2 thoughts on “rsyslog error 2218

  1. When I try to connect rsyslog with cloud hosted elasticsearch service with https option enabled in conf (usehttps=\”on\”)
    I am receiving below error
    root@HP-Laptop-15-bs0xx:/etc# tail -f /var/log/rsyslog.log
    Dec 6 09:52:10 HP-Laptop-15-bs0xx rsyslogd: message repeated 2 times: [omelasticsearch: error in elasticsearch reply: bulkmode insert does not return array, reply is: {\”error\”:{\”root_cause\”:[{\”type\”:\”security_exception\”,\”reason\”:\”action [indices:data/write/bulk] requires authentication\”,\”header\”:{\”WWW-Authenticate\”:[\”Bearer realm=\\\”security\\\”\”,\”Basic realm=\\\”security\\\” charset=\\\”UTF-8\\\”\”]}}],\”type\”:\”security_exception\”,\”reason\”:\”action [indices:data/write/bulk] requires authentication\”,\”header\”:{\”WWW-Authenticate\”:[\”Bearer realm=\\\”security\\\”\”,\”Basic realm=\\\”security\\\” charset=\\\”UTF-8\\\”\”]}},\”status\”:401} [v8.39.0 try http://www.rsyslog.com/e/2218 ]]

    Any one has any idea ,how can I resolve this error ?

Leave a Reply

Scroll to top