Graylog 5 clean install connection refused

I already reviewed topics like Web Interface Connection Refused and similar with no luck.

1. Describe your incident:
Whe accessing graylog web interface at http_bind_address and port stated there (taken from server.conf) i get connection refused error in browser
i do have network connectivity with that host

2. Describe your environment:

  • OS Information: Ubuntu 22.04.2 LTS VM

  • Package Version: Graloy 5? how to check this?

  • Service logs, configurations, and environment variables:
    /etc/graylog/server/server.conf i have set all basic settings seem needed for this

3. What steps have you already taken to try and solve the problem?
reviewed other topics but they were usually about older versions

4. How can the community help?
Provide step by step troubleshooting to run graylog properly and access the web interface succesfully. Im quite newbie so please be straighforward and assume no experience.

Can you share your server.conf file (you can remove the password and secret hashes).

Also can you share the last 100 lines or so of your server.log? It sounds like graylog isn’t starting up successfully.

sudo tail -100 /var/log/graylog-server/server.log
2023-05-15T20:54:47.157Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:54:47.157Z INFO [VersionProbe] Elasticsearch is not available. Retry #4260
2023-05-15T20:54:52.157Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:54:52.157Z INFO [VersionProbe] Elasticsearch is not available. Retry #4261
2023-05-15T20:54:57.158Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:54:57.158Z INFO [VersionProbe] Elasticsearch is not available. Retry #4262
2023-05-15T20:55:02.159Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:02.159Z INFO [VersionProbe] Elasticsearch is not available. Retry #4263
2023-05-15T20:55:07.160Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:07.160Z INFO [VersionProbe] Elasticsearch is not available. Retry #4264
2023-05-15T20:55:12.160Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:12.160Z INFO [VersionProbe] Elasticsearch is not available. Retry #4265
2023-05-15T20:55:17.161Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:17.161Z INFO [VersionProbe] Elasticsearch is not available. Retry #4266
2023-05-15T20:55:22.162Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:22.162Z INFO [VersionProbe] Elasticsearch is not available. Retry #4267
2023-05-15T20:55:27.163Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:27.163Z INFO [VersionProbe] Elasticsearch is not available. Retry #4268
2023-05-15T20:55:32.163Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:32.163Z INFO [VersionProbe] Elasticsearch is not available. Retry #4269
2023-05-15T20:55:37.164Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:37.164Z INFO [VersionProbe] Elasticsearch is not available. Retry #4270
2023-05-15T20:55:42.165Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:42.165Z INFO [VersionProbe] Elasticsearch is not available. Retry #4271
2023-05-15T20:55:47.166Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:47.166Z INFO [VersionProbe] Elasticsearch is not available. Retry #4272
2023-05-15T20:55:52.166Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:52.167Z INFO [VersionProbe] Elasticsearch is not available. Retry #4273
2023-05-15T20:55:57.168Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:55:57.168Z INFO [VersionProbe] Elasticsearch is not available. Retry #4274
2023-05-15T20:56:02.169Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:02.169Z INFO [VersionProbe] Elasticsearch is not available. Retry #4275
2023-05-15T20:56:07.170Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:07.170Z INFO [VersionProbe] Elasticsearch is not available. Retry #4276
2023-05-15T20:56:12.171Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:12.171Z INFO [VersionProbe] Elasticsearch is not available. Retry #4277
2023-05-15T20:56:17.171Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:17.171Z INFO [VersionProbe] Elasticsearch is not available. Retry #4278
2023-05-15T20:56:22.172Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:22.172Z INFO [VersionProbe] Elasticsearch is not available. Retry #4279
2023-05-15T20:56:27.173Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:27.173Z INFO [VersionProbe] Elasticsearch is not available. Retry #4280
2023-05-15T20:56:32.174Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:32.174Z INFO [VersionProbe] Elasticsearch is not available. Retry #4281
2023-05-15T20:56:37.175Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:37.175Z INFO [VersionProbe] Elasticsearch is not available. Retry #4282
2023-05-15T20:56:42.175Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:42.175Z INFO [VersionProbe] Elasticsearch is not available. Retry #4283
2023-05-15T20:56:47.176Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:47.176Z INFO [VersionProbe] Elasticsearch is not available. Retry #4284
2023-05-15T20:56:52.177Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:52.177Z INFO [VersionProbe] Elasticsearch is not available. Retry #4285
