# SlowLogs entries in both SlowLogs and Default Logs

**URL:** <https://discuss.elastic.co/t/slowlogs-entries-in-both-slowlogs-and-default-logs/239453>\
**Category:** Elasticsearch\
**Created:** [July 1, 2020, 9:44am UTC](https://discuss.elastic.co/t/slowlogs-entries-in-both-slowlogs-and-default-logs/239453 "2020-07-01T09:44:22Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![ankit2.agarwal](https://avatars.discourse-cdn.com/v4/letter/a/d78d45/32.png) [@ankit2.agarwal](https://discuss.elastic.co/u/ankit2.agarwal)\
**Post date:** [July 1, 2020, 9:44am UTC](https://discuss.elastic.co/t/slowlogs-entries-in-both-slowlogs-and-default-logs/239453/1 "2020-07-01T09:44:22Z")

</div>

Hi,

I am facing issue that my default log is full of slowlog entries. All though I have slowlogs for search and indexing getting generated separately. I have enabled slowlog in log4j.properties. I have daily indexes so I have given thresholds in index template.

Can someone check if we are making any mistake in our settings.

Log4j.properties settings for old style indexing slowlog (similarly we have for search and json as well)  
######## Indexing slowlog - old style pattern ##  
appender.index\_indexing\_slowlog\_rolling\_old.type = RollingFile  
appender.index\_indexing\_slowlog\_rolling\_old.name = index\_indexing\_slowlog\_rolling\_old  
appender.index\_indexing\_slowlog\_rolling\_old.fileName = {sys:es.logs.base\_path}{sys:file.separator}{sys:es.logs.cluster\_name}\ \_index\_indexing\_slowlog.log appender.index\_indexing\_slowlog\_rolling\_old.layout.type = PatternLayout appender.index\_indexing\_slowlog\_rolling\_old.layout.pattern = [%d{ISO8601}][%-5p][%-25c{1.}] [%node\_name]%marker %m%n appender.index\_indexing\_slowlog\_rolling\_old.filePattern = {sys:es.logs.base\_path}{sys:file.separator}{sys:es.logs.cluster\_name}  
\_index\_indexing\_slowlog-%i.log.gz  
appender.index\_indexing\_slowlog\_rolling\_old.policies.type = Policies  
appender.index\_indexing\_slowlog\_rolling\_old.policies.size.type = SizeBasedTriggeringPolicy  
appender.index\_indexing\_slowlog\_rolling\_old.policies.size.size = 1GB  
appender.index\_indexing\_slowlog\_rolling\_old.strategy.type = DefaultRolloverStrategy  
appender.index\_indexing\_slowlog\_rolling\_old.strategy.max = 4  
logger.index\_indexing\_slowlog.name = index.indexing.slowlog.index  
logger.index\_indexing\_slowlog.level = trace  
logger.index\_indexing\_slowlog.appenderRef.index\_indexing\_slowlog\_rolling.ref = index\_indexing\_slowlog\_rolling  
logger.index\_indexing\_slowlog.appenderRef.index\_indexing\_slowlog\_rolling\_old.ref = index\_indexing\_slowlog\_rolling\_old  
logger.index\_indexing\_slowlog.additivity = true

Index template entry for Indexing SlowLog (similarly we have for search as well)

```
    "indexing" : {
      "slowlog" : {
        "threshold" : {
          "index" : {
            "warn" : "500ms",
            "info" : "100ms"
          }
        }
      }
    },

```

Thanks,  
Ankit.

---

<div class="post-metadata">

**Author:** ![ankit2.agarwal](https://avatars.discourse-cdn.com/v4/letter/a/d78d45/32.png) [@ankit2.agarwal](https://discuss.elastic.co/u/ankit2.agarwal)\
**Post date:** [July 8, 2020, 12:11pm UTC](https://discuss.elastic.co/t/slowlogs-entries-in-both-slowlogs-and-default-logs/239453/2 "2020-07-08T12:11:54Z")

</div>

Please help.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 5, 2020, 12:11pm UTC](https://discuss.elastic.co/t/slowlogs-entries-in-both-slowlogs-and-default-logs/239453/3 "2020-08-05T12:11:58Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
