# Dedicated Ingest Node ES

**URL:** <https://discuss.elastic.co/t/dedicated-ingest-node-es/234479>\
**Category:** Elasticsearch\
**Created:** [May 27, 2020, 7:52am UTC](https://discuss.elastic.co/t/dedicated-ingest-node-es/234479 "2020-05-27T07:52:28Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![kirankumar](https://avatars.discourse-cdn.com/v4/letter/k/977dab/32.png) [@kirankumar](https://discuss.elastic.co/u/kirankumar)\
**Post date:** [May 27, 2020, 7:52am UTC](https://discuss.elastic.co/t/dedicated-ingest-node-es/234479/1 "2020-05-27T07:52:28Z")

</div>

Hey  
my environment betas -\> logstash -\> ES ( 1 node )  
I am planning to use the filebeat module to do some parsing  
betas -\> ES( 1node )  
I am handling about max 1.5 TB(MAX) of logs with 10 diff index created on a daily basis  
with 32 gig ram and JVM has 16 gig.  
Also running heavy query on daily basis

1. Do i need a separate ingest node
2. If so can I put separate Ingset node to get data from filebeat and send it to my main ES node where i do searching and storing (data node )
3. I have read that ES ingest node cannot handle data as good as logstash ?  
when there is a log bust can ES ingest node handle it same as logstash
4. IS this possible  
Filebeat --\> Ingest node -\> main ES node  
do i have join the two nodes into a cluster if so how do i handle split brain  
or else use as a data path without adding into cluster is it a good practice ?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 24, 2020, 7:52am UTC](https://discuss.elastic.co/t/dedicated-ingest-node-es/234479/2 "2020-06-24T07:52:30Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
