# Mysql data no longer getting into ES

**URL:** <https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635>\
**Category:** Beats\
**Tags:** packetbeat\
**Created:** [January 7, 2016, 2:56pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635 "2016-01-07T14:56:04Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![Guillaume\_Vachon](https://avatars.discourse-cdn.com/v4/letter/g/a698b9/32.png) [@Guillaume\_Vachon](https://discuss.elastic.co/u/Guillaume_Vachon)\
**Post date:** [January 7, 2016, 2:56pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/1 "2016-01-07T14:56:04Z")

</div>

Hi all,

I have been running packetbeat to collect mysql data since the early beta and it always worked perfectly. I upgraded through every release and now im running 1.0.1.

Sending the mysql data stopped working a week ago and it seems to be around the time we switched from mysqli to pdo. Could there be a link between the 2?

I used to gather in ES about 5000 entry per 10 seconds and now I get about 15 entry per 30 minutes.

Using packetbeat -e -c /etc/packetbeat/packetbeat.yml -d "publish,mysql,mysqldetailed"  
I get the following:

2016/01/07 14:45:09.786543 mysql.go:205: DBG MySQL parser called. parseState = Start  
2016/01/07 14:45:09.786555 mysql.go:221: DBG MySQL Header: Packet length 10, Seq 0, Type=23  
2016/01/07 14:45:09.786563 mysql.go:315: DBG Message complete. remaining=0  
2016/01/07 14:45:09.786578 mysql.go:205: DBG MySQL parser called. parseState = Start  
2016/01/07 14:45:09.786586 mysql.go:221: DBG MySQL Header: Packet length 12, Seq 1, Type=0  
2016/01/07 14:45:09.786593 mysql.go:247: DBG Received OK response  
2016/01/07 14:45:09.786601 mysql.go:315: DBG Message complete. remaining=43  
2016/01/07 14:45:09.786635 mysql.go:644: WARN Response from unknown transaction. Ignoring.

---

<div class="post-metadata">

**Author:** ![steffens](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/steffens/32/79630_2.png) [@steffens](https://discuss.elastic.co/u/steffens)\
**Post date:** [January 7, 2016, 9:09pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/2 "2016-01-07T21:09:56Z")

</div>

in comparison to mysqli, pdo seems to use prepared statements (or your implementation changed?), which is currently not supported by mysql.

The Request `Type=23` is the [execute statement request](https://dev.mysql.com/doc/internals/en/com-stmt-execute.html), which is currently ignored by packetbeat.

---

<div class="post-metadata">

**Author:** ![Guillaume\_Vachon](https://avatars.discourse-cdn.com/v4/letter/g/a698b9/32.png) [@Guillaume\_Vachon](https://discuss.elastic.co/u/Guillaume_Vachon)\
**Post date:** [January 8, 2016, 1:47pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/3 "2016-01-08T13:47:07Z")

</div>

Alright at least there is an explanation and it make sense!

Do you know if there are any plan to support type 23?

Many thanks for your time.

---

<div class="post-metadata">

**Author:** ![steffens](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/steffens/32/79630_2.png) [@steffens](https://discuss.elastic.co/u/steffens)\
**Post date:** [January 8, 2016, 4:24pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/4 "2016-01-08T16:24:07Z")

</div>

It's about supporting prepared statements in mysql analyzer in general. I'm not aware of any plans, but feel free to add a [feature request](https://github.com/elastic/beats/issues). We're always happy about community contributions 😉

---

<div class="post-metadata">

**Author:** ![Guillaume\_Vachon](https://avatars.discourse-cdn.com/v4/letter/g/a698b9/32.png) [@Guillaume\_Vachon](https://discuss.elastic.co/u/Guillaume_Vachon)\
**Post date:** [January 8, 2016, 5:55pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/5 "2016-01-08T17:55:30Z")

</div>

Many thanks for your time and help!

Have a great day 🙂

---

<div class="post-metadata">

**Author:** ![steffens](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/steffens/32/79630_2.png) [@steffens](https://discuss.elastic.co/u/steffens)\
**Post date:** [January 11, 2016, 11:39am UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/6 "2016-01-11T11:39:34Z")

</div>

You can track the [issue on github](https://github.com/elastic/beats/issues/683)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 5, 2017, 9:56pm UTC](https://discuss.elastic.co/t/mysql-data-no-longer-getting-into-es/38635/7 "2017-07-05T21:56:53Z")

</div>


