Elasticsearch incomplete logs


I have filebeat to read my inputs and logstash is the shipper to elasticsearch. But could found that the data in filebeat is not sending to elasticsearch completely.

Pls do help.

Thank you
Athira Krishna

what are you observing?
Are random lines not coming in, is it only sending new events etc.

Could you explain a bit more on your setup and what you are seeing.

Depending on what you are seeing there are a number of things which could explain it, to name two of the more frequent I have encountered:

  • filebeat configuration ignoring or dropping events
  • mapping conflicts on ingest.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.