The situation is similar to that of the link:
I have installed two Elastic Agents, one of them as a Fleet server. Their status is Healthy. The fleet server policy is configured on the Fleet Server, and the Windows and Endpoint policy is configured on the other. Events don't come from both, not even metric events.
I set up encryption on the fleet server with the
--insecure key, created keys and certificates with the same CA that I encrypted Elasticsearch with. I don't know, it may be related to this...
On both agents, when entering the
"elastic-agent status" command, the following message is displayed:
"Error: failed to communicate with Elastic Agent daemon: rpc error: code = Unavailable desc = connection error: desc = "transport: Error while dialing dial unix /var/lib/elastic-agent/data/tmp/elastic-agent-control.sock: connect: permission denied""
Logs on the
sudo journalctl --unit elastic-agent > 1.txt will be attached below.