elastic / elastic/integrations
[Elasticsearch]: Transform issue due to insufficient permissions for kibana_system
- Dominant language
- Handlebars
- Stars
- 333
- Forks
- 647
- Avg merge
- 3d 4h
- Merged PRs (30d)
- 209
Description
### Integration Name
Elasticsearch [elasticsearch]
### Dataset Name
_No response_
### Integration Version
0.3
### Agent Version
9.2.1
### Agent Output Type
elasticsearch
### Elasticsearch Version
9.2.1
### OS Version and Architecture
Debian
### Software/API Version
_No response_
### Error Message
org.elasticsearch.ElasticsearchSecurityException: Cannot start transform [logs-elasticsearch.index_pivot-default-0.3.0] because user lacks required permissions, see privileges_check_failed issue for more details
Cannot create transform [logs-elasticsearch.index_pivot-default-0.3.0] because user kibana_system lacks the required permissions [.monitoring-es-*:[], metricbeat-*:[read], metrics-elasticsearch.stack_monitoring.index*:[read], monitoring-indices:[create_index, index, read]]
### Event Original
_No response_
### What did you do?
Installation of the Elasticsearch integration in a dedicated monitoring Cluster
### What did you see?
Errors in a dashboard (in technical preview), because the transform supposed to be creating the data is not working because of the error above
### What did you expect to see?
A working transform, and correct privileges for kibana_system
### Anything else?
_No response_
Contributor guide
Assessment
This issue has not been assessed yet.