Hey there guys, first time trying to work with Elastalert.
I am attempting to use the elastalert-create-index command and I getting an odd response back.
I used the same host and port on all my other config files and everything seems to be working fine! yet when I try and run this command I am getting a connection aborted.
raise ConnectionError("N/A", str(e), e) elasticsearch.exceptions.ConnectionError: ConnectionError(('Connection aborted.', RemoteDisconnected('Remote end closed connection without response',))) caused by: ConnectionError(('Connection aborted.', RemoteDisconnected('Remote end closed connection without response',)))
This is my config file.. What's wrong here?
#This is the folder that contains the rule yaml files
#Any .yaml file will be loaded as a rule
#How often ElastAlert will query Elasticsearch
#The unit can be anything from weeks to seconds
#ElastAlert will buffer results from the most recent
#period of time, in case some log sources are not in real time
#The Elasticsearch hostname for metadata writeback
#Note that every rule can have its own Elasticsearch host
#The Elasticsearch port
#The AWS region to use. Set this when using AWS-managed elasticsearch
#The AWS profile to use. Use this if you are using an aws-cli profile.