# Red status unassigned shards help

**URL:** <https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755>\
**Category:** Elasticsearch\
**Created:** [May 27, 2014, 3:39pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755 "2014-05-27T15:39:49Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![Jason\_Weber](https://avatars.discourse-cdn.com/v4/letter/j/8baadc/32.png) [@Jason\_Weber](https://discuss.elastic.co/u/Jason_Weber)\
**Post date:** [May 27, 2014, 3:39pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/1 "2014-05-27T15:39:49Z")

</div>

Could someone walk me through getting my cluster up and running. Came in  
from long weekend and my cluster was red status, I am showing a lot of  
unassigned shards.

jmweber@MIDLOG01:/var/log/logstash$ curl  
localhost:9200/\_cluster/health?pretty  
{  
"cluster\_name" : "midlogcluster",  
"status" : "red",  
"timed\_out" : false,  
"number\_of\_nodes" : 2,  
"number\_of\_data\_nodes" : 1,  
"active\_primary\_shards" : 512,  
"active\_shards" : 512,  
"relocating\_shards" : 0,  
"initializing\_shards" : 0,  
"unassigned\_shards" : 520  
}

I am running ES 0.90.11

LS and ES are on a single server, I only have 1 node, although it shows 2,  
I get yellow status normally, it works fine with that. But I am only  
collecting like 43 events per minute vs my usual 50K.

I have seen several write ups but I seem to get a lot of no handler found  
for uri statements when I try to run them.

Thanks,  
Jason

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/f8c8d310-4819-41eb-ae94-973ce9d06dd7%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/f8c8d310-4819-41eb-ae94-973ce9d06dd7%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Jason\_Weber](https://avatars.discourse-cdn.com/v4/letter/j/8baadc/32.png) [@Jason\_Weber](https://discuss.elastic.co/u/Jason_Weber)\
**Post date:** [May 29, 2014, 1:45pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/2 "2014-05-29T13:45:45Z")

</div>

I rebooted several times and I believe its collecting the correct data now.  
I still show 520 unassigned shards, but its collecting all my logs now. Is  
this something I can use the redirect command for to assign it to a new  
index?

Jason

On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:

> Could someone walk me through getting my cluster up and running. Came in  
> from long weekend and my cluster was red status, I am showing a lot of  
> unassigned shards.
> 
> jmweber@MIDLOG01:/var/log/logstash$ curl  
> localhost:9200/\_cluster/health?pretty  
> {  
> "cluster\_name" : "midlogcluster",  
> "status" : "red",  
> "timed\_out" : false,  
> "number\_of\_nodes" : 2,  
> "number\_of\_data\_nodes" : 1,  
> "active\_primary\_shards" : 512,  
> "active\_shards" : 512,  
> "relocating\_shards" : 0,  
> "initializing\_shards" : 0,  
> "unassigned\_shards" : 520  
> }
> 
> I am running ES 0.90.11
> 
> LS and ES are on a single server, I only have 1 node, although it shows 2,  
> I get yellow status normally, it works fine with that. But I am only  
> collecting like 43 events per minute vs my usual 50K.
> 
> I have seen several write ups but I seem to get a lot of no handler found  
> for uri statements when I try to run them.
> 
> Thanks,  
> Jason

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [May 29, 2014, 10:18pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/3 "2014-05-29T22:18:48Z")

</div>

Install a visual monitoring plugin like kopf and ElasticHQ, you will be  
able to see which shards are unassigned.  
However I think you may have replicas set, which, given you only have one  
one, will always result in a yellow state as the cluster cannot assign  
replicas to another node.

