We have a Weblogic server and other applications/servers(HTTP server) that write logs to the Logs mount. In order to monitor the performance of the application, this mount is shared with the ELK stack.
After restarting ELK, we see high IOwiats on all Application Server instances where the /log mount is shared. Furthermore, ELK Linux instances have high IOwiat around the same time of restart.
ELK dockers are running on OEL 7.x ,16 core CPU and 31 GB memory
Elasticsearch is 3 node cluster .
logs mount is NFS mount
Is there a need to tune the ELK stack or how can we overcome this problem.