# Need to Ingest Small Log Files in Real-Time 

**URL:** <https://discuss.elastic.co/t/need-to-ingest-small-log-files-in-real-time/380826>\
**Category:** Elastic Agent\
**Created:** [August 6, 2025, 1:34pm UTC](https://discuss.elastic.co/t/need-to-ingest-small-log-files-in-real-time/380826 "2025-08-06T13:34:49Z")\
**Posts on this page:** 1\
**Showing post:** 2

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [August 6, 2025, 1:40pm UTC](https://discuss.elastic.co/t/need-to-ingest-small-log-files-in-real-time/380826/2 "2025-08-06T13:40:57Z")

</div>

Closed as duplicate of

> [@Need to Ingest Small Log Files in Real-Time](https://discuss.elastic.co/t/need-to-ingest-small-log-files-in-real-time/380823):
>
> Hello everyone, I am currently working with Elasticsearch v8.17.3 using the Custom Logs (Filestream) integration via Elastic Agent. I have encountered a problem: Filestream only starts ingesting a file when it is larger than ~1 KB. I found in the documentation that this can be adjusted via prospector.scanner.fingerprint.length (minimum 64 bytes), so I changed it to 64 bytes. However, I now face two issues: The change doesn’t seem to work — even when my file is over 64 bytes, ingestion doe…

---

_[View the full topic](https://discuss.elastic.co/t/need-to-ingest-small-log-files-in-real-time/380826)._