You should also upgrade ES to a newer version if you can 🙂

Regards,  
Mark Walkom

Infrastructure Engineer  
Campaign Monitor  
email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
web: [www.campaignmonitor.com](http://www.campaignmonitor.com)

On 29 May 2014 23:45, Jason Weber [davevato@gmail.com](mailto:davevato@gmail.com) wrote:

> I rebooted several times and I believe its collecting the correct data  
> now. I still show 520 unassigned shards, but its collecting all my logs  
> now. Is this something I can use the redirect command for to assign it to a  
> new index?
> 
> Jason
> 
> On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:
> 
> > Could someone walk me through getting my cluster up and running. Came in  
> > from long weekend and my cluster was red status, I am showing a lot of  
> > unassigned shards.
> > 
> > jmweber@MIDLOG01:/var/log/logstash$ curl localhost:9200/\_cluster/  
> > health?pretty  
> > {  
> > "cluster\_name" : "midlogcluster",  
> > "status" : "red",  
> > "timed\_out" : false,  
> > "number\_of\_nodes" : 2,  
> > "number\_of\_data\_nodes" : 1,  
> > "active\_primary\_shards" : 512,  
> > "active\_shards" : 512,  
> > "relocating\_shards" : 0,  
> > "initializing\_shards" : 0,  
> > "unassigned\_shards" : 520  
> > }
> > 
> > I am running ES 0.90.11
> > 
> > LS and ES are on a single server, I only have 1 node, although it shows  
> > 2, I get yellow status normally, it works fine with that. But I am only  
> > collecting like 43 events per minute vs my usual 50K.
> > 
> > I have seen several write ups but I seem to get a lot of no handler found  
> > for uri statements when I try to run them.
> > 
> > Thanks,  
> > Jason
> 
> --  
> You received this message because you are subscribed to the Google Groups  
> "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an  
> email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> To view this discussion on the web visit  
> [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com)  
> [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm_medium=email&utm_source=footer)  
> .  
> For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![error804](https://avatars.discourse-cdn.com/v4/letter/e/58956e/32.png) [@error804](https://discuss.elastic.co/u/error804)\
**Post date:** [May 30, 2014, 4:11am UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/4 "2014-05-30T04:11:12Z")

</div>

In the node another instances of elasticsearch is started, so the solution  
is first you have to find the PID ok another instances of es by

_netstat -lnp | grep 920_  
and kill the PID if there is another es is started in 9201 port

Thanks

On Fri, May 30, 2014 at 4:03 AM, Mark Walkom [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
wrote:

> Install a visual monitoring plugin like kopf and ElasticHQ, you will be  
> able to see which shards are unassigned.  
> However I think you may have replicas set, which, given you only have one  
> one, will always result in a yellow state as the cluster cannot assign  
> replicas to another node.
> 
> You should also upgrade ES to a newer version if you can 🙂
> 
> Regards,  
> Mark Walkom
> 
> Infrastructure Engineer  
> Campaign Monitor  
> email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
> web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> 
> On 29 May 2014 23:45, Jason Weber [davevato@gmail.com](mailto:davevato@gmail.com) wrote:
> 
> > I rebooted several times and I believe its collecting the correct data  
> > now. I still show 520 unassigned shards, but its collecting all my logs  
> > now. Is this something I can use the redirect command for to assign it to a  
> > new index?
> > 
> > Jason
> > 
> > On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:
> > 
> > > Could someone walk me through getting my cluster up and running. Came in  
> > > from long weekend and my cluster was red status, I am showing a lot of  
> > > unassigned shards.
> > > 
> > > jmweber@MIDLOG01:/var/log/logstash$ curl localhost:9200/\_cluster/  
> > > health?pretty  
> > > {  
> > > "cluster\_name" : "midlogcluster",  
> > > "status" : "red",  
> > > "timed\_out" : false,  
> > > "number\_of\_nodes" : 2,  
> > > "number\_of\_data\_nodes" : 1,  
> > > "active\_primary\_shards" : 512,  
> > > "active\_shards" : 512,  
> > > "relocating\_shards" : 0,  
> > > "initializing\_shards" : 0,  
> > > "unassigned\_shards" : 520  
> > > }
> > > 
> > > I am running ES 0.90.11
> > > 
> > > LS and ES are on a single server, I only have 1 node, although it shows  
> > > 2, I get yellow status normally, it works fine with that. But I am only  
> > > collecting like 43 events per minute vs my usual 50K.
> > > 
> > > I have seen several write ups but I seem to get a lot of no handler  
> > > found for uri statements when I try to run them.
> > > 
> > > Thanks,  
> > > Jason
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups  
> > "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an  
> > email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com)  
> > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > .  
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> 
> --  
> You received this message because you are subscribed to the Google Groups  
> "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an  
> email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> To view this discussion on the web visit  
> [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com)  
> [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> .
> 
> For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [May 30, 2014, 4:18am UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/5 "2014-05-30T04:18:18Z")

</div>

It could also be the elasticsearch integrated output in ES, which adds the  
LS instance as a client node to the cluster.  
And you probably don't want to kill that.

