# Logstash to Elasticsearch Bulk Request , SSL peer shut down incorrectly- Manticore::ClientProtocolException logstash

**URL:** <https://discuss.elastic.co/t/logstash-to-elasticsearch-bulk-request-ssl-peer-shut-down-incorrectly-manticore-clientprotocolexception-logstash/73558>\
**Category:** Logstash\
**Created:** [February 1, 2017, 5:30pm UTC](https://discuss.elastic.co/t/logstash-to-elasticsearch-bulk-request-ssl-peer-shut-down-incorrectly-manticore-clientprotocolexception-logstash/73558 "2017-02-01T17:30:21Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Bhavana](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bhavana/32/12221_2.png) [@Bhavana](https://discuss.elastic.co/u/Bhavana)\
**Post date:** [February 1, 2017, 5:30pm UTC](https://discuss.elastic.co/t/logstash-to-elasticsearch-bulk-request-ssl-peer-shut-down-incorrectly-manticore-clientprotocolexception-logstash/73558/1 "2017-02-01T17:30:21Z")

</div>

ES version - 2.3.5 , Logstash - 2.4

'Attempted to send bulk request to Elasticsearch, configured at ["[xxxx.com:9200](http://xxxx.com:9200)"] , An error occurred and it failed! Are you sure you can reach elasticsearch from this machine using the configuration provided ? "SSL peer shut down incorrectly", Manticore::ClientProtocolException logstash"'

My logstash Output section:

output  
{  
stdout { codec =\> rubydebug }  
stdout { codec =\> json }  
elasticsearch  
{  
user =\> "xxxx"  
password =\> "xxx"  
index =\> "wrike\_jan"  
document\_type =\> "data"  
hosts =\> ["[xxxx.com:9200](http://xxxx.com:9200)"]  
ssl =\> true  
ssl\_certificate\_verification =\> false  
truststore =\> "elasticsearch-2.3.5/config/truststore.jks"  
truststore\_password =\> "83dfcdddxxxxx"  
}  
}  
Logstash file is executed , but it is failing to send the data to ES. Installed search-guard security plugin to ElasticSearch

Could you please suggest, thank you.

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [February 2, 2017, 2:31am UTC](https://discuss.elastic.co/t/logstash-to-elasticsearch-bulk-request-ssl-peer-shut-down-incorrectly-manticore-clientprotocolexception-logstash/73558/2 "2017-02-02T02:31:49Z")

</div>

Sounds like a problem in relation to the searchguard plugin, it'd be worth asking the author about it 🙂

---

<div class="post-metadata">

**Author:** ![Bhavana](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bhavana/32/12221_2.png) [@Bhavana](https://discuss.elastic.co/u/Bhavana)\
**Post date:** [February 2, 2017, 2:52am UTC](https://discuss.elastic.co/t/logstash-to-elasticsearch-bulk-request-ssl-peer-shut-down-incorrectly-manticore-clientprotocolexception-logstash/73558/3 "2017-02-02T02:52:36Z")

</div>

In the above case, i am sending data to https but my ES is using http. So, be particular about http or https in the url .

The permissions allotted to the indices are also imp.

Later, upgrade of logstash version solved to send data to ES.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 2, 2017, 2:52am UTC](https://discuss.elastic.co/t/logstash-to-elasticsearch-bulk-request-ssl-peer-shut-down-incorrectly-manticore-clientprotocolexception-logstash/73558/4 "2017-03-02T02:52:51Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
