# Logstash can't communicate to es and attempted to resurrect dead es instance

**URL:** <https://discuss.elastic.co/t/logstash-cant-communicate-to-es-and-attempted-to-resurrect-dead-es-instance/221385>\
**Category:** Logstash\
**Created:** [February 28, 2020, 8:26am UTC](https://discuss.elastic.co/t/logstash-cant-communicate-to-es-and-attempted-to-resurrect-dead-es-instance/221385 "2020-02-28T08:26:06Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![zeghitsama](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/zeghitsama/32/62988_2.png) [@zeghitsama](https://discuss.elastic.co/u/zeghitsama)\
**Post date:** [February 28, 2020, 8:26am UTC](https://discuss.elastic.co/t/logstash-cant-communicate-to-es-and-attempted-to-resurrect-dead-es-instance/221385/1 "2020-02-28T08:26:06Z")

</div>

Hi, I'm getting error on logstash that want to communicate to elasticsearch. I've already set my username and password on conf.d.

Here's my detail on my conf file.

```
input {
        beats {
                id => "01-beats-input"
                port => 5044
                tags => "filebeat"
        }
}

filter {
        if "filebeat" in [tags] {
                mutate {
                        add_tag => ["beats"]
                }
        }
}

output {
        if "beats" in [tags] {
                elasticsearch {
                        id => "beats-output"
                        hosts => ["192.168.19.195:9200"]
    			user => elastic
    			password => elastic123
                        index => "%{[@metadata][beat]}-%{[@metadata][version]}-%{+YYYY.MM.dd}"
                }
        }
}

```

And here's my es yml file

```
# ======================== Elasticsearch Configuration =========================

#

# NOTE: Elasticsearch comes with reasonable defaults for most settings.

# Before you set out to tweak and tune the configuration, make sure you

# understand what are you trying to accomplish and the consequences.

#

# The primary way of configuring a node is via this file. This template lists

# the most important settings you may want to configure for a production cluster.

#

# Please consult the documentation for further information on configuration options:

# https://www.elastic.co/guide/en/elasticsearch/reference/index.html

#

# ---------------------------------- Cluster -----------------------------------

#

# Use a descriptive name for your cluster:

#

#cluster.name: my-application

cluster.name: mycluster

#

# ------------------------------------ Node ------------------------------------

#

# Use a descriptive name for the node:

#

#node.name: node-1

node.name: node-1

#

# Add custom attributes to the node:

#

#node.attr.rack: r1

node.attr.rack: r1

#

# ----------------------------------- Paths ------------------------------------

#

# Path to directory where to store the data (separate multiple locations by comma):

#

path.data: /var/lib/elasticsearch

#

# Path to log files:

#

path.logs: /var/log/elasticsearch

#

# ----------------------------------- Memory -----------------------------------

#

# Lock the memory on startup:

#

#bootstrap.memory_lock: true

bootstrap.memory_lock: true

#

# Make sure that the heap size is set to about half the memory available

# on the system and that the owner of the process is allowed to use this

# limit.

#

# Elasticsearch performs poorly when the system is swapping the memory.

#

# ---------------------------------- Network -----------------------------------

#

# Set the bind address to a specific IP (IPv4 or IPv6):

#

#network.host: 192.168.0.1

network.host: 192.168.19.195

#

# Set a custom port for HTTP:

#

#http.port: 9200

#

# For more information, consult the network module documentation.

#

# --------------------------------- Discovery ----------------------------------

#

# Pass an initial list of hosts to perform discovery when this node is started:

# The default list of hosts is ["127.0.0.1", "[::1]"]

#

#discovery.seed_hosts: ["host1", "host2"]

discovery.seed_hosts: ["192.168.19.195", "192.168.19.111"]

#

# Bootstrap the cluster using an initial set of master-eligible nodes:

#

#cluster.initial_master_nodes: ["node-1", "node-2"]

cluster.initial_master_nodes: ["node-1", "node-2"]

#

# For more information, consult the discovery and cluster formation module documentation.

#

# ---------------------------------- Gateway -----------------------------------

#

# Block initial recovery after a full cluster restart until N nodes are started:

#

#gateway.recover_after_nodes: 3

#

# For more information, consult the gateway module documentation.

#

# ---------------------------------- Various -----------------------------------

#

# Require explicit names when deleting indices:

#

#action.destructive_requires_name: true

xpack.security.transport.ssl.enabled: true

xpack.security.transport.ssl.verification_mode: certificate

xpack.security.transport.ssl.keystore.path: elastic-certificates.p12

xpack.security.transport.ssl.truststore.path: elastic-certificates.p12

xpack.security.enabled: true
```

---

<div class="post-metadata">

**Author:** ![ahmed\_charafouddine](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ahmed_charafouddine/32/45129_2.png) [@ahmed\_charafouddine](https://discuss.elastic.co/u/ahmed_charafouddine)\
**Post date:** [February 28, 2020, 9:16am UTC](https://discuss.elastic.co/t/logstash-cant-communicate-to-es-and-attempted-to-resurrect-dead-es-instance/221385/2 "2020-02-28T09:16:19Z")

</div>

`id => "beats-output"` is not an option for the logstash output plugin

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 27, 2020, 9:16am UTC](https://discuss.elastic.co/t/logstash-cant-communicate-to-es-and-attempted-to-resurrect-dead-es-instance/221385/3 "2020-03-27T09:16:30Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