Regards,  
Mark Walkom

Infrastructure Engineer  
Campaign Monitor  
email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
web: [www.campaignmonitor.com](http://www.campaignmonitor.com)

On 30 May 2014 14:11, Pawan Sharma [pawansharma2045@gmail.com](mailto:pawansharma2045@gmail.com) wrote:

> In the node another instances of elasticsearch is started, so the solution  
> is first you have to find the PID ok another instances of es by
> 
> _netstat -lnp | grep 920_  
> and kill the PID if there is another es is started in 9201 port
> 
> Thanks
> 
> On Fri, May 30, 2014 at 4:03 AM, Mark Walkom [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
> wrote:
> 
> > Install a visual monitoring plugin like kopf and ElasticHQ, you will be  
> > able to see which shards are unassigned.  
> > However I think you may have replicas set, which, given you only have one  
> > one, will always result in a yellow state as the cluster cannot assign  
> > replicas to another node.
> > 
> > You should also upgrade ES to a newer version if you can 🙂
> > 
> > Regards,  
> > Mark Walkom
> > 
> > Infrastructure Engineer  
> > Campaign Monitor  
> > email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
> > web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> > 
> > On 29 May 2014 23:45, Jason Weber [davevato@gmail.com](mailto:davevato@gmail.com) wrote:
> > 
> > > I rebooted several times and I believe its collecting the correct data  
> > > now. I still show 520 unassigned shards, but its collecting all my logs  
> > > now. Is this something I can use the redirect command for to assign it to a  
> > > new index?
> > > 
> > > Jason
> > > 
> > > On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:
> > > 
> > > > Could someone walk me through getting my cluster up and running. Came  
> > > > in from long weekend and my cluster was red status, I am showing a lot of  
> > > > unassigned shards.
> > > > 
> > > > jmweber@MIDLOG01:/var/log/logstash$ curl localhost:9200/\_cluster/  
> > > > health?pretty  
> > > > {  
> > > > "cluster\_name" : "midlogcluster",  
> > > > "status" : "red",  
> > > > "timed\_out" : false,  
> > > > "number\_of\_nodes" : 2,  
> > > > "number\_of\_data\_nodes" : 1,  
> > > > "active\_primary\_shards" : 512,  
> > > > "active\_shards" : 512,  
> > > > "relocating\_shards" : 0,  
> > > > "initializing\_shards" : 0,  
> > > > "unassigned\_shards" : 520  
> > > > }
> > > > 
> > > > I am running ES 0.90.11
> > > > 
> > > > LS and ES are on a single server, I only have 1 node, although it shows  
> > > > 2, I get yellow status normally, it works fine with that. But I am only  
> > > > collecting like 43 events per minute vs my usual 50K.
> > > > 
> > > > I have seen several write ups but I seem to get a lot of no handler  
> > > > found for uri statements when I try to run them.
> > > > 
> > > > Thanks,  
> > > > Jason
> > > 
> > > --  
> > > You received this message because you are subscribed to the Google  
> > > Groups "elasticsearch" group.  
> > > To unsubscribe from this group and stop receiving emails from it, send  
> > > an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > > To view this discussion on the web visit  
> > > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com)  
> > > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > > .  
> > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups  
> > "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an  
> > email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com)  
> > [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > .
> > 
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> 
> --  
> You received this message because you are subscribed to the Google Groups  
> "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an  
> email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> To view this discussion on the web visit  
> [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com)  
> [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> .  
> For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CAEM624Z9yPJtT%3DefLuwUkf8\_BhKtEE24OyS4E8X7GXD8FDyUQA%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624Z9yPJtT%3DefLuwUkf8_BhKtEE24OyS4E8X7GXD8FDyUQA%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Jason\_Weber](https://avatars.discourse-cdn.com/v4/letter/j/8baadc/32.png) [@Jason\_Weber](https://discuss.elastic.co/u/Jason_Weber)\
**Post date:** [May 30, 2014, 2:15pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/6 "2014-05-30T14:15:21Z")

