-
Notifications
You must be signed in to change notification settings - Fork 4.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Elastic Agent] The log input should report itself as Degraded when it encounters a permissions error #39733
Labels
Team:Elastic-Agent-Data-Plane
Label for the Agent Data Plane team
Comments
cmacknz
added
the
Team:Elastic-Agent-Data-Plane
Label for the Agent Data Plane team
label
May 24, 2024
Pinging @elastic/elastic-agent-data-plane (Team:Elastic-Agent-Data-Plane) |
6 tasks
This was referenced Jul 5, 2024
6 tasks
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
--unprivileged
flag. elastic-agent#4112system.syslog
not available for mac agent installed with unprivileged flag. elastic-agent#4675Today when the log input does not have permission to open a file, it logs an error.
When the log input is run as part of the system integration installed in an unprivileged agent, this can lead to missing data with no obvious signal to the user in the output of
elastic-agent status
or in the Fleet UI. This is a poor user experience as users will install the system integration and data will be missing with no obvious root cause.Modify the log input to set itself as Degraded using the Elastic Agent control protocol when it encounters a permissions error attempting to read a file. Support for reporting status using the control protocol was added in #39209 using the CEL input as a reference implementation.
The text was updated successfully, but these errors were encountered: