I am running ELK 6.2.3 and with ingest geoip plugin my ELK is sending over 500 DNS requests to 220.127.116.11 per minute this is generating too many log files. If i drop packet on the server itself no data in ingested in to the index. Any idea why would the ingest geoip make so many dns requests to 18.104.22.168?
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.