</div>

Thanks Mark and pawan,

Here is my output from netstat:

tcp6 0 0 :::9200 :::\*  
LISTEN 1155/java

Mark are you talking about upgrading to the lastest 0.9 or to 1.x.x? Still  
waiting on a good method to go to the lastest 1.x in ES with out messing up  
a bunch of stuff. Still in development but dont want to loose my data.

I think you are right about the replica set, I read about a setting I need  
to change in elasticsearch.yml, I will see if I can find that doc. Also  
will install kopf. Thanks again for the help!

On Friday, May 30, 2014 12:18:47 AM UTC-4, Mark Walkom wrote:

> It could also be the elasticsearch integrated output in ES, which adds the  
> LS instance as a client node to the cluster.  
> And you probably don't want to kill that.
> 
> Regards,  
> Mark Walkom
> 
> Infrastructure Engineer  
> Campaign Monitor  
> email: [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com) \<javascript:\>  
> web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> 
> On 30 May 2014 14:11, Pawan Sharma \<[pawansh...@gmail.com](mailto:pawansh...@gmail.com) \<javascript:\>\>  
> wrote:
> 
> > In the node another instances of elasticsearch is started, so the  
> > solution is first you have to find the PID ok another instances of es by
> > 
> > _netstat -lnp | grep 920_  
> > and kill the PID if there is another es is started in 9201 port
> > 
> > Thanks
> > 
> > On Fri, May 30, 2014 at 4:03 AM, Mark Walkom \<[ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)  
> > \<javascript:\>\> wrote:
> > 
> > > Install a visual monitoring plugin like kopf and ElasticHQ, you will be  
> > > able to see which shards are unassigned.  
> > > However I think you may have replicas set, which, given you only have  
> > > one one, will always result in a yellow state as the cluster cannot assign  
> > > replicas to another node.
> > > 
> > > You should also upgrade ES to a newer version if you can 🙂
> > > 
> > > Regards,  
> > > Mark Walkom
> > > 
> > > Infrastructure Engineer  
> > > Campaign Monitor  
> > > email: [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com) \<javascript:\>  
> > > web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> > > 
> > > On 29 May 2014 23:45, Jason Weber \<[dave...@gmail.com](mailto:dave...@gmail.com) \<javascript:\>\>  
> > > wrote:
> > > 
> > > > I rebooted several times and I believe its collecting the correct data  
> > > > now. I still show 520 unassigned shards, but its collecting all my logs  
> > > > now. Is this something I can use the redirect command for to assign it to a  
> > > > new index?
> > > > 
> > > > Jason
> > > > 
> > > > On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:
> > > > 
> > > > > Could someone walk me through getting my cluster up and running. Came  
> > > > > in from long weekend and my cluster was red status, I am showing a lot of  
> > > > > unassigned shards.
> > > > > 
> > > > > jmweber@MIDLOG01:/var/log/logstash$ curl localhost:9200/\_cluster/  
> > > > > health?pretty  
> > > > > {  
> > > > > "cluster\_name" : "midlogcluster",  
> > > > > "status" : "red",  
> > > > > "timed\_out" : false,  
> > > > > "number\_of\_nodes" : 2,  
> > > > > "number\_of\_data\_nodes" : 1,  
> > > > > "active\_primary\_shards" : 512,  
> > > > > "active\_shards" : 512,  
> > > > > "relocating\_shards" : 0,  
> > > > > "initializing\_shards" : 0,  
> > > > > "unassigned\_shards" : 520  
> > > > > }
> > > > > 
> > > > > I am running ES 0.90.11
> > > > > 
> > > > > LS and ES are on a single server, I only have 1 node, although it  
> > > > > shows 2, I get yellow status normally, it works fine with that. But I am  
> > > > > only collecting like 43 events per minute vs my usual 50K.
> > > > > 
> > > > > I have seen several write ups but I seem to get a lot of no handler  
> > > > > found for uri statements when I try to run them.
> > > > > 
> > > > > Thanks,  
> > > > > Jason
> > > > 
> > > > --  
> > > > You received this message because you are subscribed to the Google  
> > > > Groups "elasticsearch" group.  
> > > > To unsubscribe from this group and stop receiving emails from it, send  
> > > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com) \<javascript:\>.  
> > > > To view this discussion on the web visit  
> > > > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com)  
> > > > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > > > .  
> > > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > > 
> > > --  
> > > You received this message because you are subscribed to the Google  
> > > Groups "elasticsearch" group.  
> > > To unsubscribe from this group and stop receiving emails from it, send  
> > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com) \<javascript:\>.  
> > > To view this discussion on the web visit  
> > > [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com)  
> > > [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > > .
> > > 
> > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups  
> > "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an  
> > email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com) \<javascript:\>.  
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com)  
> > [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > .  
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [May 30, 2014, 9:47pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/7 "2014-05-30T21:47:04Z")

