I have installed Elasticsearch app. I placed the host info and the configuration, however; nothing is showing up in the search.
Not sure how this app works. Any documentation? Any other way to connect to Elasticsearch?
Thanks!
There's a new version of the app now. Did you try it?
https://splunkbase.splunk.com/app/4175/
Regards.
Ive also installed the app, added the elasticsearch connection details but no data is being pulled back into the index ive set.
2021-04-08 14:30:31,055 DEBUG pid=19271 tid=MainThread file=base.py:log_request_success:259 | < {"succeeded":true,"num_freed":45}
I see requests are successful but I cant find any other log to suggest why data is not being indexed in splunk. Any advice on where i can look next?