n9e:v:6.0.0-ga.5 夜莺接入elasticsearch日志,无法查询问题,点击查询,接口403

Viewed 84

n9e版本:v:6.0.0-ga.5
es集群版本:7.9.1 ,集群配置了ssl认证,用户名密码

描述: 查询页面能够获取到es的索引,点击对应的索引,点击查询,接口提示403,且弹窗报错,如下图

image.png
image.png

2 Answers

Payload 和 Response 都截个图?

playload: {"search_type":"query_then_fetch","ignore_unavailable":true,"index":".apm-agent-configuration"}
{"query":{"bool":{"filter":[{"range":{"@timestamp":{"gte":1682581850245,"lte":1682585450245,"format":"epoch_millis"}}}]}},"script_fields":{},"_source":false,"aggs":{"A":{"date_histogram":{"field":"@timestamp","min_doc_count":0,"extended_bounds":{"min":1682581850245,"max":1682585450245},"format":"epoch_millis","interval":"60s"},"aggs":{}}}}
response: 没有

我这边尝试搭建了es8的集群版本连接,可以查询,但又报错这个{"root_cause":[{"type":"x_content_parse_exception","reason":"[1:375] [date_histogram] unknown field [interval] did you mean [fixed_interval]?"}],"type":"x_content_parse_exception","reason":"[1:375] [date_histogram] unknown field [interval] did you mean [fixed_interval]?"}

image.png

好,我们看看