</div>

You can set the replicas for an index using the API (or kopf).

As for your upgrade concerns, see

> **[Elasticsearch Platform — Find real-time answers at scale](https://www.elastic.co)**
>
> Power insights and outcomes with the Elasticsearch Platform and AI. See into your data and find answers that matter with enterprise solutions designed to help you build, observe, and protect. Try Elasticsearch free today.

Regards,  
Mark Walkom

Infrastructure Engineer  
Campaign Monitor  
email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
web: [www.campaignmonitor.com](http://www.campaignmonitor.com)

On 31 May 2014 00:15, Jason Weber [davevato@gmail.com](mailto:davevato@gmail.com) wrote:

> Thanks Mark and pawan,
> 
> Here is my output from netstat:
> 
> tcp6 0 0 :::9200 :::\*  
> LISTEN 1155/java
> 
> Mark are you talking about upgrading to the lastest 0.9 or to 1.x.x? Still  
> waiting on a good method to go to the lastest 1.x in ES with out messing up  
> a bunch of stuff. Still in development but dont want to loose my data.
> 
> I think you are right about the replica set, I read about a setting I need  
> to change in elasticsearch.yml, I will see if I can find that doc. Also  
> will install kopf. Thanks again for the help!
> 
> On Friday, May 30, 2014 12:18:47 AM UTC-4, Mark Walkom wrote:
> 
> > It could also be the elasticsearch integrated output in ES, which adds  
> > the LS instance as a client node to the cluster.  
> > And you probably don't want to kill that.
> > 
> > Regards,  
> > Mark Walkom
> > 
> > Infrastructure Engineer  
> > Campaign Monitor  
> > email: [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)  
> > web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> > 
> > On 30 May 2014 14:11, Pawan Sharma [pawansh...@gmail.com](mailto:pawansh...@gmail.com) wrote:
> > 
> > > In the node another instances of elasticsearch is started, so the  
> > > solution is first you have to find the PID ok another instances of es by
> > > 
> > > _netstat -lnp | grep 920_  
> > > and kill the PID if there is another es is started in 9201 port
> > > 
> > > Thanks
> > > 
> > > On Fri, May 30, 2014 at 4:03 AM, Mark Walkom [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)  
> > > wrote:
> > > 
> > > > Install a visual monitoring plugin like kopf and ElasticHQ, you will be  
> > > > able to see which shards are unassigned.  
> > > > However I think you may have replicas set, which, given you only have  
> > > > one one, will always result in a yellow state as the cluster cannot assign  
> > > > replicas to another node.
> > > > 
> > > > You should also upgrade ES to a newer version if you can 🙂
> > > > 
> > > > Regards,  
> > > > Mark Walkom
> > > > 
> > > > Infrastructure Engineer  
> > > > Campaign Monitor  
> > > > email: [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)  
> > > > web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> > > > 
> > > > On 29 May 2014 23:45, Jason Weber [dave...@gmail.com](mailto:dave...@gmail.com) wrote:
> > > > 
> > > > > I rebooted several times and I believe its collecting the correct data  
> > > > > now. I still show 520 unassigned shards, but its collecting all my logs  
> > > > > now. Is this something I can use the redirect command for to assign it to a  
> > > > > new index?
> > > > > 
> > > > > Jason
> > > > > 
> > > > > On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:
> > > > > 
> > > > > > Could someone walk me through getting my cluster up and running. Came  
> > > > > > in from long weekend and my cluster was red status, I am showing a lot of  
