You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
duplicated the issue on a fresh installation of the latest version
information about your system and how you installed Security Onion
Oracle Linux Server release 9.3 Linux version 5.15.0-101.103.2.1.el9uek.x86_64 (mockbuild@host-100-100-224-7) (gcc (GCC) 11.3.1 20220421 (Red Hat 11.3.1-2.1.0.2), GNU ld version 2.35.2-24.0.1.el9) #2 SMP Tue May 2 01:10:45 PDT 2023
Security Onion Version:2.4.30
relevant log files
the import is trying to use logs-system.security-1.34.0 based on the elastic-agent policy when Elastic and Logstash are configured with logs-system.security-1.43.0
This applies to the following pipelines, based on the preset agent policy that was not updated with the 2.4 release.
information about your system and how you installed Security Onion
Oracle Linux Server release 9.3
Linux version 5.15.0-101.103.2.1.el9uek.x86_64 (mockbuild@host-100-100-224-7) (gcc (GCC) 11.3.1 20220421 (Red Hat 11.3.1-2.1.0.2), GNU ld version 2.35.2-24.0.1.el9) #2 SMP Tue May 2 01:10:45 PDT 2023
Security Onion Version:
2.4.30
relevant log files
the import is trying to use
logs-system.security-1.34.0
based on the elastic-agent policy when Elastic and Logstash are configured withlogs-system.security-1.43.0
This applies to the following pipelines, based on the preset agent policy that was not updated with the 2.4 release.
logs-system.system-1.34.0
->logs-system.system-1.43.0
logs-system.security-1.34.0
->logs-system.security-1.43.0
logs-system.application-1.34.0
->logs-system.application-1.43.0
logs-windows.sysmon_operational-1.24.0
->logs-windows.sysmon_operational-1.38.0
logs-windows.powershell_operational-1.24.0
->logs-windows.powershell_operational-1.38.0
Affected file:
salt/elasticfleet/files/integrations/grid-nodes_general/import-evtx-logs.json
Logstash ingest pipeline versions:
Logstash error when attempting to import
evtx
data:include reproduction steps
The text was updated successfully, but these errors were encountered: