I already configure apache metron using hcp 1.7.1 with ambari 2.6.2 on bare
metal (single node) os centos 7. The problem was the alert UI page does
not working properly. There are data on the alert UI page but contains
error log file "metron-rest.log".
nested: IllegalStateException[[nested] failed to find nested object under path [metron_alert]
The parser used suricata 'eve.json' file, that load into nifi and from nifi to kafka. The topology on storm are created the parser used ' JSONMap '. Based on error on log file, that nested on elasticsearch indexing. After follow this link