# Warning message seen at the logs "InvalidFrameProtocolException: Invalid version of beats protocol: 71"

**URL:** <https://discuss.elastic.co/t/warning-message-seen-at-the-logs-invalidframeprotocolexception-invalid-version-of-beats-protocol-71/205789>\
**Category:** Logstash\
**Created:** [October 30, 2019, 4:41am UTC](https://discuss.elastic.co/t/warning-message-seen-at-the-logs-invalidframeprotocolexception-invalid-version-of-beats-protocol-71/205789 "2019-10-30T04:41:37Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Joseph\_John](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/joseph_john/32/53907_2.png) [@Joseph\_John](https://discuss.elastic.co/u/Joseph_John)\
**Post date:** [October 30, 2019, 4:41am UTC](https://discuss.elastic.co/t/warning-message-seen-at-the-logs-invalidframeprotocolexception-invalid-version-of-beats-protocol-71/205789/1 "2019-10-30T04:41:37Z")

</div>

Hi All,  
Good morning  
at the logstash logs I can see some warning message, since it is warning nothing wrong , but I am posting the message here for giving the feedback

> 8.3.13:21374] Handling exception: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 71  
> [2019-10-30T04:27:21,311][WARN][io.netty.channel.DefaultChannelPipeline][main] An exceptionCaught() event was fired, and it reached at the tail of the pipeline. It usually means the last handler in the pipeline did not handle the exception.  
> io.netty.handler.codec.DecoderException: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 71  
> at io.netty.handler.codec.ByteToMessageDecoder.callDecode(ByteToMessageDecoder.java:472) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.channelRead(ByteToMessageDecoder.java:278) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.channel.AbstractChannelHandlerContext.invokeChannelRead(AbstractChannelHandlerContext.java:362) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.channel.AbstractChannelHandlerContext.access$600(AbstractChannelHandlerContext.java:38) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.channel.AbstractChannelHandlerContext$7.run(AbstractChannelHandlerContext.java:353) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.util.concurrent.DefaultEventExecutor.run(DefaultEventExecutor.java:66) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.util.concurrent.SingleThreadEventExecutor$5.run(SingleThreadEventExecutor.java:897) [netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.util.concurrent.FastThreadLocalRunnable.run(FastThreadLocalRunnable.java:30) [netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at java.lang.Thread.run(Thread.java:748) [?:1.8.0\_222]  
> Caused by: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 71  
> at org.logstash.beats.Protocol.version(Protocol.java:22) ~[logstash-input-beats-6.0.3.jar:?]  
> at org.logstash.beats.BeatsParser.decode(BeatsParser.java:62) ~[logstash-input-beats-6.0.3.jar:?]  
> at io.netty.handler.codec.ByteToMessageDecoder.decodeRemovalReentryProtection(ByteToMessageDecoder.java:502) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.callDecode(ByteToMessageDecoder.java:441) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> ... 8 more  
> [2019-10-30T04:27:21,353][INFO][org.logstash.beats.BeatsHandler][main] [local: 192.168.3.191:5044, remote: 192.168.3.13:21374] Handling exception: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 69  
> [2019-10-30T04:27:21,356][WARN][io.netty.channel.DefaultChannelPipeline][main] An exceptionCaught() event was fired, and it reached at the tail of the pipeline. It usually means the last handler in the pipeline did not handle the exception.  
> io.netty.handler.codec.DecoderException: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 69  
> at io.netty.handler.codec.ByteToMessageDecoder.callDecode(ByteToMessageDecoder.java:472) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.channelInputClosed(ByteToMessageDecoder.java:405) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.channelInputClosed(ByteToMessageDecoder.java:372) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.channelInactive(ByteToMessageDecoder.java:355) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.channel.AbstractChannelHandlerContext.invokeChannelInactive(AbstractChannelHandlerContext.java:245) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.channel.AbstractChannelHandlerContext.access$300(AbstractChannelHandlerContext.java:38) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.channel.AbstractChannelHandlerContext$4.run(AbstractChannelHandlerContext.java:236) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.util.concurrent.DefaultEventExecutor.run(DefaultEventExecutor.java:66) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.util.concurrent.SingleThreadEventExecutor$5.run(SingleThreadEventExecutor.java:897) [netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.util.concurrent.FastThreadLocalRunnable.run(FastThreadLocalRunnable.java:30) [netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at java.lang.Thread.run(Thread.java:748) [?:1.8.0\_222]  
> Caused by: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 69  
> at org.logstash.beats.Protocol.version(Protocol.java:22) ~[logstash-input-beats-6.0.3.jar:?]  
> at org.logstash.beats.BeatsParser.decode(BeatsParser.java:62) ~[logstash-input-beats-6.0.3.jar:?]  
> at io.netty.handler.codec.ByteToMessageDecoder.decodeRemovalReentryProtection(ByteToMessageDecoder.java:502) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.callDecode(ByteToMessageDecoder.java:441) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> ... 10 more  
> [2019-10-30T04:27:22,428][INFO][org.logstash.beats.BeatsHandler][main] [local: 192.168.3.191:5044, remote: 192.168.3.14:18803] Handling exception: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 71  
> [2019-10-30T04:27:22,432][WARN][io.netty.channel.DefaultChannelPipeline][main] An exceptionCaught() event was fired, and it reached at the tail of the pipeline. It usually means the last handler in the pipeline did not handle the exception.  
> io.netty.handler.codec.DecoderException: org.logstash.beats.InvalidFrameProtocolException: Invalid version of beats protocol: 71  
> at io.netty.handler.codec.ByteToMessageDecoder.callDecode(ByteToMessageDecoder.java:472) ~[netty-all-4.1.30.Final.jar:4.1.30.Final]  
> at io.netty.handler.codec.ByteToMessageDecoder.channelRead(ByteToMessageDecoder.java:278)

**Kibana version** :  
7.4.1   
**Elasticsearch version** :  
7.4.1  
**APM Server version** :  
7.4.1  
\*\*filebeat version \*\*  
7.4.1  
**APM Agent language and version** :  
NA  
**Logstash version**  
7.4.1-1  
Thanks  
Joseph John

---

<div class="post-metadata">

**Author:** ![xeraa](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/xeraa/32/48181_2.png) [@xeraa](https://discuss.elastic.co/u/xeraa)\
**Post date:** [November 14, 2019, 1:49am UTC](https://discuss.elastic.co/t/warning-message-seen-at-the-logs-invalidframeprotocolexception-invalid-version-of-beats-protocol-71/205789/2 "2019-11-14T01:49:00Z")

</div>

It might be related to [Invalid version of beats protocol?](https://discuss.elastic.co/t/invalid-version-of-beats-protocol/205259/2)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 12, 2019, 1:49am UTC](https://discuss.elastic.co/t/warning-message-seen-at-the-logs-invalidframeprotocolexception-invalid-version-of-beats-protocol-71/205789/3 "2019-12-12T01:49:00Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
