After start ElasticSearch, Kibana and PacketBeat, I couldn"t receive packets from 3306 and 5432 ports, the same I can able to get packets from 8099(Tomcat)
For mysql I would also look out for flows being reported on this port. The mysql analyzer does not support all MYSQL transaction types. If flows are present, but mysql transactions are missing, it's likely due to unsupported transaction types. The analyzer will also print a message when debug is enabled.
The same I tried in PostgreSQL also, can you tell some of supported transaction by packetbeat , I have tried with insert data and retriew data from MySQL/PostgreSQL
simple SELECT and INSERT statements should work fine with MySQL and PostgreSQL. Enabling/using the flows feature gives you an idea if any packets have been processed for these ports.
Which IPs do your services have? Which IPs do your network interfaces have?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.