# Issues while deploying Elastic Search from Azure Portal

**URL:** <https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700>\
**Category:** Elasticsearch\
**Created:** [May 1, 2020, 10:57am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700 "2020-05-01T10:57:42Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![Sushma](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sushma/32/45707_2.png) [@Sushma](https://discuss.elastic.co/u/Sushma)\
**Post date:** [May 1, 2020, 10:57am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/1 "2020-05-01T10:57:42Z")

</div>

Hi Team,

`I am trying to deploy Elastic Search(Self- Managed) from Azure portal.`

`However the issue I am facing is not able to select the virtual network as seen below:`

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/f/8/f8c74f008d3057315fff587e936ddfc8fc9b1d71.png)

`The virtual network(SUB_VNET_29_0) initially had one subnet with /26 address space.`

`However after going through Elastic Search documents, came to know that constraint to `

`deploy Elastic Search from Marketplace UI is to have /25 address space. Hence we have added a`

`new subnet to the same virtual network(SUB_VNET_29_0) with /25 address space. But still the `

`Elastic Search deployment from Azure UI is not listing the virtual network though the newly added `

`subnet has 128 IP address space.`

`Any ideas on this please?`

Thanks & Regards,  
Sushma.

---

<div class="post-metadata">

**Author:** ![Emanuil](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/emanuil/32/36783_2.png) [@Emanuil](https://discuss.elastic.co/u/Emanuil)\
**Post date:** [May 1, 2020, 2:04pm UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/2 "2020-05-01T14:04:40Z")

</div>

You _may_ get an answer here from another Azure user but this really is an Azure question - Microsoft's support service and forums may get you a faster answer.

---

<div class="post-metadata">

**Author:** ![forloop](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/forloop/32/9021_2.png) [@forloop](https://discuss.elastic.co/u/forloop)\
**Post date:** [May 2, 2020, 11:04am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/3 "2020-05-02T11:04:39Z")

</div>

As @Emanuil says, this does _sound_ like an issue in the portal UI with the [Microsoft.Network.VirtualNetworkCombo UI element](https://docs.microsoft.com/en-us/azure/azure-resource-manager/managed-applications/microsoft-network-virtualnetworkcombo). The rules for the network for the Elasticsearch solution template are

> <https://github.com/elastic/azure-marketplace/blob/dd47b8e72b93f204e00701f666a80096b1771c41/src/createUiDefinition.json#L124-L168>

In addition to having a subnet min address prefix size of `/25`, there must be a min available number of addresses of `3` and addresses must be contiguous.

The min address prefix size of `/25` is just an Azure portal UI constraint and is not a constraint of the underlying Azure Resource Manager (ARM) template that the Marketplace offering calls behind the scenes. If that's an option in the meantime, take a look at the [getting started docs for deploying the ARM template using Azure CLI 2.0 or Azure PowerShell](https://www.elastic.co/guide/en/elastic-stack-deploy/current/azure-arm-template-getting-started.html).

---

<div class="post-metadata">

**Author:** ![Sushma](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sushma/32/45707_2.png) [@Sushma](https://discuss.elastic.co/u/Sushma)\
**Post date:** [May 5, 2020, 11:47am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/4 "2020-05-05T11:47:38Z")

</div>

Hi Russ,

Thanks for the detailed explanation. 🙂

In my case though the newly added subnet has(/25) address space, the virtual network had (/26)  
address space, meaning it is not satisfying the network constraint of Elastic Search.  
Will add a new virtual network of (/24) address space and subnet of (/25) address space and see if it works from the UI.

Coming to the deployment of Elastic Search using the ARM template.

Followed the link you have provided and however not able to deploy it for the latest version(7.6.2). Throws error as: " Unable to download the deployment content from the..."  
Also I noticed that we are not able to open the 7.6.2 json from browser as well.

Next i tried deploying 6.6.1 by passing the existing network parameters , not sure why it is not picking up the parameters I have passed. The code is still trying deploying with new network.

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/5/d/5d07058e1fe56154f36e16e5cb06ec9b38f94c55.png)

Kindly let me know if the network parameters syntax is correct or not.

Thanks & Regards,  
Sushma.

