# Logstash pipeline is not executing changes when I run it for second time

**URL:** <https://discuss.elastic.co/t/logstash-pipeline-is-not-executing-changes-when-i-run-it-for-second-time/107846>\
**Category:** Logstash\
**Created:** [November 16, 2017, 1:16am UTC](https://discuss.elastic.co/t/logstash-pipeline-is-not-executing-changes-when-i-run-it-for-second-time/107846 "2017-11-16T01:16:24Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Seyf\_Souissi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/seyf_souissi/32/23586_2.png) [@Seyf\_Souissi](https://discuss.elastic.co/u/Seyf_Souissi)\
**Post date:** [November 16, 2017, 1:16am UTC](https://discuss.elastic.co/t/logstash-pipeline-is-not-executing-changes-when-i-run-it-for-second-time/107846/1 "2017-11-16T01:16:25Z")

</div>

Hi,  
When I run logstash config file, I can see the index created in elastic search. But when I run it again with few changes( like changing index name) I can see logstash pipeline has started but the index is not created in elastic search.

I am checking the indexes by looking on ES indexes : [http://localhost:9200/\_cat/indices?v](http://localhost:9200/_cat/indices?v) and through KIbana management too.

Can anybody help me on this.

This is my config file :

```
input 
{
  file 
  {
    path => "/home/seif/Documents/logstash/logs/A20171010.1500-1505-ACTIVITY-JOB_ESA.xml"
    start_position => "beginning"
  }
}
filter {
 
  xml 
  {
      source => "message"
      #target => "xmldata"
      store_xml => "false"
      xpath => ["/measCollecFile/fileHeader/measCollec/@beginTime/text()","beginTime"]
      xpath => ["/measCollecFile/measData/measInfo/measType/text()","measType"]
      xpath => ["/measCollecFile/measData/measInfo/measValue/r/text()","measValue"]
      xpath => ["/measCollecFile/fileFooter/measCollec/@endTime/text()","endTime"]
  }
  
   if "_grokparsefailure" in [tags]
    {
              drop { }
    } else 
    {
        mutate 
        { 
            remove_field => ["message"] 
        }

        mutate 
        {
        	replace => 
 			    {
    			 "measType" => "%{[measType][0]}"
    			 "measValue" => "%{[measValue][0]}"
  			   }
      	}  
  	}
}
output
{
	elasticsearch
	{
		hosts => ["localhost:9200"]
		user => elastic
		password => changeme
		index => ["testxml"]
	}
	stdout { codec => rubydebug }
}
```

---

<div class="post-metadata">

**Author:** ![magnusbaeck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/magnusbaeck/32/44943_2.png) [@magnusbaeck](https://discuss.elastic.co/u/magnusbaeck)\
**Post date:** [November 16, 2017, 6:37am UTC](https://discuss.elastic.co/t/logstash-pipeline-is-not-executing-changes-when-i-run-it-for-second-time/107846/2 "2017-11-16T06:37:09Z")

</div>

This is expected since Logstash has already processed the input file. If you want to process it again you need to reset the sincedb file or disable it. See the file input documentation for details.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 14, 2017, 6:37am UTC](https://discuss.elastic.co/t/logstash-pipeline-is-not-executing-changes-when-i-run-it-for-second-time/107846/3 "2017-12-14T06:37:14Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
