root@debian:~/.elkeidup [INFO] 2025-05-12T19:55:10+08:00 use elkeidup home dir: /root/.elkeidup [INFO] 2025-05-12T19:55:10+08:00 Elkeidup Home size:70.4G, avail:50.4G [INFO] 2025-05-12T19:55:10+08:00 Using config file: /root/.elkeidup/config.yaml ----Elkeid Community Edition Information Collection Statement----
Automatic Download Missed Precompiled Kernel Model Service Enable Prompt:
Service background: Elkeid Driver works in kernel mode. Since the kernel requires the loaded kernel module to be strongly bound to the kernel version, we cannot occupy the resources of the client to compile ko on the client when installing the agent. Therefore, we provide precompiled ko in the release package to avoid manual compilation of ko every time. Currently, a total of 3435 precompiled ko are included. But there are still two problems that cannot be solved. One is that it cannot be updated in real time. After the upstream distribution updates the kernel, we cannot and do not have manpower to update the precompiled ko to the release synchronously. Second, the coverage is limited, and we may encounter the kernel used by the distribution we have not used. To this end, we provide the function of automatically downloading the missing precompiled ko. This function is mainly to notify our relevant classmates. The version's ko has customers on trial, update or support the distribution as soon as possible. If you agree to enable the service, we need to collect some basic operation information at the same time, so that we can customize the priority schedule according to users with different needs, and give a reasonable resource occupation assessment. The email information filled in is only used to distinguish the identity of the source, either real email or nickname.
The specific information is as follows: 1. Missing the kernel version of the precompiled ko, the server architecture (only choose one of arm64 or amd64, and do not involve any other cpu machine information). 2. The number of connections of the agent on the agent center, collected every 30min. 3. The qps of the agent on the agent center, including send and receive, are collected every 30min, and the average value of 30min is taken. 4. Hub input qps, collected every 30min, take the average value of 30min. 5. redis qps, collected every 30min, take the average value of 30min. 6. redis memory usage, collected every 30min, real-time value. 7. The qps of kafka production and consumption are collected every 30min
Page Up/Down or j/k to browse full text Press q/n to quit or y to accept
Thanks to accept the collected list. [INFO] 2025-05-12T19:55:12+08:00 Please input your email, if you do not wish to be contacted, you can only input your nick name Email: ascotbe@gmail.com [INFO] 2025-05-12T19:55:18+08:00 Start to check the Checker configuration [SUCC] 2025-05-12T19:55:18+08:00 The Checker pass the test. [INFO] 2025-05-12T19:55:18+08:00 Start to check the NodeExporter configuration [SUCC] 2025-05-12T19:55:18+08:00 The NodeExporter pass the test. [INFO] 2025-05-12T19:55:18+08:00 Start to check the Redis configuration [INFO] 2025-05-12T19:55:18+08:00 Use recovered password Redis: 0t8671mjccf76d172q [INFO] 2025-05-12T19:55:18+08:00 create random redis password: 0t8671mjccf76d172q [SUCC] 2025-05-12T19:55:22+08:00 The Redis pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the Kafka configuration [SUCC] 2025-05-12T19:55:22+08:00 The Kafka pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the MongoDB configuration [SUCC] 2025-05-12T19:55:22+08:00 The MongoDB pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the MongoDBLeaderData configuration [SUCC] 2025-05-12T19:55:22+08:00 The MongoDBLeaderData pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the MongoDBManagerData configuration [SUCC] 2025-05-12T19:55:22+08:00 The MongoDBManagerData pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the ServiceDiscovery configuration [SUCC] 2025-05-12T19:55:22+08:00 The ServiceDiscovery pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the Manager configuration [SUCC] 2025-05-12T19:55:22+08:00 The Manager pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the AgentCenter configuration [SUCC] 2025-05-12T19:55:22+08:00 The AgentCenter pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the HubLeader