This all looks in order, except that I guess you've redacted the node name. The first thing I would do is to triple-check that this is correct (vs the node name reported by GET /). Get someone else to look at it if possible.
The next thing I'd suspect is that the shards are staying on this node because they can't be reallocated elsewhere for some other reason. Try creating a new index with a single shard and enough replicas to give one shard copy to every node in your cluster. If all of the new shards are allocated then I'm stumped, but if it prefers not to allocate a copy to the excluded node then the exclusion is working and there's some other reason for nothing happening.
Thanks David. I did redact the node name (elasticsearch14a). I thought that might the issue as well, but I made sure the node shows up in /_cat/nodes, and checked GET / like you suggested, and spelling is right and all.
I created a test_index index with one shard and 23 replicas (this is a 24 node cluster). I see that I have one unassigned shard, with the excluded node being the one that doesn't have a replica:
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch03a
test_index 0 p STARTED 0 159b 10.X.X.X elasticsearch09a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch10b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch07a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch04b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch05a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch04a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch11b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch02a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch11a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch06a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch03b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch10a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch13a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch07b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch13b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch14a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch05b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch08a
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch09b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch08b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch02b
test_index 0 r STARTED 0 159b 10.X.X.X elasticsearch06b
test_index 0 r UNASSIGNED
So it appears that the 'disable allocation' is working, but perhaps something else is stopping data from moving off of the node. I'm somewhat green regarding ES administration...what are my next steps?
Think I have figured out the issue. I tried rerouting a single shard from the excluded node to another, and got this inside of the response:
[NO(too many shards for this index [sessions-17w29] on node [1], limit: [1])]
Someone set these indexes to have 24 shards, and now that we're down to 24 nodes, I will need to set total_shards_per_node to something higher than 1. Sounds like I need to do a little research into what the I/O hit will be.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.