I am using the Elasticsearch input plugin to move a very large number of logs from one cluster to another. Logstash has been running for about 72 hours now and is pretty sluggish. I was thinking of adding a 2nd Elasticsearch host to the input so that Logstash could pull logs from more than one location, but I need to know first: Will reloading the pipeline cause Logstash to start ingestion all over or will it pick up where it left off once the reload is complete?
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.