# Elasticsearch Slowlog methodology clarification

**URL:** <https://discuss.elastic.co/t/elasticsearch-slowlog-methodology-clarification/253940>\
**Category:** Elasticsearch\
**Created:** [November 1, 2020, 2:35pm UTC](https://discuss.elastic.co/t/elasticsearch-slowlog-methodology-clarification/253940 "2020-11-01T14:35:13Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![wittydavid](https://avatars.discourse-cdn.com/v4/letter/w/8e7dd6/32.png) [@wittydavid](https://discuss.elastic.co/u/wittydavid)\
**Post date:** [November 1, 2020, 2:35pm UTC](https://discuss.elastic.co/t/elasticsearch-slowlog-methodology-clarification/253940/1 "2020-11-01T14:35:14Z")

</div>

Hi all,  
I've read through several sources on slowlogs and I can't get my head around how should I configure it.  
To my understanding the granularity of the elasticsearch logging levels are from low to high: WARN, INFO, DEBUG, TRACE. To my understanding (and for simplicity sake) if WARN level provides details on an "X" level INFO is "2X" etc... i.e the higher we go the more verbose the log is with detail.  
This is paired with a threshold in order catch operations that take longer than a specified time.

If that is the case the configuration should look something like this -  
(I used seconds here just to make it clear that I'm going up with the time count along with the level of log granularity)

```auto
PUT /my_index/_settings {
"index.search.slowlog.threshold.query.warn" : "1s",
"index.search.slowlog.threshold.query.info" : "5s",
"index.search.slowlog.threshold.query.debug" : "10s",
"index.search.slowlog.threshold.query.trace" : "15s",
}

```

Did I understand it correctly? Does it make sense to configure "slowlogs" like that?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 29, 2020, 2:35pm UTC](https://discuss.elastic.co/t/elasticsearch-slowlog-methodology-clarification/253940/2 "2020-11-29T14:35:19Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
