# Elasticsearch stop output new log information

**URL:** <https://discuss.elastic.co/t/elasticsearch-stop-output-new-log-information/193495>\
**Category:** Elasticsearch\
**Created:** [August 2, 2019, 9:27am UTC](https://discuss.elastic.co/t/elasticsearch-stop-output-new-log-information/193495 "2019-08-02T09:27:14Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![web\_it\_web\_it](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/web_it_web_it/32/51507_2.png) [@web\_it\_web\_it](https://discuss.elastic.co/u/web_it_web_it)\
**Post date:** [August 2, 2019, 9:27am UTC](https://discuss.elastic.co/t/elasticsearch-stop-output-new-log-information/193495/1 "2019-08-02T09:27:15Z")

</div>

Hello. We install Kibana+Elasticsearch+logstash and monitoring apache logs. One day Kibana stop to output new log`s information and logstash log has an error:

```
][logstash.outputs.elasticsearch] Could not index event to Elasticsearch. {:status=>400, :action=>["index", {:_id=>nil, :_index=>"billing.dostek.kg_access-2019.08.02", :_type=>"_doc", :routing=>nil}, #<LogStash::Event:0x12844f0a>], :response=>{"index"=>{"_index"=>"date-2019.08.02", "_type"=>"_doc", "_id"=>nil, "status"=>400, "error"=>{"type"=>"validation_exception", "reason"=>"Validation Failed: 1: this action would add [2] total shards, but this cluster currently has [1000]/[1000] maximum shards open;"}}}}

```

Anybosy knows how to solve that problem?

---

<div class="post-metadata">

**Author:** ![spinscale](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/spinscale/32/25011_2.png) [@spinscale](https://discuss.elastic.co/u/spinscale)\
**Post date:** [August 2, 2019, 10:27am UTC](https://discuss.elastic.co/t/elasticsearch-stop-output-new-log-information/193495/2 "2019-08-02T10:27:50Z")

</div>

See [https://www.elastic.co/guide/en/elasticsearch/reference/7.3/misc-cluster.html#cluster-shard-limit](https://www.elastic.co/guide/en/elasticsearch/reference/7.3/misc-cluster.html#cluster-shard-limit)

you should really try to reduce the number of shards. There are different ways of doing this, using the shrink API, reducing the number of primary shards for new indices or the number of replicas.

--Alex

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 30, 2019, 10:27am UTC](https://discuss.elastic.co/t/elasticsearch-stop-output-new-log-information/193495/3 "2019-08-30T10:27:57Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