---

<div class="post-metadata">

**Author:** ![forloop](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/forloop/32/9021_2.png) [@forloop](https://discuss.elastic.co/u/forloop)\
**Post date:** [May 6, 2020, 4:06am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/5 "2020-05-06T04:06:02Z")

</div>

Please don't post images of text as they are hard to read, may not display correctly for everyone, and are not searchable.

Instead, paste the text and format it with `</>` icon or pairs of triple backticks (```), and check the preview window to make sure it's properly formatted before posting it.

> [@Sushma](#):
>
> In my case though the newly added subnet has(/25) address space, the virtual network had (/26)  
> address space,

This would mean that the subnet address space is larger than the virtual network address space, which I hope Azure would not allow you to do. If you create a vnet with at least `/24` and a subnet with at least `/25`. it'll work.

> [@Sushma](#):
>
> Followed the link you have provided and however not able to deploy it for the latest version(7.6.2). Throws error as: " Unable to download the deployment content from the..."

What's the exact error message? Can you provide the steps that you went through?

> [@Sushma](#):
>
> Also I noticed that we are not able to open the 7.6.2 json from browser as well.

I don't understand what you mean. Can you clarify please?

> [@Sushma](#):
>
> Next i tried deploying 6.6.1 by passing the existing network parameters , not sure why it is not picking up the parameters I have passed

6.6.1 is not a supported version with the template. If deploying from the `master` branch, the versions supported are:

> <https://github.com/elastic/azure-marketplace/blob/476fcf736f2efd3490bcb1b4d10a541981b4f112/src/mainTemplate.json#L29-L49>

> [@Sushma](#):
>
> The code is still trying deploying with new network.

How are you asserting this?

---

<div class="post-metadata">

**Author:** ![Sushma](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sushma/32/45707_2.png) [@Sushma](https://discuss.elastic.co/u/Sushma)\
**Post date:** [May 6, 2020, 7:13pm UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/6 "2020-05-06T19:13:29Z")

</div>

Hi Russ,

Thanks a lot for your time in going through this and replying back. Appreciate your help. 🙂

As you have said , after adding a new virtual network of (/24) address space and a new subnet to it with (/25) address space, I am able to select the network while deploying the ELK in Azure. The new network we have added is 153.78.74.0/25. and as per our policy we dont allow 10 series IP's. However while going through the sequence of steps, and selecting the Logstash and Kibana to be installed, at the end it is failing to create because of the policy violation errors, means it is not picking up the network we have allocated.

Any ideas on this?

Thanks & Regards,  
Sushma.

---

<div class="post-metadata">

**Author:** ![Sushma](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sushma/32/45707_2.png) [@Sushma](https://discuss.elastic.co/u/Sushma)\
**Post date:** [May 6, 2020, 7:48pm UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/7 "2020-05-06T19:48:33Z")

</div>

Does the installation of Kibana and Logstash in Azure need the public IP's?

---

<div class="post-metadata">

**Author:** ![forloop](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/forloop/32/9021_2.png) [@forloop](https://discuss.elastic.co/u/forloop)\
**Post date:** [May 8, 2020, 10:03am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/8 "2020-05-08T10:03:01Z")

</div>

> [@Sushma](#):
>
> as per our policy we dont allow 10 series IP's. However while going through the sequence of steps, and selecting the Logstash and Kibana to be installed, at the end it is failing to create because of the policy violation errors, means it is not picking up the network we have allocated.

The template dynamically assigns IP addresses, so is sounds to me like the Azure infrastructure does not take this policy into account when dynamically assigning addresses. Sounds like you may need to exclude the deployment from the policy.

> [@Sushma](#):
>
> Does the installation of Kibana and Logstash in Azure need the public IP's?

Kibana is configured with a public IP address, Logstash is not. This is not configurable in the template. Deploying a standard SKU loadbalancer also assigns public IP resources to each virtual machine, which is needed in this scenario in order to install the Elastic Stack.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 5, 2020, 10:03am UTC](https://discuss.elastic.co/t/issues-while-deploying-elastic-search-from-azure-portal/230700/9 "2020-06-05T10:03:01Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
