# Packetbeat: Disable return\_value for Redis protocol

**URL:** <https://discuss.elastic.co/t/packetbeat-disable-return-value-for-redis-protocol/50418>\
**Category:** Beats\
**Tags:** packetbeat\
**Created:** [May 19, 2016, 9:35am UTC](https://discuss.elastic.co/t/packetbeat-disable-return-value-for-redis-protocol/50418 "2016-05-19T09:35:07Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![spa-87](https://avatars.discourse-cdn.com/v4/letter/s/a9a28c/32.png) [@spa-87](https://discuss.elastic.co/u/spa-87)\
**Post date:** [May 19, 2016, 9:35am UTC](https://discuss.elastic.co/t/packetbeat-disable-return-value-for-redis-protocol/50418/1 "2016-05-19T09:35:07Z")

</div>

Hi, in my usecase Redis is used as a cache-server and stores big bunches of data. All that data is returned at `redis.return_value` field for each request what can lead to high resources consumption at ElasticSearch server.  
I've checked source code for Redis protocol and looks like there's no way to disable that field:

> <https://github.com/elastic/beats/blob/master/packetbeat/protos/redis/redis.go#L261>

Is there any way to disable that field? Or maybe it's a task for packetbeat's enhancement?

Thanks ahead!

---

<div class="post-metadata">

**Author:** ![steffens](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/steffens/32/79630_2.png) [@steffens](https://discuss.elastic.co/u/steffens)\
**Post date:** [May 19, 2016, 10:27am UTC](https://discuss.elastic.co/t/packetbeat-disable-return-value-for-redis-protocol/50418/2 "2016-05-19T10:27:42Z")

</div>

Right now you can not remove `return_value` from within packetbeat. With generic filtering (still in development, see [open PR #1623](https://github.com/elastic/beats/pull/1623)) you will be able to remove any unwanted fields from your events.

Still makes sense to have an enhancement for limiting the `return_value` it's size.

---

<div class="post-metadata">

**Author:** ![spa-87](https://avatars.discourse-cdn.com/v4/letter/s/a9a28c/32.png) [@spa-87](https://discuss.elastic.co/u/spa-87)\
**Post date:** [May 26, 2016, 7:43am UTC](https://discuss.elastic.co/t/packetbeat-disable-return-value-for-redis-protocol/50418/3 "2016-05-26T07:43:44Z")

</div>

Thank you, it would be grade to have a way to disable some fields!  
I also found some noisy fields for DNS protocol which I would like to suppress too.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 5, 2017, 9:51pm UTC](https://discuss.elastic.co/t/packetbeat-disable-return-value-for-redis-protocol/50418/4 "2017-07-05T21:51:29Z")

</div>


