Random SIGTERM stopping Logstash

Hi,

Twice (at least) in 12hrs our departments logstash is recieving a seemingly random SIGTERM:

[2018-03-27T10:54:21,680][INFO ][logstash.outputs.file    ] Closing file /apps/isilon/mamsupport/filebeat-logs/avci_validator/avci-2018-03-27.log
[2018-03-27T10:55:30,735][INFO ][logstash.outputs.file    ] Opening file {:path=>"/apps/isilon/mamsupport/filebeat-logs/prod_srvwrk/srvwrk-2018-03-27.log"}
[2018-03-27T10:56:51,711][INFO ][logstash.outputs.file    ] Closing file /apps/isilon/mamsupport/filebeat-logs/prod_srvwrk/srvwrk-2018-03-27.log
[2018-03-27T11:00:06,044][WARN ][logstash.runner          ] SIGTERM received. Shutting down.
[2018-03-27T11:17:19,785][INFO ][logstash.modules.scaffold] Initializing module {:module_name=>"netflow", :directory=>"/usr/share/logstash/modules/netflow/configuration"}
[2018-03-27T11:17:19,792][INFO ][logstash.modules.scaffold] Initializing module {:module_name=>"fb_apache", :directory=>"/usr/share/logstash/modules/fb_apache/configuration"}
[2018-03-27T11:17:20,275][INFO ][logstash.runner          ] Starting Logstash {"logstash.version"=>"6.2.1"}
[2018-03-27T11:17:20,523][INFO ][logstash.agent           ] Successfully started Logstash API endpoint {:port=>9600}
[2018-03-27T11:17:25,303][INFO ][logstash.pipeline        ] Starting pipeline {:pipeline_id=>"main", "pipeline.workers"=>32, "pipeline.batch.size"=>125, "pipeline.batch.delay"=>50}

This doesn't look like a human triggered shutdown, I have no other way of checking what is going on here and the service "stops" its not crashed. Any help gratefully received.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.