configuration [SUCC] 2025-05-12T19:55:22+08:00 The HubLeader pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the Hub configuration [SUCC] 2025-05-12T19:55:22+08:00 The Hub pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the Nginx configuration [INFO] 2025-05-12T19:55:22+08:00 Use recovered password nginx_uploader:admin 76p3do1k6mc8thf082 [SUCC] 2025-05-12T19:55:22+08:00 The Nginx pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the RedisExporter configuration [SUCC] 2025-05-12T19:55:22+08:00 The RedisExporter pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the MongoDB Exporter configuration [SUCC] 2025-05-12T19:55:22+08:00 The MongoDB Exporter pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the ZookeeperExporter configuration [SUCC] 2025-05-12T19:55:22+08:00 The ZookeeperExporter pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the KafkaExporter configuration [SUCC] 2025-05-12T19:55:22+08:00 The KafkaExporter pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the PrometheusAlertManager configuration [SUCC] 2025-05-12T19:55:22+08:00 The PrometheusAlertManager pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the Prometheus configuration [INFO] 2025-05-12T19:55:22+08:00 Use recovered password prometheus:admin 93i5fmpm5t11935dg4 [SUCC] 2025-05-12T19:55:22+08:00 The Prometheus pass the test. [INFO] 2025-05-12T19:55:22+08:00 Start to check the Grafana configuration [SUCC] 2025-05-12T19:55:22+08:00 The Grafana pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Checker extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The Checker pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the NodeExporter extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The NodeExporter pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Redis extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The Redis pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Kafka extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The Kafka pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the MongoDB extra configuration [INFO] 2025-05-12T19:55:41+08:00 Use recovered password Mongodb:admin b046rg3n668f572711 [INFO] 2025-05-12T19:55:41+08:00 Create Random 'admin' user Mongodb Password: b046rg3n668f572711 [INFO] 2025-05-12T19:55:41+08:00 Use recovered password Mongodb:elkeid 3dbaem68is442e8k72 [INFO] 2025-05-12T19:55:41+08:00 Create Random 'elkeid' user Mongodb Password: 3dbaem68is442e8k72 [SUCC] 2025-05-12T19:55:41+08:00 The MongoDB pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the MongoDBLeaderData extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The MongoDBLeaderData pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the MongoDBManagerData extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The MongoDBManagerData pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the ServiceDiscovery extra configuration [INFO] 2025-05-12T19:55:41+08:00 Use recovered AC:AK lpqat4ycbpnlcmjo [INFO] 2025-05-12T19:55:41+08:00 Use recovered AC:SK lxbbhdp3vmg21i022uvvoe0gyjrp0yk9 [INFO] 2025-05-12T19:55:41+08:00 Use recovered MG:AK emc6s2c2hyzaem4c [INFO] 2025-05-12T19:55:41+08:00 Use recovered MG:SK bix7pynwkhdxwyuisyx61fvrppry3ktc [INFO] 2025-05-12T19:55:41+08:00 Use recovered LD:AK xitghns2z5jgob9j [INFO] 2025-05-12T19:55:41+08:00 Use recovered LD:SK zc0k183rt8blq7m6rd2w4qx8aryz7phx [INFO] 2025-05-12T19:55:41+08:00 Generate random AcKeys: lpqat4ycbpnlcmjo, lxbbhdp3vmg21i022uvvoe0gyjrp0yk9 [INFO] 2025-05-12T19:55:41+08:00 Generate random MgKeys: emc6s2c2hyzaem4c, bix7pynwkhdxwyuisyx61fvrppry3ktc [INFO] 2025-05-12T19:55:41+08:00 Generate random LeaderKeys: xitghns2z5jgob9j, zc0k183rt8blq7m6rd2w4qx8aryz7phx [SUCC] 2025-05-12T19:55:41+08:00 The ServiceDiscovery pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Manager extra configuration [INFO] 2025-05-12T19:55:41+08:00 Use recovered password elkeid_console:root k4s641f691f84s786mQX [INFO] 2025-05-12T19:55:41+08:00 Create Random Manger 'root' Password: k4s641f691f84s786mQX [INFO] 2025-05-12T19:55:41+08:00 Use recovered password elkeid_console:admin 9ac33a16c05o6ck58lDZ [INFO] 2025-05-12T19:55:41+08:00 Create Random Manger 'admin' Password: 9ac33a16c05o6ck58lDZ [SUCC] 2025-05-12T19:55:41+08:00 The Manager pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the