Backup/Restore Security and Audit Indices

Good day all,

What is the best practice to backup/restore the .opendistro_security (or its opensearch equivalent) and the security-auditlog indices?

I am currently running ODFE 1.9.


Hello @asfoorial

Check snapshot function in ODFE and Opensearch.

I tried it against .opensearch_security index and got permission error when calling the restore API.

So is there a specific process for it?

I was doing this using the admin user.


The last section in this document explains how to restore .opendistro_security index.
Since this index contains sensitive data, restore must be executed with an admin certificate.
Admin certificate is not the same as admin user.