> > > > > > unassigned shards.
> > > > > > 
> > > > > > jmweber@MIDLOG01:/var/log/logstash$ curl localhost:9200/\_cluster/  
> > > > > > health?pretty  
> > > > > > {  
> > > > > > "cluster\_name" : "midlogcluster",  
> > > > > > "status" : "red",  
> > > > > > "timed\_out" : false,  
> > > > > > "number\_of\_nodes" : 2,  
> > > > > > "number\_of\_data\_nodes" : 1,  
> > > > > > "active\_primary\_shards" : 512,  
> > > > > > "active\_shards" : 512,  
> > > > > > "relocating\_shards" : 0,  
> > > > > > "initializing\_shards" : 0,  
> > > > > > "unassigned\_shards" : 520  
> > > > > > }
> > > > > > 
> > > > > > I am running ES 0.90.11
> > > > > > 
> > > > > > LS and ES are on a single server, I only have 1 node, although it  
> > > > > > shows 2, I get yellow status normally, it works fine with that. But I am  
> > > > > > only collecting like 43 events per minute vs my usual 50K.
> > > > > > 
> > > > > > I have seen several write ups but I seem to get a lot of no handler  
> > > > > > found for uri statements when I try to run them.
> > > > > > 
> > > > > > Thanks,  
> > > > > > Jason
> > > > > 
> > > > > --  
> > > > > You received this message because you are subscribed to the Google  
> > > > > Groups "elasticsearch" group.  
> > > > > To unsubscribe from this group and stop receiving emails from it, send  
> > > > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > > > msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%  
> > > > > [40googlegroups.com](http://40googlegroups.com)  
> > > > > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > > > > .  
> > > > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > > > 
> > > > --  
> > > > You received this message because you are subscribed to the Google  
> > > > Groups "elasticsearch" group.  
> > > > To unsubscribe from this group and stop receiving emails from it, send  
> > > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > > msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%  
> > > > 3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%[40mail.gmail.com](http://40mail.gmail.com)  
> > > > [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > > > .
> > > > 
> > > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > > 
> > > --  
> > > You received this message because you are subscribed to the Google  
> > > Groups "elasticsearch" group.  
> > > To unsubscribe from this group and stop receiving emails from it, send  
> > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%  
> > > 3Ds5dK48n3dLgFAuEDziSpBfDg%[40mail.gmail.com](http://40mail.gmail.com)  
> > > [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > > .  
> > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups  
> > "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an  
> > email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com)  
> > [https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > .  
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CAEM624bw81Z21eD0TwgOAvmJGor3\_zc5CKZ%3D%2ByQYyBVktEL4pg%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624bw81Z21eD0TwgOAvmJGor3_zc5CKZ%3D%2ByQYyBVktEL4pg%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Jason\_Weber](https://avatars.discourse-cdn.com/v4/letter/j/8baadc/32.png) [@Jason\_Weber](https://discuss.elastic.co/u/Jason_Weber)\
**Post date:** [June 3, 2014, 2:48pm UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/8 "2014-06-03T14:48:59Z")

</div>

Mark, appreciate the response I will look into both!

On Fri, May 30, 2014 at 5:47 PM, Mark Walkom [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
wrote:

