# Need immediate help with disk utilization

**URL:** <https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165>\
**Category:** Elasticsearch\
**Created:** [April 12, 2016, 7:22pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165 "2016-04-12T19:22:50Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Class4](https://avatars.discourse-cdn.com/v4/letter/c/5e9695/32.png) [@Class4](https://discuss.elastic.co/u/Class4)\
**Post date:** [April 12, 2016, 7:22pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165/1 "2016-04-12T19:22:50Z")

</div>

Hi All,

I'm normally a systems guy (\*NIX/Windows), but our ES person is on vacation for the next few days & suddenly our disks are filling up (showing 96% at last check, our "alert threshold" is at 90%). I've been reviewing command histories/config files/web pages/etc. like crazy, but I haven't been able to figure out how to trim/truncate data in order to keep up. I was told that we have two "buckets" or containers, one that holds long-term data, & the other that holds shorter-term data, I'm hoping to be able to reduce the contents of the second container.

Since I only started this position a few days ago, I have effectively **_zero_** Elasticsearch knowledge. ☹ Would be really grateful for some help before our systems crash. I believe that I _have_ found the directories where the system holds the data, as well as the config file locations.

Thanks in advance for any help you might be able to provide.

---

<div class="post-metadata">

**Author:** ![magnusbaeck](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/magnusbaeck/32/44943_2.png) [@magnusbaeck](https://discuss.elastic.co/u/magnusbaeck)\
**Post date:** [April 12, 2016, 7:45pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165/2 "2016-04-12T19:45:58Z")

</div>

Do the indexes have any replicas that you can drop temporarily until things clear up? If you use a cluster dashboard plugin like kopf, ElasticHQ, head, or Marvel you should be able to get a decent overview of the size of the indexes and the replica situation. At least kopf allows you to easily adjust the replica count for each index (which you obviously can do via the REST API too).

---

<div class="post-metadata">

**Author:** ![Class4](https://avatars.discourse-cdn.com/v4/letter/c/5e9695/32.png) [@Class4](https://discuss.elastic.co/u/Class4)\
**Post date:** [April 12, 2016, 8:02pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165/3 "2016-04-12T20:02:08Z")

</div>

**_Thank you_** for the quick reply! We do utilize head (if that's the one in the '../\_plugin/head/' file structure), and I am digging through that UI now.

---

<div class="post-metadata">

**Author:** ![Class4](https://avatars.discourse-cdn.com/v4/letter/c/5e9695/32.png) [@Class4](https://discuss.elastic.co/u/Class4)\
**Post date:** [April 12, 2016, 8:12pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165/4 "2016-04-12T20:12:35Z")

</div>

Within the 'Indices' tab in head, I see seven entries, with three columns. The 1st column lists the index name, the 2nd column is titled 'Size', & the 3rd is called 'Docs'.

The interesting thing to me is that the data in the 'Size' column appears to be listed as two values (i.e., "x.xTi/y.yTi") where the first value (x.x) is 50% of the 2nd value (y.y).

So far though, I'm not seeing anything that references replicas. Thanks again for the reply.

---

<div class="post-metadata">

**Author:** ![Class4](https://avatars.discourse-cdn.com/v4/letter/c/5e9695/32.png) [@Class4](https://discuss.elastic.co/u/Class4)\
**Post date:** [April 13, 2016, 6:43pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165/5 "2016-04-13T18:43:40Z")

</div>

Issue resolved, topic can now be closed.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 5, 2017, 10:59pm UTC](https://discuss.elastic.co/t/need-immediate-help-with-disk-utilization/47165/6 "2017-07-05T22:59:30Z")

</div>


