# Courier fetch: 7 of 80 shared failed

**URL:** <https://discuss.elastic.co/t/courier-fetch-7-of-80-shared-failed/59959>\
**Category:** Kibana\
**Created:** [September 7, 2016, 9:54am UTC](https://discuss.elastic.co/t/courier-fetch-7-of-80-shared-failed/59959 "2016-09-07T09:54:49Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![geek876](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/geek876/32/9329_2.png) [@geek876](https://discuss.elastic.co/u/geek876)\
**Post date:** [September 7, 2016, 9:54am UTC](https://discuss.elastic.co/t/courier-fetch-7-of-80-shared-failed/59959/1 "2016-09-07T09:54:49Z")

</div>

Started to get these errors within Kibana.

When I do discover, I see that the last event that made it to ES was on 2016-09-06 11:59:59 so something perhaps went wrong when the new index got created ? We create a new index every day (fluentd plugin does that actually)

Index: fluentd-2016.09.07 Shard: 0 Reason: RemoteTransportException[[Foolkiller][inet[/10.212.32.99:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];  
Index: fluentd-2016.09.07 Shard: 1 Reason: RemoteTransportException[[Foolkiller][inet[/10.212.32.99:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];  
Index: fluentd-2016.09.07 Shard: 2 Reason: RemoteTransportException[[Lord Pumpkin][inet[/10.212.32.96:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];  
Index: fluentd-2016.09.07 Shard: 3 Reason: RemoteTransportException[[Ms. MODOK][inet[/10.212.32.97:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];  
Index: fluentd-2016.09.05 Shard: 4 Reason: RemoteTransportException[[Crimson Dynamo][inet[/10.212.32.98:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];  
Index: fluentd-2016.09.06 Shard: 4 Reason: RemoteTransportException[[Crimson Dynamo][inet[/10.212.32.98:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];  
Index: fluentd-2016.09.07 Shard: 4 Reason: RemoteTransportException[[Ms. MODOK][inet[/10.212.32.97:9300]][indices:data/read/search[phase/query]]]; nested: ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: UncheckedExecutionException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]]; nested: CircuitBreakingException[[FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];

---

<div class="post-metadata">

**Author:** ![spalger](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/spalger/32/14092_2.png) [@spalger](https://discuss.elastic.co/u/spalger)\
**Post date:** [September 8, 2016, 9:43pm UTC](https://discuss.elastic.co/t/courier-fetch-7-of-80-shared-failed/59959/2 "2016-09-08T21:43:18Z")

</div>

> [@geek876](#):
>
> ElasticsearchException[org.elasticsearch.common.breaker.CircuitBreakingException: [FIELDDATA] Data too large, data for [@timestamp] would be larger than limit of [639015321/609.4mb]];

That bit right there is the primary issue, Elasticsearch is preventing the shard from processing the query because there isn't enough memory available to handle the request.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 1:39pm UTC](https://discuss.elastic.co/t/courier-fetch-7-of-80-shared-failed/59959/3 "2017-07-06T13:39:19Z")

</div>


