# Load balancing

**URL:** <https://discuss.elastic.co/t/load-balancing/99034>\
**Category:** Logstash\
**Created:** [August 31, 2017, 6:22pm UTC](https://discuss.elastic.co/t/load-balancing/99034 "2017-08-31T18:22:49Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![hburnswell](https://avatars.discourse-cdn.com/v4/letter/h/9e8a1a/32.png) [@hburnswell](https://discuss.elastic.co/u/hburnswell)\
**Post date:** [August 31, 2017, 6:22pm UTC](https://discuss.elastic.co/t/load-balancing/99034/1 "2017-08-31T18:22:49Z")

</div>

All,

I'm coming up to speed with the ELK stack in general and have a couple questions about best practices.

I'm starting with ingesting IIS logs with Filebeat -\> Logstash -\> Elasticsearch. I am loadbalancing with:

> filebeat.yml
> 
> output:
> 
> logstash:  
> hosts: ["host1:5044", "host2:5044", "host3:5044"]  
> loadbalance: true

> iis.yml
> 
> output {
> 
> elasticsearch {
> 
> ```
> hosts => ["host1:9200", "host2:9200", "host3:9200"]
> manage_template => false
> index => "%{[@metadata][beat]}"
> document_type => "%{[@metadata][type]}"
> 
> ```
> 
> }

1. Is this best way to configure load balancing, basically load balance at the beat level as well as the logstash level into ES?
2. Is there a way to see which node info traveled through to ES, i.e. filebeat -\> node2 logstash -\> node1 ES?

Thanks in advance,

HB

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 28, 2017, 6:22pm UTC](https://discuss.elastic.co/t/load-balancing/99034/2 "2017-09-28T18:22:50Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
