I am using the Elasticsearch input plugin to move a very large number of logs from one cluster to another. Logstash has been running for about 72 hours now and is pretty sluggish. I was thinking of adding a 2nd Elasticsearch host to the input so that Logstash could pull logs from more than one location, but I need to know first: Will reloading the pipeline cause Logstash to start ingestion all over or will it pick up where it left off once the reload is complete?
It will start over. It does not persist any state information about the query.
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.