# Unable to Unassigned node left delayed timeout setup

**URL:** <https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883>\
**Category:** OpenSearch\
**Created:** [April 16, 2024, 1:49pm UTC](https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883 "2024-04-16T13:49:38Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![therus000](https://avatars.discourse-cdn.com/v4/letter/t/8797f3/32.png) [@therus000](https://forum.opensearch.org/u/therus000)\
**Post date:** [April 16, 2024, 1:49pm UTC](https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883/1 "2024-04-16T13:49:38Z")

</div>

Good Day  
i use the latest version of opensearch 2.13.0  
and i was sad when i try to set the setting of cluster to node left delay and got error  
{  
“error”: {  
“root\_cause”: [  
{  
“type”: “security\_exception”,  
“reason”: “no permissions for and User [name=superadmin, backend\_roles=[admin, all\_access], requestedTenant=]”  
}  
],  
“type”: “security\_exception”,  
“reason”: “no permissions for and User [name=superadmin, backend\_roles=[admin, all\_access], requestedTenant=]”  
},  
“status”: 403

**Describe how to setup** :

**PUT \_all/\_settings  
{  
“settings”: {  
“index.unassigned.node\_left.delayed\_timeout”: “7m”  
}  
}**:

**Relevant Logs or Screenshots** :

---

<div class="post-metadata">

**Author:** ![Mantas](https://avatars.discourse-cdn.com/v4/letter/m/7bcc69/32.png) [@Mantas](https://forum.opensearch.org/u/Mantas)\
**Post date:** [April 17, 2024, 11:23am UTC](https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883/2 "2024-04-17T11:23:17Z")

</div>

Hi @therus000,

This index is not accessible by regular users (including admin with “ALL\_ACCESS”), the only way to access it (search and update) is by using the admin certificate defined in opensearch.yml as admin\_dn .

sample:

```auto
curl --insecure --cert ./config/kirk.pem --key ./config/kirk-key.pem --cacert ./config/root-ca.pem -H "Content-Type:application/json" -XPUT https://localhost:9200/_all/_settings -d '{"settings":{“index.unassigned.node_left.delayed_timeout”: “7m”}}'

```

Best,  
mj

---

<div class="post-metadata">

**Author:** ![therus000](https://avatars.discourse-cdn.com/v4/letter/t/8797f3/32.png) [@therus000](https://forum.opensearch.org/u/therus000)\
**Post date:** [April 17, 2024, 1:54pm UTC](https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883/3 "2024-04-17T13:54:40Z")

</div>

> [@therus000](#):
>
> index.unassigned.node\_left.delayed\_timeout

i didnt find any certs at this location. i use operator to deploy opensearch and in config i used generate tls and http true  
 ![image](https://us1.discourse-cdn.com/flex019/uploads/mauve_hedgehog/original/2X/3/3edc3fc32edc9d3a2fddb864f28e98b0c0f6da9d.png)

---

<div class="post-metadata">

**Author:** ![therus000](https://avatars.discourse-cdn.com/v4/letter/t/8797f3/32.png) [@therus000](https://forum.opensearch.org/u/therus000)\
**Post date:** [April 17, 2024, 1:57pm UTC](https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883/4 "2024-04-17T13:57:35Z")

</div>

i found cert at this location:  
/usr/share/opensearch/config/tls-http  
 ![image](https://us1.discourse-cdn.com/flex019/uploads/mauve_hedgehog/original/2X/8/87da807e13c6b760b6d920dd8b5dbb70ea22b961.png)

---

<div class="post-metadata">

**Author:** ![Mantas](https://avatars.discourse-cdn.com/v4/letter/m/7bcc69/32.png) [@Mantas](https://forum.opensearch.org/u/Mantas)\
**Post date:** [April 19, 2024, 1:15pm UTC](https://forum.opensearch.org/t/unable-to-unassigned-node-left-delayed-timeout-setup/18883/5 "2024-04-19T13:15:49Z")

</div>

Hi @therus000,

You can generate your certificates by following the instructions here: [Generating self-signed certificates - OpenSearch Documentation](https://opensearch.org/docs/latest/security/configuration/generate-certificates/)

best,  
mj
