elastic / elastic/integrations

[Elasticsearch]: Transform issue due to insufficient permissions for kibana_system

Open
#16,063 1 comment 0 reactions 0 assignees View on GitHub
Integration:elasticsearch needs:triage Team:Stack Monitoring
Dominant language
Handlebars
Stars
333
Forks
647
Avg merge
3d 4h
Merged PRs (30d)
209

Description

### Integration Name

Elasticsearch [elasticsearch]

### Dataset Name

_No response_

### Integration Version

0.3

### Agent Version

9.2.1

### Agent Output Type

elasticsearch

### Elasticsearch Version

9.2.1

### OS Version and Architecture

Debian

### Software/API Version

_No response_

### Error Message

org.elasticsearch.ElasticsearchSecurityException: Cannot start transform [logs-elasticsearch.index_pivot-default-0.3.0] because user lacks required permissions, see privileges_check_failed issue for more details

Cannot create transform [logs-elasticsearch.index_pivot-default-0.3.0] because user kibana_system lacks the required permissions [.monitoring-es-*:[], metricbeat-*:[read], metrics-elasticsearch.stack_monitoring.index*:[read], monitoring-indices:[create_index, index, read]]

### Event Original

_No response_

### What did you do?

Installation of the Elasticsearch integration in a dedicated monitoring Cluster

### What did you see?

Errors in a dashboard (in technical preview), because the transform supposed to be creating the data is not working because of the error above

### What did you expect to see?

A working transform, and correct privileges for kibana_system

### Anything else?

_No response_

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.