Fluentd with Searchguard

I have successfully setup Elasticsearch and Kibana with Searchguard. However, I’ve been having trouble connecting Fluentd to get data from Elasticsearch. I have enterprise modules disabled and my question is this: Do I need an enterprise license do use Searchguard features with Fluentd?

Hi. I have never used Fluentid but I see you can provide login credentials there https://docs.fluentd.org/output/elasticsearch#user-password-optional You can create a new user in Search Guard internal user database and use the user to authenticate Fluentid. The user should have the proper rights to do things on the Elasticsearch cluster. Check the first steps if you haven’t done this yet https://docs.search-guard.com/latest/first-steps-user-configuration

1 Like

This topic was automatically closed 21 days after the last reply. New replies are no longer allowed.