# The allocation of machines for different in ELK

**URL:** <https://discuss.elastic.co/t/the-allocation-of-machines-for-different-in-elk/243238>\
**Category:** Elasticsearch\
**Created:** [July 30, 2020, 2:18pm UTC](https://discuss.elastic.co/t/the-allocation-of-machines-for-different-in-elk/243238 "2020-07-30T14:18:18Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![iammanmale](https://avatars.discourse-cdn.com/v4/letter/i/5e9695/32.png) [@iammanmale](https://discuss.elastic.co/u/iammanmale)\
**Post date:** [July 30, 2020, 2:18pm UTC](https://discuss.elastic.co/t/the-allocation-of-machines-for-different-in-elk/243238/1 "2020-07-30T14:18:18Z")

</div>

I have 5 machines to form a elasticsearch cluster. How should I use them in order to maximise the performance?  
Should I install elasticsearch and logstash on each machine and install kibana on one of them? or should I install elasticsearch on three of them to from a cluster and install logstash on remaining two and install kibana on anyone of them? Please help

---

<div class="post-metadata">

**Author:** ![Christian\_Dahlqvist](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christian_dahlqvist/32/4617_2.png) [@Christian\_Dahlqvist](https://discuss.elastic.co/u/Christian_Dahlqvist)\
**Post date:** [July 30, 2020, 6:49pm UTC](https://discuss.elastic.co/t/the-allocation-of-machines-for-different-in-elk/243238/2 "2020-07-30T18:49:16Z")

</div>

What is the specification of the machines? What is the use case?

---

<div class="post-metadata">

**Author:** ![iammanmale](https://avatars.discourse-cdn.com/v4/letter/i/5e9695/32.png) [@iammanmale](https://discuss.elastic.co/u/iammanmale)\
**Post date:** [July 31, 2020, 7:41am UTC](https://discuss.elastic.co/t/the-allocation-of-machines-for-different-in-elk/243238/3 "2020-07-31T07:41:45Z")

</div>

We have around 15 aws machines around the world. They generate 1.5 billions line of log everyday. We have 5 spare desktop pc at our offices. Their spec are around i7 7th gen with 32 GB RAM and 1TB SSD. We hope to create a ELK cluster to collect those log as much as we can.  
So...what is the best allocation in this use case?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 28, 2020, 7:41am UTC](https://discuss.elastic.co/t/the-allocation-of-machines-for-different-in-elk/243238/4 "2020-08-28T07:41:48Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
