6版本ga.3 日志分析web界面能查到索引无内容

Viewed 84

es 7.9.3 重新部署了
测试curl命令返回
health status index uuid pri rep docs.count docs.deleted store.size pri.store.size
green open .security-7 bpbFd9UISw602ZOyMiZdGg 1 0 7 0 25.5kb 25.5kb
yellow open test-logs Ce9DfHZ6TR2tCCERzLJe6A 1 1 13 0 23.8kb 23.8kb

测试索引内容:
curl -u elastic:123456 http://xxx:9200/test-logs/_search?pretty
"max_score" : 1.0,
"hits" : [
{
"_index" : "test-logs",
"_type" : "_doc",
"_id" : "fb5vbocBMdMnJK1GRydD",
"_score" : 1.0,
"_source" : {
"action" : "User Registration",
"path" : "/data/test/logs/test1.logs",
"message" : [
"2023-04-08 10:30:25.123 [ERROR] [User Management Module] [User Registration] User name cannot be empty",
"User name cannot be empty"
],
"module" : "User Management Module",
"loglevel" : "ERROR",
"@version" : "1",
"@timestamp" : "2023-04-08T02:30:25.123Z",
"timestamp" : "2023-04-08 10:30:25.123",
"host" : "172.22.0.26"
}
},

web界面查询无显示
image.png

1 Answers

已解决问题忽略

说一下怎么解决的?

首先是我吧es默认的索引删除了 刚好对应是权限,重新删除索引和证书。
不显示问题是查询时间拉大就展示了