I am working on building out a small POC for Logstash and Elasticsearch. To
start, I have a 2 server setup.
- Server 1 - logstash1 - running "java -jar logstash-1.2.2-flatjar.jar
agent -f indexer.conf" - This server is tailing logs from a syslog config file and then sending
them to an Elasticsearch server. - Server 2 - elasticsearch1 - running elasticsearch as a daemon (CentOS
box that i used an rpm instal - version - 0.90.3.)- This server is also running Kibana."java -jar
/etc/logstash/logstash-1.2.2-flatjar.jar web"
- This server is also running Kibana."java -jar
Overall things seem to be working pretty well. I started to do some general
diagnostics on the elasticsearch server to see how the cluster was doing,
and I saw that it was red.
[root@elasticsearch1 elasticsearch]# curl -XGET
'http://localhost:9200/_cluster/health?pretty=true'
{
"cluster_name" : "my-cluster",
"status" : "red",
"timed_out" : false,
"number_of_nodes" : 2,
"number_of_data_nodes" : 1,
"active_primary_shards" : 35,
"active_shards" : 35,
"relocating_shards" : 0,
"initializing_shards" : 0,
"unassigned_shards" : 55
When I saw that it was red and that there were 2 nodes, I was confused as
there should only be 1 elasticsearch node. Upon digging further, I see this:
[root@elasticsearch1 elasticsearch]# curl
localhost:9200/_nodes/process?pretty
{
"ok" : true,
"cluster_name" : "my-cluster",
"nodes" : {
"ab8COl6pTj-kJSzrXZTE2w" : {
"name" : "Lupo",
"transport_address" : "inet[/192.168.0.10:9300]",
"hostname" : "logstash1",
"version" : "0.90.3",
"attributes" : {
"client" : "true",
"data" : "false"
},
"process" : {
"refresh_interval" : 1000,
"id" : 4380,
"max_file_descriptors" : 3200
}
},
"FMgeliZPRdQZwy-IZ9MUIp" : {
"name" : "Elasticsearch Server1",
"transport_address" : "inet[/192.168.0.20:9300]",
"hostname" : "elasticsearch1",
"version" : "0.90.3",
"http_address" : "inet[/192.168.0.20:9200]",
"attributes" : {
"master" : "true"
},
"process" : {
"refresh_interval" : 1000,
"id" : 15653,
"max_file_descriptors" : 65535
}
}
}
I am confused why server1, logstash1, is showing up in the elasticsearch
cluster. I'm only running logstash as an indexer and not the built in
elasticsearch feature. How do I get this server to stop showing up in my
cluster? When I look on the logstash1 server, I don't see any elasticsearch
data or indexes like I do on my elasticsearch1 servers. So I don't think
data is truly going to it, but I don't want it to show up.
Thanks,
Eric
--
You received this message because you are subscribed to the Google Groups "elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an email to elasticsearch+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/79821bd7-3679-4fb9-b78f-8c4b292357c7%40googlegroups.com.
For more options, visit https://groups.google.com/groups/opt_out.