> You can set the replicas for an index using the API (or kopf).
> 
> As for your upgrade concerns, see  
> [Elasticsearch Platform — Find real-time answers at scale | Elastic](http://www.elasticsearch.org/guide/en/elasticsearch/reference/current/setup-upgrade.html)
> 
> Regards,  
> Mark Walkom
> 
> Infrastructure Engineer  
> Campaign Monitor  
> email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
> web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> 
> On 31 May 2014 00:15, Jason Weber [davevato@gmail.com](mailto:davevato@gmail.com) wrote:
> 
> > Thanks Mark and pawan,
> > 
> > Here is my output from netstat:
> > 
> > tcp6 0 0 :::9200 :::\*  
> > LISTEN 1155/java
> > 
> > Mark are you talking about upgrading to the lastest 0.9 or to 1.x.x?  
> > Still waiting on a good method to go to the lastest 1.x in ES with out  
> > messing up a bunch of stuff. Still in development but dont want to loose my  
> > data.
> > 
> > I think you are right about the replica set, I read about a setting I  
> > need to change in elasticsearch.yml, I will see if I can find that doc.  
> > Also will install kopf. Thanks again for the help!
> > 
> > On Friday, May 30, 2014 12:18:47 AM UTC-4, Mark Walkom wrote:
> > 
> > > It could also be the elasticsearch integrated output in ES, which adds  
> > > the LS instance as a client node to the cluster.  
> > > And you probably don't want to kill that.
> > > 
> > > Regards,  
> > > Mark Walkom
> > > 
> > > Infrastructure Engineer  
> > > Campaign Monitor  
> > > email: [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)  
> > > web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> > > 
> > > On 30 May 2014 14:11, Pawan Sharma [pawansh...@gmail.com](mailto:pawansh...@gmail.com) wrote:
> > > 
> > > > In the node another instances of elasticsearch is started, so the  
> > > > solution is first you have to find the PID ok another instances of es by
> > > > 
> > > > _netstat -lnp | grep 920_  
> > > > and kill the PID if there is another es is started in 9201 port
> > > > 
> > > > Thanks
> > > > 
> > > > On Fri, May 30, 2014 at 4:03 AM, Mark Walkom \<[ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)
> > > > 
> > > > > wrote:
> > > > 
> > > > > Install a visual monitoring plugin like kopf and ElasticHQ, you will  
> > > > > be able to see which shards are unassigned.  
> > > > > However I think you may have replicas set, which, given you only have  
> > > > > one one, will always result in a yellow state as the cluster cannot assign  
> > > > > replicas to another node.
> > > > > 
> > > > > You should also upgrade ES to a newer version if you can 🙂
> > > > > 
> > > > > Regards,  
> > > > > Mark Walkom
> > > > > 
> > > > > Infrastructure Engineer  
> > > > > Campaign Monitor  
> > > > > email: [ma...@campaignmonitor.com](mailto:ma...@campaignmonitor.com)  
> > > > > web: [www.campaignmonitor.com](http://www.campaignmonitor.com)
> > > > > 
> > > > > On 29 May 2014 23:45, Jason Weber [dave...@gmail.com](mailto:dave...@gmail.com) wrote:
> > > > > 
> > > > > > I rebooted several times and I believe its collecting the correct  
> > > > > > data now. I still show 520 unassigned shards, but its collecting all my  
> > > > > > logs now. Is this something I can use the redirect command for to assign it  
> > > > > > to a new index?
> > > > > > 
> > > > > > Jason
> > > > > > 
> > > > > > On Tuesday, May 27, 2014 11:39:49 AM UTC-4, Jason Weber wrote:
> > > > > > 
> > > > > > > Could someone walk me through getting my cluster up and running.  
> > > > > > > Came in from long weekend and my cluster was red status, I am showing a lot  
> > > > > > > of unassigned shards.
> > > > > > > 
> > > > > > > jmweber@MIDLOG01:/var/log/logstash$ curl localhost:9200/\_cluster/  
> > > > > > > health?pretty  
> > > > > > > {  
> > > > > > > "cluster\_name" : "midlogcluster",  
> > > > > > > "status" : "red",  
> > > > > > > "timed\_out" : false,  
> > > > > > > "number\_of\_nodes" : 2,  
> > > > > > > "number\_of\_data\_nodes" : 1,  
> > > > > > > "active\_primary\_shards" : 512,  
> > > > > > > "active\_shards" : 512,  
> > > > > > > "relocating\_shards" : 0,  
> > > > > > > "initializing\_shards" : 0,  
> > > > > > > "unassigned\_shards" : 520  
> > > > > > > }
> > > > > > > 
> > > > > > > I am running ES 0.90.11
> > > > > > > 
> > > > > > > LS and ES are on a single server, I only have 1 node, although it  
