# 3 nodes cluster

**URL:** <https://discuss.elastic.co/t/3-nodes-cluster/111576>\
**Category:** Elasticsearch\
**Created:** [December 13, 2017, 2:07pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576 "2017-12-13T14:07:11Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![Vladislav\_Trayanov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vladislav_trayanov/32/25790_2.png) [@Vladislav\_Trayanov](https://discuss.elastic.co/u/Vladislav_Trayanov)\
**Post date:** [December 13, 2017, 2:07pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/1 "2017-12-13T14:07:11Z")

</div>

Hey all,

I have a big trouble to understand the best 3 nodes cluster elasticsearch configuration.

At the moment I have 3 node cluster with 3 data + master eligible nodes with 4 gigs of JVM and standard HDD. I keep logs for 45 days. I think the data is not more 20GB

{  
"cluster\_name": "elasticsearch",  
"status": "green",  
"timed\_out": false,  
"number\_of\_nodes": 3,  
"number\_of\_data\_nodes": 3,  
"active\_primary\_shards": 1311,  
"active\_shards": 2622,  
"relocating\_shards": 0,  
"initializing\_shards": 0,  
"unassigned\_shards": 0,  
"delayed\_unassigned\_shards": 0,  
"number\_of\_pending\_tasks": 0,  
"number\_of\_in\_flight\_fetch": 0,  
"task\_max\_waiting\_in\_queue\_millis": 0,  
"active\_shards\_percent\_as\_number": 100  
}

My biggest problem is that the setup it doesn't seems optimal since the nodes keep crashing because of the JVM or high load etc. especially when some of my fluentd was down for a while and then I start it. It keeps my nodes under high pressure.

So my point is to leave one only Master node and 2 only data nodes.  
What do you think, is it better or you can suggest something else?

Thanks,  
Vlad

---

<div class="post-metadata">

**Author:** ![Vladislav\_Trayanov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vladislav_trayanov/32/25790_2.png) [@Vladislav\_Trayanov](https://discuss.elastic.co/u/Vladislav_Trayanov)\
**Post date:** [December 13, 2017, 2:09pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/2 "2017-12-13T14:09:45Z")

</div>

or maybe I need coordinating node?

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [December 13, 2017, 2:22pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/3 "2017-12-13T14:22:08Z")

</div>

> I think the data is not more 20GB

In total?

Definitely 2622 shards is a way too much.  
You need to reduce the pressure.

1 single shard can probably hold 20gb...

So I'd use 1 shard per index. With daily indices, you'll end up with 90 shards on 3 nodes which sounds more reasonable.

---

<div class="post-metadata">

**Author:** ![Vladislav\_Trayanov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vladislav_trayanov/32/25790_2.png) [@Vladislav\_Trayanov](https://discuss.elastic.co/u/Vladislav_Trayanov)\
**Post date:** [December 13, 2017, 3:44pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/4 "2017-12-13T15:44:45Z")

</div>

Hey, thanks for your answer.  
At the moment I have 5 shards per index, so I need to decrease them to 1 right?

{  
"logfiles-2017.12.12": {  
"settings": {  
"index": {  
"creation\_date": "1513036859653",  
"number\_of\_shards": "5",  
"number\_of\_replicas": "1",  
"uuid": "q08OO2GWQJSuvkqW9FUPiQ",  
"version": {  
"created": "6000099"  
},  
"provided\_name": "logfiles-2017.12.12"  
}  
}  
},

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [December 13, 2017, 8:15pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/5 "2017-12-13T20:15:58Z")

</div>

Yes.

---

<div class="post-metadata">

**Author:** ![Vladislav\_Trayanov](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vladislav_trayanov/32/25790_2.png) [@Vladislav\_Trayanov](https://discuss.elastic.co/u/Vladislav_Trayanov)\
**Post date:** [December 13, 2017, 8:55pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/6 "2017-12-13T20:55:11Z")

</div>

Thank you a lot David. I think this will help me a lot.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 10, 2018, 8:55pm UTC](https://discuss.elastic.co/t/3-nodes-cluster/111576/7 "2018-01-10T20:55:28Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