2023-05-15T20:56:57.178Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:56:57.178Z INFO [VersionProbe] Elasticsearch is not available. Retry #4286
2023-05-15T20:57:02.179Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:02.179Z INFO [VersionProbe] Elasticsearch is not available. Retry #4287
2023-05-15T20:57:07.179Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:07.179Z INFO [VersionProbe] Elasticsearch is not available. Retry #4288
2023-05-15T20:57:12.180Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:12.180Z INFO [VersionProbe] Elasticsearch is not available. Retry #4289
2023-05-15T20:57:17.181Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:17.181Z INFO [VersionProbe] Elasticsearch is not available. Retry #4290
2023-05-15T20:57:22.182Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:22.182Z INFO [VersionProbe] Elasticsearch is not available. Retry #4291
2023-05-15T20:57:27.183Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:27.183Z INFO [VersionProbe] Elasticsearch is not available. Retry #4292
2023-05-15T20:57:32.183Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:32.183Z INFO [VersionProbe] Elasticsearch is not available. Retry #4293
2023-05-15T20:57:37.184Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:37.184Z INFO [VersionProbe] Elasticsearch is not available. Retry #4294
2023-05-15T20:57:42.185Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:42.185Z INFO [VersionProbe] Elasticsearch is not available. Retry #4295
2023-05-15T20:57:47.186Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:47.186Z INFO [VersionProbe] Elasticsearch is not available. Retry #4296
2023-05-15T20:57:52.187Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:52.187Z INFO [VersionProbe] Elasticsearch is not available. Retry #4297
2023-05-15T20:57:57.187Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:57:57.187Z INFO [VersionProbe] Elasticsearch is not available. Retry #4298
2023-05-15T20:58:02.188Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:02.188Z INFO [VersionProbe] Elasticsearch is not available. Retry #4299
2023-05-15T20:58:07.189Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:07.189Z INFO [VersionProbe] Elasticsearch is not available. Retry #4300
2023-05-15T20:58:12.190Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:12.190Z INFO [VersionProbe] Elasticsearch is not available. Retry #4301
2023-05-15T20:58:17.190Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:17.190Z INFO [VersionProbe] Elasticsearch is not available. Retry #4302
2023-05-15T20:58:22.191Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:22.191Z INFO [VersionProbe] Elasticsearch is not available. Retry #4303
2023-05-15T20:58:27.192Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:27.192Z INFO [VersionProbe] Elasticsearch is not available. Retry #4304
2023-05-15T20:58:32.193Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:32.193Z INFO [VersionProbe] Elasticsearch is not available. Retry #4305
2023-05-15T20:58:37.194Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:37.194Z INFO [VersionProbe] Elasticsearch is not available. Retry #4306
2023-05-15T20:58:42.194Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:42.194Z INFO [VersionProbe] Elasticsearch is not available. Retry #4307
2023-05-15T20:58:47.195Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:47.195Z INFO [VersionProbe] Elasticsearch is not available. Retry #4308
2023-05-15T20:58:52.196Z ERROR [VersionProbe] Unable to retrieve version from Elasticsearch node: Failed to connect to /127.0.0.1:9200. - Connection refused.
2023-05-15T20:58:52.196Z INFO [VersionProbe] Elasticsearch is not available. Retry #4309

couldnt paste cause of limit and cannot attach txt unfortunately:
"
Sorry, the file you are trying to upload is not authorized (authorized extensions: jpg, jpeg, png, gif, ico, mp4, pdf, mp3).
"
how do i attach server.conf then?

Something like https://pastebin.com/ may work.

It looks like your elaticsearch/opensearch cluster is not available.

Is it installed on the same server as graylog? Can you verify the service is running?

what do you get when you run curl localhost:9200 on the server where elasticsearch/opensearch is installed?

Is elasticsearch or opensearch installed on the same server as graylog?
Please be reassured that the opensearch or elasticsearch service is running.
Can you send us a copy of the server.conf file?

“Is elasticsearch or opensearch installed on the same server as graylog?”
Yes, it is.
" Please be reassured that the opensearch or elasticsearch service is running."
How to ensure that?
" Can you send us a copy of the server.conf file?"
it seems that limitation on this forum won’t let me, how should i do that to put here essential information?

To check the service run this command:
systemctl status opensearch
systemctl status elasticsearch

check server.conf with this commmand:
grep -E -ve “^#|^$” /etc/graylog/server/server.conf | grep elasticseach

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.