# Logstash Bulk load balancing

**URL:** <https://discuss.elastic.co/t/logstash-bulk-load-balancing/69828>\
**Category:** Logstash\
**Created:** [December 22, 2016, 5:31pm UTC](https://discuss.elastic.co/t/logstash-bulk-load-balancing/69828 "2016-12-22T17:31:21Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![eperry](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/eperry/32/551_2.png) [@eperry](https://discuss.elastic.co/u/eperry)\
**Post date:** [December 22, 2016, 5:31pm UTC](https://discuss.elastic.co/t/logstash-bulk-load-balancing/69828/1 "2016-12-22T17:31:22Z")

</div>

I have 12 Logstash Indexers (Reading off of kafka) and have been noticing that sometimes only one Data node is processing all of the bulk requests.

Is there something missing in my logstash configurations

I guess I could just choose 2 servers for each indexer to send data too rather then specifying the whole cluster but I was hopping the Load balancing algorithm was better.

![](https://us1.discourse-cdn.com/elastic/original/2X/7/7a3edbfdd41651152324f6f152f86e936cbb3c61.png)

````auto
	elasticsearch {
		hosts => [{% for host in groups['es-data']|shuffle %}"{{ host }}:9210"{% if not loop.last %},{% endif %}{% endfor %} ]
		index => "%{dst_index}-%{+YYYY.MM.dd}"
		template => "{{ template_filename }}"
		template_overwrite => "true"
		workers => 32
                flush_size => 8000
		idle_flush_time => 1
		#sniffing => true 
    }```
````

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 19, 2017, 5:31pm UTC](https://discuss.elastic.co/t/logstash-bulk-load-balancing/69828/2 "2017-01-19T17:31:36Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
