I am unable to display received messages . My 3 nodes show green in ES. Could someone help with this issue ?
server.conf
s_master = true
node_id_file = /etc/graylog/server/node-id
password_secret =
root_username = sdpadmin
root_password_sha2 =
root_email = ""
root_timezone = America/New_York
plugin_dir = /usr/share/graylog-server/plugin
rest_listen_uri = https://gray1.philasd.net:9000/api/
rest_transport_uri = https://gray1.philasd.net:9000/api/
rest_enable_tls = true
rest_tls_cert_file = /usr/ssl/wildcard-all.crt
rest_tls_key_file = /usr/ssl/graylog-key-pkcs8.pem
rest_tls_key_password = xxxxxx
rest_thread_pool_size = 16
web_enable = true
web_listen_uri = https://gray1.philasd.net:9000/
web_enable_tls = true
web_tls_cert_file = /usr/ssl/wildcard-all.crt
web_tls_key_file = /usr/ssl/wildcard-key-pkcs8.pem
web_tls_key_password = 2ltmbsd3
web_thread_pool_size = 16
elasticsearch_config_file = /etc/elasticsearch/elasticsearch.yml
elasticsearch_hosts = http://198.16.5.11:9200, http://198.16.5.13:9200, http://198.16.5.14:9200
elasticsearch_discovery_enabled = true
rotation_strategy = count
elasticsearch_max_docs_per_index = 20000000
elasticsearch_max_time_per_index = 1d
rotation_strategy = count
elasticsearch_max_docs_per_index = 20000000
elasticsearch_max_size_per_index = 1073741824
elasticsearch_max_time_per_index = 1d
elasticsearch_disable_version_check = true
elasticsearch_max_number_of_indices = 20
elasticsearch_max_number_of_indices = 20
retention_strategy = delete
elasticsearch_shards = 5
elasticsearch_replicas = 2
elasticsearch_index_prefix = graylog
elasticsearch_template_name = graylog-internal
allow_leading_wildcard_searches = false
allow_highlighting = false
elasticsearch_cluster_name = graylog
elasticsearch_node_name_prefix = graylog-
elasticsearch_node_name = graylog1-mgmt.philasd.net
elasticsearch_discovery_zen_ping_multicast_enabled = false
discovery.zen.ping.unicast.hosts: ["graylog1-mgmt.philasd.net:9300", "graylog2-mgmt.philasd.net:9300", "graylog3-mgmt.philasd.net:9300" ]
elasticsearch_cluster_discovery_timeout = 30000
elasticsearch_network_host = 198.16.5.11
elasticsearch_network_bind_host = 198.16.5.11
elasticsearch_network_publish_host = 198.16.5.11
elasticsearch_discovery_initial_state_timeout = 30s
elasticsearch_analyzer = standard
output_batch_size = 500
output_flush_interval = 1
output_fault_count_threshold = 5
output_fault_penalty_seconds = 30
processbuffer_processors = 5
outputbuffer_processors = 3
outputbuffer_processor_threads_core_pool_size = 3
outputbuffer_processor_threads_max_pool_size = 30
processor_wait_strategy = blocking
ring_size = 65536
inputbuffer_ring_size = 65536
inputbuffer_processors = 2
inputbuffer_wait_strategy = blocking
message_journal_enabled = true
message_journal_dir = /var/lib/graylog-server/journal
async_eventbus_processors = 3
lb_recognition_period_seconds = 3
mongodb_uri = mongodb://admin:xxxxxxxxx@graylog1-mgmt.philasd.net:27017,graylog2-mgmt.philasd.net:27017,graylog3-mgmt.philasd.net:27017/graylog
mongodb_max_connections = 1000
mongodb_threads_allowed_to_block_multiplier = 5
rules_file = /etc/graylog/server/rules.drl
transport_email_enabled = true
transport_email_hostname = mta04.philasd.org
transport_email_port = 25
transport_email_use_tls = false
transport_email_use_ssl = false
transport_email_subject_prefix = [graylog]
transport_email_from_email = graylog@philasd.org
content_packs_dir = /usr/share/graylog-server/contentpacks
content_packs_auto_load = grok-patterns.json
proxied_requests_thread_pool_size = 32
elasticsearch.yml
cluster.name: graylog
node.master: true
node.data: true
node.name: "graylog1-mgmt.philasd.net"
discovery.zen.minimum_master_nodes: 1
http.bind_host: graylog1-mgmt.philasd.net
network.host: 172.16.5.11
bootstrap.system_call_filter: false
discovery.zen.ping.unicast.hosts: ["graylog1-mgmt.philasd.net", "graylog2-mgmt.philasd.net", "graylog3-mgmt.philasd.net"]
[root@graylog1 server]# curl -XGET 'http://172.16.5.11:9200/_cluster/health?pretty'
{
"cluster_name" : "graylog",
"status" : "green",
"timed_out" : false,
"number_of_nodes" : 3,
"number_of_data_nodes" : 3,
"active_primary_shards" : 9,
"active_shards" : 14,
"relocating_shards" : 0,
"initializing_shards" : 0,
"unassigned_shards" : 0,
"delayed_unassigned_shards" : 0,
"number_of_pending_tasks" : 0,
"number_of_in_flight_fetch" : 0,
"task_max_waiting_in_queue_millis" : 0,
"active_shards_percent_as_number" : 100.0
}
all three nodes are green