# Filebeat Logstash Multiple Index error

**URL:** <https://discuss.elastic.co/t/filebeat-logstash-multiple-index-error/184845>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [June 8, 2019, 5:18pm UTC](https://discuss.elastic.co/t/filebeat-logstash-multiple-index-error/184845 "2019-06-08T17:18:38Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![rvjagadheesh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rvjagadheesh/32/47751_2.png) [@rvjagadheesh](https://discuss.elastic.co/u/rvjagadheesh)\
**Post date:** [June 8, 2019, 5:18pm UTC](https://discuss.elastic.co/t/filebeat-logstash-multiple-index-error/184845/1 "2019-06-08T17:18:39Z")

</div>

Why this config is not creating indexes in Kibana for Filebeat Logstash Multiple Indexes. Using 7.1.1 version

**filebeat.yml**

#=========================== Filebeat inputs =============================

filebeat.inputs:

- type: log

- type: log  
enabled: true  
paths:

#----------------------------- Logstash output --------------------------------  
output.logstash:  
hosts: ["localhost:5044"]  
index: "index-%{[fields.type]:other}"

**logstash.conf**

input {  
beats {  
port =\> 5044  
}  
}

output {  
elasticsearch {  
hosts =\> "localhost:9200"  
manage\_template =\> false  
index =\> "%{[@metadata][beat]}-%{+YYYY.MM.dd}"  
document\_type =\> "%{[@metadata][type]}"  
}  
}

---

<div class="post-metadata">

**Author:** ![shaunak](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/shaunak/32/6643_2.png) [@shaunak](https://discuss.elastic.co/u/shaunak)\
**Post date:** [June 12, 2019, 8:44pm UTC](https://discuss.elastic.co/t/filebeat-logstash-multiple-index-error/184845/2 "2019-06-12T20:44:15Z")

</div>

Hi @rvjagadheesh and welcome to the Elastic community.

Could you please post your Filebeat log here? Maybe that will give us a clue as to what's going on. Please be sure to mask any sensitive information in the log before posting it.

Also, could you try to temporarily disable the Logstash output in filebeat and use the [Console output](https://www.elastic.co/guide/en/beats/filebeat/current/console-output.html) instead, just for debugging purposes? This will at least tell us if the issue is somewhere on the Filebeat side or the Logstash side.

Thanks,

Shaunak

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 10, 2019, 8:44pm UTC](https://discuss.elastic.co/t/filebeat-logstash-multiple-index-error/184845/3 "2019-07-10T20:44:34Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
