Elasticsearch 실행시 에러
{"@timestamp":"2024-04-13T22:55:14.159Z", "log.level": "INFO", "message":"parsed [0] roles from file [/usr/share/elasticsearch/config/roles.yml]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.security.authz.store.FileRolesStore","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.513Z", "log.level": "INFO", "message":"Watcher initialized components at 2024-04-13T22:55:14.513Z", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.watcher.Watcher","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.535Z", "log.level": "INFO", "message":"Profiling is enabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.profiling.ProfilingPlugin","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.542Z", "log.level": "INFO", "message":"profiling index templates will not be installed or reinstalled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.profiling.ProfilingPlugin","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.544Z", "log.level": "INFO", "message":"APM ingest plugin is disabled", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.apmdata.APMPlugin","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.730Z", "log.level": "INFO", "message":"creating NettyAllocator with the following configs: [name=unpooled, suggested_max_allocation_size=1mb, factors={es.unsafe.use_unpooled_allocator=null, g1gc_enabled=true, g1gc_region_size=4mb, heap_size=512mb}]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.transport.netty4.NettyAllocator","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.742Z", "log.level": "INFO", "message":"using rate limit [40mb] with [default=40mb, read=0b, write=0b, max=0b]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.indices.recovery.RecoverySettings","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:14.759Z", "log.level": "INFO", "message":"using discovery type [multi-node] and seed hosts providers [settings]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.discovery.DiscoveryModule","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.323Z", "log.level": "INFO", "message":"initialized", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.324Z", "log.level": "INFO", "message":"starting ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.357Z", "log.level": "INFO", "message":"persistent cache index loaded", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.searchablesnapshots.cache.full.PersistentCache","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.357Z", "log.level": "INFO", "message":"deprecation component started", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.xpack.deprecation.logging.DeprecationIndexingComponent","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.397Z", "log.level": "INFO", "message":"publish_address {172.19.0.2:9300}, bound_addresses {0.0.0.0:9300}", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.transport.TransportService","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.495Z", "log.level": "INFO", "message":"bound or publishing to a non-loopback address, enforcing bootstrap checks", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.BootstrapChecks","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.498Z", "log.level":"ERROR", "message":"node validation exception\n[1] bootstrap checks failed. You must address the points described in the following [1] lines before starting Elasticsearch. For more information see [https://www.elastic.co/guide/en/elasticsearch/reference/8.13/bootstrap-checks.html]\nbootstrap check failure [1] of [1]: max virtual memory areas vm.max_map_count [65530] is too low, increase to at least [262144]; for more information see [https://www.elastic.co/guide/en/elasticsearch/reference/8.13/_maximum_map_count_check.html]", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"main","log.logger":"org.elasticsearch.bootstrap.Elasticsearch","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
ERROR: Elasticsearch did not exit normally - check the logs at /usr/share/elasticsearch/logs/docker-cluster.log
{"@timestamp":"2024-04-13T22:55:15.500Z", "log.level": "INFO", "message":"stopping ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch-shutdown","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.514Z", "log.level": "INFO", "message":"stopped", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch-shutdown","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.514Z", "log.level": "INFO", "message":"closing ...", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch-shutdown","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.520Z", "log.level": "INFO", "message":"closed", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"elasticsearch-shutdown","log.logger":"org.elasticsearch.node.Node","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
{"@timestamp":"2024-04-13T22:55:15.521Z", "log.level": "INFO", "message":"Native controller process has stopped - no new native processes can be started", "ecs.version": "1.2.0","service.name":"ES_ECS","event.dataset":"elasticsearch.server","process.thread.name":"ml-cpp-log-tail-thread","log.logger":"org.elasticsearch.xpack.ml.process.NativeController","elasticsearch.node.name":"c0a3997b3bd4","elasticsearch.cluster.name":"docker-cluster"}
영구적인 적용을 위하여 /etc/sysctl.conf 파일의 vm.max_map_count 값을 수정
$ sudo vim /etc/sysctl.conf 적용
vm.max_map_count=262144
파일 수정만으로 라이브 시스템에 바로 적용되지 않기 때문에 라이브 시스템의 경우 아래 명령어로 적용
$ sudo sysctl -w vm.max_map_count=262144
'Snippet' 카테고리의 다른 글
알파 코듐이 무엇인가? (0) | 2024.02.20 |
---|---|
국제 해킹 그룹 정보 (0) | 2024.01.31 |