We run a small cluster, 2 x master, 4 x data, 2 x ingest in addition to a number of logstash servers. Can someone confirm that we are targeting the correct elasticsearch nodes from kibana and beats.
From kibana (elasticsearch.hosts in kibana.yml) we only target the data nodes (not master or ingest)
From the various beats agents and logstash we only target the ingest nodes.
Is that best practice, or is there a more efficient methodology?