# ElasticSearch as a time series database

**URL:** <https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279>\
**Category:** Elasticsearch\
**Created:** [March 5, 2020, 11:45am UTC](https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279 "2020-03-05T11:45:07Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Avinash\_D\_Silva](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/avinash_d_silva/32/45312_2.png) [@Avinash\_D\_Silva](https://discuss.elastic.co/u/Avinash_D_Silva)\
**Post date:** [March 5, 2020, 11:45am UTC](https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279/1 "2020-03-05T11:45:07Z")

</div>

we currently have data that looks something like this

**index** : `device_data_2020-01-01` and docs looks something like this

```auto
{deviceId: "a001", timestamp: "2020-02-21T19:33:00", metrics:{ port0: 12, port1: 13 }}
{deviceId: "a002", timestamp: "2020-02-21T19:33:00", , metrics:{ port0: 14, port1: 15, port3: 22 }}
{deviceId: "a001", timestamp: "2020-02-21T19:34:00", metrics:{ port0: 13, port1: 12 }}
and so on ...

```

a single document is around 5KB,  
the column names are not fixed and it is pretty nice that they get indexed automatically.

The only issue we keep hitting are the artificial limits like max columns per index and max rows returned(we heavily rely on Elasticsearch's SQL functionality which makes life so much easier to create reports).

two questions,

is elastic-search a good fit for this or are we abusing ElasticSearch? (at the moment, data is around a gig but we expect it grow to 4TB)

we don't use elastic-search for any kind of search, is there any way we can disable the text search indexing throughout the index `device_data_*`. I don't know if we will save anything though.

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [March 5, 2020, 7:27pm UTC](https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279/2 "2020-03-05T19:27:08Z")

</div>

By columns, do you mean you are getting warnings about exceeding field limits?

---

<div class="post-metadata">

**Author:** ![Avinash\_D\_Silva](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/avinash_d_silva/32/45312_2.png) [@Avinash\_D\_Silva](https://discuss.elastic.co/u/Avinash_D_Silva)\
**Post date:** [March 6, 2020, 10:16am UTC](https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279/3 "2020-03-06T10:16:00Z")

</div>

> [@warkolm](#):
>
> By columns, do you mean you are getting warnings about exceeding field limits?

yes but that is not the problem, I know you can change the field limit.  
the question primarily, "is elasticSearch right for such a use case for wherein time-series data is retained for 2 to 3 years" which no one seems to know or answer

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [March 8, 2020, 9:00pm UTC](https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279/4 "2020-03-08T21:00:14Z")

</div>

I've been using ES for storing log data for 7-8 years now, and it's probably our most popular use case.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 5, 2020, 9:00pm UTC](https://discuss.elastic.co/t/elasticsearch-as-a-time-series-database/222279/5 "2020-04-05T21:00:27Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
