# ILM Hot, Warm, Cold not moving indexes

**URL:** <https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756>\
**Category:** Elasticsearch\
**Tags:** ilm-index-lifecycle-management\
**Created:** [January 10, 2024, 1:54pm UTC](https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756 "2024-01-10T13:54:45Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![DaddyYusk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/daddyyusk/32/127617_2.png) [@DaddyYusk](https://discuss.elastic.co/u/DaddyYusk)\
**Post date:** [January 10, 2024, 1:54pm UTC](https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756/1 "2024-01-10T13:54:45Z")

</div>

Hi,

Despite the ILM policy applied to all logs (Managed), the indexes are moved to the Warm node but not deleted on the Hot node and I'm actually reaching disk capacity on the Hot node...

Here is my Elastic Cluster :

```auto
w - ovh-dataw-1
hist - ovh-datah-1
mr - ovh-master-2
mr - ovh-master-3
mr * ovh-master-1
c - ovh-datac-1

```

Here is the output of a problematic index :

```auto
index shard prirep state docs store dataset ip node
.ds-logs-winlog.winlog-dc-2023.12.06-000001 0 p STARTED 57415011 50gb 50gb 192.168.74.42 ovh-datah-1
.ds-logs-winlog.winlog-dc-2023.12.06-000001 0 r STARTED 57415011 50gb 50gb 192.168.74.40 ovh-dataw-1

```

Running this query :

```auto
GET /.ds-logs-winlog.winlog-dc-2023.12.06-000001/_ilm/explain?human

```

I get this interesting output :

```auto
"message": "[.ds-logs-winlog.winlog-dc-2023.12.06-000001] lifecycle action [migrate] waiting for [1] shards to be moved to the [data_warm] tier (tier migration preference configuration is [data_warm, data_hot])",

```

Any idea please?  
Regards.

---

<div class="post-metadata">

**Author:** ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)\
**Post date:** [January 10, 2024, 2:00pm UTC](https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756/2 "2024-01-10T14:00:32Z")

</div>

> [@DaddyYusk](#):
>
> Any idea please?

In the ILM policy you configured it to remove the replicas?

I'm not sure, but I think this can impact as you only have one warm node.

Try to remove the replica of this index and see if it will move out from the hot node.

```auto
PUT /.ds-logs-winlog.winlog-dc-2023.12.06-000001/_settings
{
"index" : {
  "number_of_replicas" : 0
}
}

```

---

<div class="post-metadata">

**Author:** ![DaddyYusk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/daddyyusk/32/127617_2.png) [@DaddyYusk](https://discuss.elastic.co/u/DaddyYusk)\
**Post date:** [January 10, 2024, 3:10pm UTC](https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756/3 "2024-01-10T15:10:21Z")

</div>

Hi @leandrojmp,

And thanks a lot for your help!  
Indeed, it solved my issue.

> [@leandrojmp](#):
>
> In the ILM policy you configured it to remove the replicas?

How to configure that in the ILM (managed) please?

Now I need to configure all my indexes with no replica. So I will proceed like that :

```auto
PUT /_all/_settings
{
  "index" : {
      "number_of_replicas" : 0
  }
}

```

And for new indexes, as I'm using a Managed Index Template but there are many... I'm not sure how to proceed.  
Should I need to edit only "logs" or each "logs-elastic\_agent.XXX"?

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/f/a/fab9ccb784421ebb06a6a0f7090a62884b91c81b.png)

Thanks again!

---

<div class="post-metadata">

**Author:** ![DaddyYusk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/daddyyusk/32/127617_2.png) [@DaddyYusk](https://discuss.elastic.co/u/DaddyYusk)\
**Post date:** [January 11, 2024, 9:25am UTC](https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756/4 "2024-01-11T09:25:26Z")

</div>

Finally, for setting replica to 0 for new indexes, I go for editing all index templates manually.  
That was tedious but doable in less than 10min.  
Thanks again for your help!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 8, 2024, 9:26am UTC](https://discuss.elastic.co/t/ilm-hot-warm-cold-not-moving-indexes/350756/5 "2024-02-08T09:26:01Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
