# Filebeat not able to send all logs

**URL:** <https://discuss.elastic.co/t/filebeat-not-able-to-send-all-logs/273488>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [May 20, 2021, 8:10am UTC](https://discuss.elastic.co/t/filebeat-not-able-to-send-all-logs/273488 "2021-05-20T08:10:25Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![msjsitl](https://avatars.discourse-cdn.com/v4/letter/m/9e8a1a/32.png) [@msjsitl](https://discuss.elastic.co/u/msjsitl)\
**Post date:** [May 20, 2021, 8:10am UTC](https://discuss.elastic.co/t/filebeat-not-able-to-send-all-logs/273488/1 "2021-05-20T08:10:26Z")

</div>

Hello all,  
I am using filebeat 7.9.3. Recently we did load testing on our server almost 4 hours. During load testing almost 1 and GB files created every hour. File rotation policy is after every 1 hour.

Before load testing for every 1 hour log file size is almost 300 to 400 MB.

I am sending logs to logstash -\> Elasticsearch-\>Kibana. But we didn't get all logs generated during load test in kibana.

PFB filebeat.yml

```
filebeat.inputs:

- type: log
  enabled: true
  paths:
	- /apps/applog/01/logs/jd.log
	- /apps/applog/02/logs/jd.log
	- /apps/applog/03/logs/jd.log
	- /apps/applog/04/logs/jd.log

  multiline.pattern: '^[0-9]{4}-[0-9]{2}-[0-9]{2}'
  multiline.negate: true
  multiline.match: after
  fields_under_root: true
  fields:
labels.kind: cs
labels.app_source: r3-cs
labels.environment: uat

close_renamed: true

output.logstash:
  hosts: ["localhost:5044"]
  ssl.certificate_authorities: "/etc/filebeat/local.pem"
```

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 17, 2021, 10:11am UTC](https://discuss.elastic.co/t/filebeat-not-able-to-send-all-logs/273488/2 "2021-06-17T10:11:09Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