AgentCenter extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The AgentCenter pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the HubLeader extra configuration [INFO] 2025-05-12T19:55:41+08:00 Use recovered password elkeid_hub_frontend:elkeid_hub 5817b51m30k2d3r43kFG [INFO] 2025-05-12T19:55:41+08:00 Create User for HUB, Password: 5817b51m30k2d3r43kFG [SUCC] 2025-05-12T19:55:41+08:00 The HubLeader pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Hub extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The Hub pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Nginx extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The Nginx pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the RedisExporter extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The RedisExporter pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the MongoDB Exporter extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The MongoDB Exporter pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the ZookeeperExporter extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The ZookeeperExporter pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the KafkaExporter extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The KafkaExporter pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the PrometheusAlertManager extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The PrometheusAlertManager pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Prometheus extra configuration [SUCC] 2025-05-12T19:55:41+08:00 The Prometheus pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start to prepare the Grafana extra configuration [INFO] 2025-05-12T19:55:41+08:00 Use recovered password grafana:admin 7r7i2pp27t024fl1pq [SUCC] 2025-05-12T19:55:41+08:00 The Grafana pass the test. [INFO] 2025-05-12T19:55:41+08:00 Start PingCheck. This will take several minutes. [INFO] 2025-05-12T19:55:41+08:00 --- Start to deploy Elkeid Backend --- [INFO] 2025-05-12T19:55:41+08:00 Start to deploy the Checker [INFO] 2025-05-12T19:55:48+08:00 pre check success in host: 192.168.23.137 [INFO] 2025-05-12T19:55:48+08:00 2025/05/12 19:55:48 /elkeid current exist, it's a dir [INFO] 2025-05-12T19:55:48+08:00 2025/05/12 19:55:48 disk check done, mount at /, size is 70.4G, avail is 50.4G [SUCC] 2025-05-12T19:56:53+08:00 Checker installation is complete. [INFO] 2025-05-12T19:56:53+08:00 Start to deploy the NodeExporter [SUCC] 2025-05-12T19:57:17+08:00 192.168.23.137 elkeid_node_exporter active [SUCC] 2025-05-12T19:57:44+08:00 192.168.23.137 elkeid_process_exporter active [SUCC] 2025-05-12T19:57:44+08:00 NodeExporter installation is complete. [INFO] 2025-05-12T19:57:44+08:00 Start to deploy the Redis [INFO] 2025-05-12T19:57:44+08:00 Redis will be installed at: [INFO] 2025-05-12T19:57:44+08:00 192.168.23.137 [SUCC] 2025-05-12T19:58:39+08:00 Redis standalone model validate success [SUCC] 2025-05-12T19:58:39+08:00 Redis installation is complete. [INFO] 2025-05-12T19:58:39+08:00 Start to deploy the Kafka [INFO] 2025-05-12T19:58:39+08:00 Kafka will be installed at: [INFO] 2025-05-12T19:58:39+08:00 192.168.23.137 [INFO] 2025-05-12T19:58:39+08:00 Create 'admin' for Kafka, Password: 'elkeid' [INFO] 2025-05-12T20:00:19+08:00 Sleep 20 second to wait kafka startup [INFO] 2025-05-12T20:00:39+08:00 Kafka Dial Leader broker success, offset=0 whence=0 [SUCC] 2025-05-12T20:00:39+08:00 Kafka validate success [SUCC] 2025-05-12T20:00:39+08:00 Kafka installation is complete. [INFO] 2025-05-12T20:00:39+08:00 Start to deploy the MongoDB [INFO] 2025-05-12T20:00:39+08:00 Mongodb will be installed at: [INFO] 2025-05-12T20:00:39+08:00 192.168.23.137 [SUCC] 2025-05-12T20:03:16+08:00 Mongodb validate success [INFO] 2025-05-12T20:03:18+08:00 Now start restore DB, this will take several minutes. [SUCC] 2025-05-12T20:03:21+08:00 MongoDB installation is complete. [INFO] 2025-05-12T20:03:21+08:00 Start to deploy the MongoDBLeaderData [INFO] 2025-05-12T20:03:21+08:00 Now start restore Leader DB, this will take several minutes. [INFO] 2025-05-12T20:03:59+08:00 now update hub config [INFO] 2025-05-12T20:03:59+08:00 Now add kafka auth for hub [INFO] 2025-05-12T20:03:59+08:00 Now add kafka auth for hub [SUCC] 2025-05-12T20:03:59+08:00 MongoDBLeaderData installation is complete. [INFO] 