# Cluster or not cluster

**URL:** <https://discuss.elastic.co/t/cluster-or-not-cluster/171043>\
**Category:** Elasticsearch\
**Created:** [March 6, 2019, 7:51am UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043 "2019-03-06T07:51:38Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![rodrigue](https://avatars.discourse-cdn.com/v4/letter/r/f04885/32.png) [@rodrigue](https://discuss.elastic.co/u/rodrigue)\
**Post date:** [March 6, 2019, 7:51am UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/1 "2019-03-06T07:51:38Z")

</div>

Hello,  
I'm writing to you about a question I have. I tried to find the answer myself but I don't know how to formulate my search query.  
I'm using elastic more and more. I'm using it for ELK monitoring (filebeat, metricbeat, etc...), and I'm using it for indexing my website in order to help clients find there content.  
My ELK indexes and my web site indexes have nothing in common, there are very different.  
Here is my question : Should I create a cluster or should I create two separate architectures?  
If I separate them, I can tune them differently. If I use them in a same cluster, I have more redundancy.  
The ELK stack uses a lot of resources and indexes a lot of data, and I don't want my clients to be slowed down because of it... My web site indexes are not updated very often but are searched a lot...  
I'm hopping you can help be choose between the different possible architectures...

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [March 6, 2019, 9:45am UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/2 "2019-03-06T09:45:28Z")

</div>

For performance, stability, etc. I prefer 2 clusters.  
So whatever happens on the logs, I can always serve my business requests.

Money wise, it's of course cheaper to have only one cluster.

---

<div class="post-metadata">

**Author:** ![rodrigue](https://avatars.discourse-cdn.com/v4/letter/r/f04885/32.png) [@rodrigue](https://discuss.elastic.co/u/rodrigue)\
**Post date:** [March 6, 2019, 4:27pm UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/3 "2019-03-06T16:27:34Z")

</div>

Thanks... I hoped you would say that 🙂  
I'll do two clusters. It's easier to manage. The price for one or two virtual machines is a lot less important than the price for unhappy clients...

---

<div class="post-metadata">

**Author:** ![rodrigue](https://avatars.discourse-cdn.com/v4/letter/r/f04885/32.png) [@rodrigue](https://discuss.elastic.co/u/rodrigue)\
**Post date:** [March 6, 2019, 5:09pm UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/4 "2019-03-06T17:09:16Z")

</div>

Wait... I'm still thinking about your answer... It's not about money... I have big physical machines. I can install any number of virtual machines on them. (I already created several VM for databases, tomcat, Php Wordpress, etc...)  
So the question is not about money, it's about resources. Is it better to create 4 small VM, and have 2 clusters (2 machines, in each cluster) Or to create one big cluster with 4 machines, and manage the load between them (is it possible to give priority to some indexes over others)  
Should I create three VM in a unique cluster (one for buisiness queries, the other for ELK queries, and the last one is sleeping waiting for another to crash)  
Or maybe two big VM, one for ELK, the other for buisiness queries?

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [March 6, 2019, 5:59pm UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/5 "2019-03-06T17:59:56Z")

</div>

I prefer to have separated cluster states to increase stability. Which means 2 clusters.

---

<div class="post-metadata">

**Author:** ![rodrigue](https://avatars.discourse-cdn.com/v4/letter/r/f04885/32.png) [@rodrigue](https://discuss.elastic.co/u/rodrigue)\
**Post date:** [March 7, 2019, 8:01am UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/6 "2019-03-07T08:01:12Z")

</div>

OK. Thanks.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 4, 2019, 8:01am UTC](https://discuss.elastic.co/t/cluster-or-not-cluster/171043/7 "2019-04-04T08:01:21Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
