /usr/l…"   3 days ago      Up 3 days (healthy)      0.0.0.0:9200->9200/tcp, :::9200->9200/tcp, 0.0.0.0:9300->9300/tcp, :::9300->9300/tcp   elasticsearch
fee3e7e5c5f4   docker.elastic.co/elasticsearch/elasticsearch:8.13.2   "/bin/tini -- /usr/l…"   3 days ago      Up 3 days (healthy)      9200/tcp, 9300/tcp                                                                     8130-setup-1
[billing@ogn-prebilling test]$

Bon

A executer

docker stop a26ccbbbdf9b 3e50a89bb06f 72bba99a3aaf fee3e7e5c5f4
docker rm a26ccbbbdf9b 3e50a89bb06f 72bba99a3aaf fee3e7e5c5f4
docker compose down -v

Puis

docker ps

Si plus rien ne tourne, faire:

docker compose up

Mais c'est docker déjà un production comporte des données importants si le rm va pas supprimer les données ?

ici, les erreurs que vous rencontrez indiquent deux principaux problèmes avec l’installation Elasticsearch :

  • le système n'a pas assez de mémoire disponible pour allouer l’espace nécessaire à Elasticsearch
  • les fichiers de clé privée es02.key et es03.key n'existent pas dans les répertoires de certificats des nœuds es02 et es03

merci pour la reponse mais on elever des nœuds es02 et es03

version: "2.2"

services:
  setup:
    image: docker.elastic.co/elasticsearch/elasticsearch:${STACK_VERSION}
    volumes:
      - certs:/usr/share/elasticsearch/config/certs
    user: "0"
    command: >
      bash -c '
        if [ x${ELASTIC_PASSWORD} == x ]; then
          echo "Set the ELASTIC_PASSWORD environment variable in the .env file";
          exit 1;
        elif [ x${KIBANA_PASSWORD} == x ]; then
          echo "Set the KIBANA_PASSWORD environment variable in the .env file";
          exit 1;
        fi;
        if [ ! -f config/certs/ca.zip ]; then
          echo "Creating CA";
          bin/elasticsearch-certutil ca --silent --pem -out config/certs/ca.zip;
          unzip config/certs/ca.zip -d config/certs;
        fi;
        if [ ! -f config/certs/certs.zip ]; then
          echo "Creating certs";
          echo -ne \
          "instances:\n"\
          "  - name: es01\n"\
          "    dns:\n"\
          "      - es01\n"\
          "      - localhost\n"\
          "    ip:\n"\
          "      - 127.0.0.1\n"\
          > config/certs/instances.yml;
          bin/elasticsearch-certutil cert --silent --pem -out config/certs/certs.zip --in config/certs/instances.yml --ca-cert config/certs/ca/ca.crt --ca-key config/certs/ca/ca.key;
          unzip config/certs/certs.zip -d config/certs;
        fi;
        echo "Setting file permissions"
        chown -R root:root config/certs;
        find . -type d -exec chmod 750 \{\} \;;
        find . -type f -exec chmod 640 \{\} \;;
        echo "Waiting for Elasticsearch availability";
        until curl -s --cacert config/certs/ca/ca.crt https://es01:9200 | grep -q "missing authentication credentials"; do sleep 30; done;
        echo "Setting kibana_system password";
        until curl -s -X POST --cacert config/certs/ca/ca.crt -u "elastic:${ELASTIC_PASSWORD}" -H "Content-Type: application/json" https://es01:9200/_security/user/kibana_system/_password -d "{\"password\":\"${KIBANA_PASSWORD}\"}" | grep -q "^{}"; do sleep 10; done;
        echo "All done!";
      '
    healthcheck:
      test: ["CMD-SHELL", "[ -f config/certs/es01/es01.crt ]"]
      interval: 1s
      timeout: 5s
      retries: 120

  es01:
    depends_on:
      setup:
        condition: service_healthy
    image: docker.elastic.co/elasticsearch/elasticsearch:${STACK_VERSION}
    volumes:
      - certs:/usr/share/elasticsearch/config/certs
      - esdata01:/usr/share/elasticsearch/data
    ports:
      - ${ES_PORT}:9200
    environment:
      - node.name=es01
      - cluster.name=${CLUSTER_NAME}
      - cluster.initial_master_nodes=es01
      - ELASTIC_PASSWORD=${ELASTIC_PASSWORD}
      - bootstrap.memory_lock=true
      - xpack.security.enabled=true
      - xpack.security.http.ssl.enabled=true
      - xpack.security.http.ssl.key=certs/es01/es01.key
      - xpack.security.http.ssl.certificate=certs/es01/es01.crt
      - xpack.security.http.ssl.certificate_authorities=certs/ca/ca.crt
      - xpack.security.transport.ssl.enabled=true
      - xpack.security.transport.ssl.key=certs/es01/es01.key
      - xpack.security.transport.ssl.certificate=certs/es01/es01.crt
      - xpack.security.transport.ssl.certificate_authorities=certs/ca/ca.crt
      - xpack.security.transport.ssl.verification_mode=certificate
      - xpack.license.self_generated.type=${LICENSE}
    mem_limit: ${MEM_LIMIT}
    ulimits:
      memlock:
        soft: -1
        hard: -1
    healthcheck:
      test:
        [
          "CMD-SHELL",
          "curl -s --cacert config/certs/ca/ca.crt https://localhost:9200 | grep -q 'missing authentication credentials'",
        ]
      interval: 10s
      timeout: 10s
      retries: 120

  kibana:
    depends_on:
      es01:
        condition: service_healthy
    image: docker.elastic.co/kibana/kibana:${STACK_VERSION}
    volumes:
      - certs:/usr/share/kibana/config/certs
      - kibanadata:/usr/share/kibana/data
    ports:
      - ${KIBANA_PORT}:5601
    environment:
      - SERVERNAME=kibana
      - ELASTICSEARCH_HOSTS=https://es01:9200
      - ELASTICSEARCH_USERNAME=kibana_system
      - ELASTICSEARCH_PASSWORD=${KIBANA_PASSWORD}
      - ELASTICSEARCH_SSL_CERTIFICATEAUTHORITIES=config/certs/ca/ca.crt
    #  - I18N_LOCALE=fr-FR
    mem_limit: ${MEM_LIMIT}
    healthcheck:
      test:
        [
          "CMD-SHELL",
          "curl -s -I http://localhost:5601 | grep -q 'HTTP/1.1 302 Found'",
        ]
      interval: 10s
      timeout: 10s
      retries: 120

volumes:
  certs:
    driver: local
  esdata01:
    driver: local
  kibanadata:
    driver: local

WHAT?

Tu fais des "tests" en PRODUCTION ?

1 Like

C'est un projet que je dois presenter mais sa fais un mois j'injecte des données a l'interieur de ce ELK . il me manque que l'authentification pour pouvoir la presenter parce je me dis sans donner la l'interieur je pourrai pas la presenter vraiment .