2025-05-12T20:03:59+08:00 Start to deploy the MongoDBManagerData [INFO] 2025-05-12T20:03:59+08:00 Now start restore Manager DB, this will take several minutes. [SUCC] 2025-05-12T20:04:25+08:00 MongoDBManagerData installation is complete. [INFO] 2025-05-12T20:04:25+08:00 Start to deploy the ServiceDiscovery [INFO] 2025-05-12T20:04:25+08:00 Service Discovery will be installed at: [INFO] 2025-05-12T20:04:25+08:00 192.168.23.137 [SUCC] 2025-05-12T20:04:59+08:00 ServiceDiscovery installation is complete. [INFO] 2025-05-12T20:04:59+08:00 Start to deploy the Manager [INFO] 2025-05-12T20:04:59+08:00 Manager will be installed at: [INFO] 2025-05-12T20:04:59+08:00 192.168.23.137 [INFO] 2025-05-12T20:04:59+08:00 Generate new agent cert.. [SUCC] 2025-05-12T20:06:05+08:00 Manager installation is complete. [INFO] 2025-05-12T20:06:05+08:00 Start to deploy the AgentCenter [INFO] 2025-05-12T20:06:05+08:00 Agent Center will be installed at: [INFO] 2025-05-12T20:06:05+08:00 192.168.23.137 [SUCC] 2025-05-12T20:07:18+08:00 AgentCenter installation is complete. [INFO] 2025-05-12T20:07:18+08:00 Start to deploy the HubLeader [INFO] 2025-05-12T20:07:18+08:00 HUB Leader will be installed at: [INFO] 2025-05-12T20:07:18+08:00 192.168.23.137 [SUCC] 2025-05-12T20:08:33+08:00 HubLeader installation is complete. [INFO] 2025-05-12T20:08:33+08:00 Start to deploy the Hub [INFO] 2025-05-12T20:08:33+08:00 HUB will be installed at: 192.168.23.137 [INFO] 2025-05-12T20:08:33+08:00 HUB install, install cluster: security.elkeid.hub, install host: 192.168.23.137 [SUCC] 2025-05-12T20:09:59+08:00 Hub installation is complete. [INFO] 2025-05-12T20:09:59+08:00 Start to deploy the Nginx [INFO] 2025-05-12T20:09:59+08:00 Nginx will be installed at: {192.168.23.137 192.168.23.137 22 root /root/.ssh/id_rsa} [INFO] 2025-05-12T20:11:19+08:00 Nginx Uploader will be installed at: {192.168.23.137 192.168.23.137 22 root /root/.ssh/id_rsa} [SUCC] 2025-05-12T20:11:58+08:00 192.168.23.137 elkeid_nginx_uploader active [INFO] 2025-05-12T20:12:01+08:00 Nginx connect test successfully. [INFO] 2025-05-12T20:12:01+08:00 Nginx http get http://192.168.23.137:8089/ping success, resp code is 200 [SUCC] 2025-05-12T20:12:01+08:00 Nginx installation is complete. [INFO] 2025-05-12T20:12:01+08:00 Start to deploy the RedisExporter [SUCC] 2025-05-12T20:12:32+08:00 192.168.23.137 elkeid_redis_exporter active [SUCC] 2025-05-12T20:12:32+08:00 RedisExporter installation is complete. [INFO] 2025-05-12T20:12:32+08:00 Start to deploy the MongoDB Exporter [SUCC] 2025-05-12T20:12:58+08:00 192.168.23.137 elkeid_mongodb_exporter active [SUCC] 2025-05-12T20:12:58+08:00 MongoDB Exporter installation is complete. [INFO] 2025-05-12T20:12:58+08:00 Start to deploy the ZookeeperExporter [SUCC] 2025-05-12T20:13:27+08:00 192.168.23.137 elkeid_zookeeper_exporter active [SUCC] 2025-05-12T20:13:27+08:00 ZookeeperExporter installation is complete. [INFO] 2025-05-12T20:13:27+08:00 Start to deploy the KafkaExporter [SUCC] 2025-05-12T20:13:58+08:00 192.168.23.137 elkeid_kafka_exporter active [SUCC] 2025-05-12T20:13:58+08:00 KafkaExporter installation is complete. [INFO] 2025-05-12T20:13:58+08:00 Start to deploy the PrometheusAlertManager [SUCC] 2025-05-12T20:14:32+08:00 192.168.23.137 elkeid_prometheus_alertmanager active [SUCC] 2025-05-12T20:14:32+08:00 PrometheusAlertManager installation is complete. [INFO] 2025-05-12T20:14:32+08:00 Start to deploy the Prometheus [INFO] 2025-05-12T20:14:32+08:00 192.168.23.137 [INFO] 2025-05-12T20:14:32+08:00 Prometheus will be installed at: 192.168.23.137 [INFO] 2025-05-12T20:15:23+08:00 Test prometheus metrics api [INFO] 2025-05-12T20:15:25+08:00 Test prometheus metrics done [SUCC] 2025-05-12T20:15:29+08:00 192.168.23.137 elkeid_prometheus active [SUCC] 2025-05-12T20:15:29+08:00 Prometheus installation is complete. [INFO] 2025-05-12T20:15:29+08:00 Start to deploy the Grafana [INFO] 2025-05-12T20:15:29+08:00 Grafana will be installed at: 192.168.23.137 [SUCC] 2025-05-12T20:17:15+08:00 192.168.23.137 elkeid_grafana active [SUCC] 2025-05-12T20:17:15+08:00 Grafana installation is complete. [INFO] 2025-05-12T20:17:15+08:00 --- Elkeid Backend installation is complete --- [WARN] 2025-05-12T20:17:15+08:00 The password file is in /root/.elkeidup/elkeid_passwd, please be sure to transfer, save and delete the file!
|