Hi All,
I'm normally a systems guy (*NIX/Windows), but our ES person is on vacation for the next few days & suddenly our disks are filling up (showing 96% at last check, our "alert threshold" is at 90%). I've been reviewing command histories/config files/web pages/etc. like crazy, but I haven't been able to figure out how to trim/truncate data in order to keep up. I was told that we have two "buckets" or containers, one that holds long-term data, & the other that holds shorter-term data, I'm hoping to be able to reduce the contents of the second container.
Since I only started this position a few days ago, I have effectively zero Elasticsearch knowledge. Would be really grateful for some help before our systems crash. I believe that I have found the directories where the system holds the data, as well as the config file locations.
Thanks in advance for any help you might be able to provide.