# Elastic Logging - How to Trace a Request Across Multiple Remote Clusters (v8.10.2)

**URL:** https://discuss.elastic.co/t/elastic-logging-how-to-trace-a-request-across-multiple-remote-clusters-v8-10-2/382634
**Category:** Elasticsearch
**Created:** [October 13, 2025, 12:29pm UTC](https://discuss.elastic.co/t/elastic-logging-how-to-trace-a-request-across-multiple-remote-clusters-v8-10-2/382634 "2025-10-13T12:29:07Z")
**Posts on this page:** 2
**Page:** 1

<div class="post-metadata">

### Author: ![sakshijain](https://avatars.discourse-cdn.com/v4/letter/s/fbc32d/32.png) [@sakshijain](https://discuss.elastic.co/u/sakshijain)
#### Post date: [October 13, 2025, 12:29pm UTC](https://discuss.elastic.co/t/elastic-logging-how-to-trace-a-request-across-multiple-remote-clusters-v8-10-2/382634/1 "2025-10-13T12:29:07Z")

</div>

We have a cross-cluster setup with the following components:

- 2 coordinator clusters

- Multiple remote (data) clusters

We’ve enabled **slow logs** on the remote clusters to capture details such as:

- Search execution time

- Number of hits

- Query info per node

However, since the slow logs are generated **per node** , and a single search request can span multiple clusters, it becomes difficult to trace a request end-to-end.

**Questions:**

1. What is the recommended way to trace a single request across clusters, given that logs are distributed across multiple nodes and clusters?

2. Is there a way to **aggregate or centralize logs** , so we can correlate data for a single request more easily?

3. Is there a **better way to log search/index requests** , especially in a multi-cluster setup?

**Note:**  
We currently **cannot enable audit logging** , as **security features are disabled** in our environment.  
**Elastic version:** 8.10.2

---

<div class="post-metadata">

### Author: ![sakshijain](https://avatars.discourse-cdn.com/v4/letter/s/fbc32d/32.png) [@sakshijain](https://discuss.elastic.co/u/sakshijain)
#### Post date: [October 14, 2025, 2:10pm UTC](https://discuss.elastic.co/t/elastic-logging-how-to-trace-a-request-across-multiple-remote-clusters-v8-10-2/382634/3 "2025-10-14T14:10:28Z")

</div>

Is there any way to log such information in the coordinator (local) cluster or somewhere, from which remote cluster (node /shard) the data is retrieved