> > > > > > > shows 2, I get yellow status normally, it works fine with that. But I am  
> > > > > > > only collecting like 43 events per minute vs my usual 50K.
> > > > > > > 
> > > > > > > I have seen several write ups but I seem to get a lot of no handler  
> > > > > > > found for uri statements when I try to run them.
> > > > > > > 
> > > > > > > Thanks,  
> > > > > > > Jason
> > > > > > 
> > > > > > --  
> > > > > > You received this message because you are subscribed to the Google  
> > > > > > Groups "elasticsearch" group.  
> > > > > > To unsubscribe from this group and stop receiving emails from it,  
> > > > > > send an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > > > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > > > > msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%  
> > > > > > [40googlegroups.com](http://40googlegroups.com)  
> > > > > > [https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/1307dd8d-411e-4690-a6d1-8e27ce26ecec%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > > > > > .  
> > > > > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > > > > 
> > > > > --  
> > > > > You received this message because you are subscribed to the Google  
> > > > > Groups "elasticsearch" group.  
> > > > > To unsubscribe from this group and stop receiving emails from it, send  
> > > > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > > > msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%  
> > > > > 3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%[40mail.gmail.com](http://40mail.gmail.com)  
> > > > > [https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAEM624Y%2BPsF8a4C0mh-Jsi%3Dc6ogiXctAuA-Hn2oO6MVvv7SkBQ%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > > > > .
> > > > > 
> > > > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > > > 
> > > > --  
> > > > You received this message because you are subscribed to the Google  
> > > > Groups "elasticsearch" group.  
> > > > To unsubscribe from this group and stop receiving emails from it, send  
> > > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > > msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%  
> > > > 3Ds5dK48n3dLgFAuEDziSpBfDg%[40mail.gmail.com](http://40mail.gmail.com)  
> > > > [https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAMUueYn0EkSL1qAH%2Bb5s0PHMW%3Ds5dK48n3dLgFAuEDziSpBfDg%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> > > > .  
> > > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > > 
> > > --  
> > > You received this message because you are subscribed to the Google Groups  
> > > "elasticsearch" group.  
> > > To unsubscribe from this group and stop receiving emails from it, send an  
> > > email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).
> > 
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com)  
> > [https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/c3d5aeff-9f18-4900-a508-94baf4221845%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > .  
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> 
> --  
> You received this message because you are subscribed to a topic in the  
> Google Groups "elasticsearch" group.  
> To unsubscribe from this topic, visit  
> [https://groups.google.com/d/topic/elasticsearch/MjLSmv1cn8w/unsubscribe](https://groups.google.com/d/topic/elasticsearch/MjLSmv1cn8w/unsubscribe).  
> To unsubscribe from this group and all its topics, send an email to  
> [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> To view this discussion on the web visit  
> [https://groups.google.com/d/msgid/elasticsearch/CAEM624bw81Z21eD0TwgOAvmJGor3\_zc5CKZ%3D%2ByQYyBVktEL4pg%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624bw81Z21eD0TwgOAvmJGor3_zc5CKZ%3D%2ByQYyBVktEL4pg%40mail.gmail.com)  
> [https://groups.google.com/d/msgid/elasticsearch/CAEM624bw81Z21eD0TwgOAvmJGor3\_zc5CKZ%3D%2ByQYyBVktEL4pg%40mail.gmail.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/CAEM624bw81Z21eD0TwgOAvmJGor3_zc5CKZ%3D%2ByQYyBVktEL4pg%40mail.gmail.com?utm_medium=email&utm_source=footer)  
> .
> 
> For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CANc0VscXDRc%2BcTWft1J6fuTUk3XzM4CxvyQ8MJ7rfmjj2OZFtA%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CANc0VscXDRc%2BcTWft1J6fuTUk3XzM4CxvyQ8MJ7rfmjj2OZFtA%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 1:24am UTC](https://discuss.elastic.co/t/red-status-unassigned-shards-help/17755/9 "2017-07-06T01:24:56Z")

</div>


