Found the solution to our problem with Filebeat

Since I can’t reply to my previous topic.
We found the cause for our problem in this topic:

The problem was that the VMs had a “large” backlog of logs. Around 2-4 GB each. Filebeat then parsed the logs and send them uncompressed to Graylog.
We now cleaned the journal down to 500MB each.
Filebeat still sent the logs but after a few minutes Graylog ingested them all and the load went down to normal levels.


This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.