# Need help on logstash scalability

**URL:** <https://discuss.elastic.co/t/need-help-on-logstash-scalability/150528>\
**Category:** Logstash\
**Created:** [October 1, 2018, 8:20am UTC](https://discuss.elastic.co/t/need-help-on-logstash-scalability/150528 "2018-10-01T08:20:24Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![anra137](https://avatars.discourse-cdn.com/v4/letter/a/97f17d/32.png) [@anra137](https://discuss.elastic.co/u/anra137)\
**Post date:** [October 1, 2018, 8:20am UTC](https://discuss.elastic.co/t/need-help-on-logstash-scalability/150528/1 "2018-10-01T08:20:24Z")

</div>

With single logstash, all successfully running. But when I try to add another logstash, it throws error as below. Logstash pipeline started successfully but error on reaching elasticsearch. I have a elasticsearch cluster consists of one coordinating only node and 2 master eligible nodes. I am trying to reach coordinating only node(running on another machine) in my logstash output config.

```
[2018-10-01T10:09:17,924][INFO][logstash.inputs.beats] Beats inputs: Starting input listener {:address=&gt;"0.0.0.0:5443"}

[2018-10-01T10:09:17,996][INFO][logstash.pipeline] Pipeline started successfully {:pipeline_id=&gt;"main", :thread=&gt;"#&lt;Thread:0x70bb428a@/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:247 run&gt;"}

[2018-10-01T10:09:18,025][INFO][logstash.agent] Pipelines running {:count=&gt;1, :pipelines=&gt;["main"]}

[2018-10-01T10:09:18,036][INFO][org.logstash.beats.Server] Starting server on port: 5443

[2018-10-01T10:09:22,112][INFO][logstash.outputs.elasticsearch] Running health check to see if an Elasticsearch connection is working {:healthcheck_url=&gt;http://elastic:elastic@:9200/, :path=&gt;"/"}

[2018-10-01T10:09:22,124][WARN][logstash.outputs.elasticsearch] Attempted to resurrect connection to dead ES instance, but got an error. {:url=&gt;"http://elastic:elastic@:9200/", :error_type=&gt;LogStash::Outputs::ElasticSearch::HttpClient::Pool::HostUnreachableError, :error=&gt;"Elasticsearch Unreachable: [http://elastic:elastic@:9200/][Manticore::ClientProtocolException] URI does not specify a valid host name: http:/"}

```

And my logstash config  
output {  
elasticsearch {  
hosts =\> ["[http://x.x.x.x:9200](http://x.x.x.x:9200)"]  
user =\> elastic  
password =\> elastic  
sniffing =\> true  
manage\_template =\> false  
index =\> "%{[@metadata][beat]}-%{[@metadata][version]}-%{+YYYY.MM.dd}"  
}  
}

If I execute locally it works --  
curl -XGET "[http://x.x.x.x:9200](http://x.x.x.x:9200)"  
{  
"name" : "adtoox-master",  
"cluster\_name" : "adtoox-cluster",  
"cluster\_uuid" : "XCuJPpPcQvyGw0WH1D\_GNg",  
"version" : {  
"number" : "6.2.4",  
"build\_hash" : "ccec39f",  
"build\_date" : "2018-04-12T20:37:28.497551Z",  
"build\_snapshot" : false,  
"lucene\_version" : "7.2.1",  
"minimum\_wire\_compatibility\_version" : "5.6.0",  
"minimum\_index\_compatibility\_version" : "5.0.0"  
},  
"tagline" : "You Know, for Search"  
}

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 29, 2018, 8:20am UTC](https://discuss.elastic.co/t/need-help-on-logstash-scalability/150528/2 "2018-10-29T08:20:29Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
