# Graylog 4.x and Elasticsearch 7.11.x?

**URL:** <https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069>\
**Category:** Graylog Central (peer support)\
**Created:** [March 10, 2021, 7:20pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069 "2021-03-10T19:20:03Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![ttsandrew](https://avatars.discourse-cdn.com/v4/letter/t/97f17d/32.png) [@ttsandrew](https://community.graylog.org/u/ttsandrew)\
**Post date:** [March 10, 2021, 7:20pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/1 "2021-03-10T19:20:03Z")

</div>

Is anyone running ES 7.11.x with the latest Graylog?

I see that 7.10.x is officially supported by I just wonder if that’s because of when the document was authored.

[https://docs.graylog.org/en/4.0/pages/configuration/elasticsearch.html#elasticsearch-versions](https://docs.graylog.org/en/4.0/pages/configuration/elasticsearch.html#elasticsearch-versions)

@aaronsachs

---

<div class="post-metadata">

**Author:** ![aaronsachs](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/aaronsachs/32/7180_2.png) [@aaronsachs](https://community.graylog.org/u/aaronsachs)\
**Post date:** [March 10, 2021, 7:57pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/2 "2021-03-10T19:57:46Z")

</div>

TL;DR 7.11.x is not officially supported by Graylog. There are a number of issues that it introduces that we’re not prepared to support, and IIRC there are also licensing changes that make supporting 7.11 a challenge.

---

<div class="post-metadata">

**Author:** ![cawfehman](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/cawfehman/32/4132_2.png) [@cawfehman](https://community.graylog.org/u/cawfehman)\
**Post date:** [March 11, 2021, 2:30am UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/3 "2021-03-11T02:30:28Z")

</div>

I feel this should be pinned or a note put into the Docs to highlight this. Could stave off a bunch of pain and suffering for people.

---

<div class="post-metadata">

**Author:** ![aaronsachs](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/aaronsachs/32/7180_2.png) [@aaronsachs](https://community.graylog.org/u/aaronsachs)\
**Post date:** [March 11, 2021, 4:03am UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/6 "2021-03-11T04:03:48Z")

</div>



---

<div class="post-metadata">

**Author:** ![dani](https://avatars.discourse-cdn.com/v4/letter/d/35a633/32.png) [@dani](https://community.graylog.org/u/dani)\
**Post date:** [March 13, 2021, 6:05pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/7 "2021-03-13T18:05:30Z")

</div>

I upgraded to 7.11.2 today.  
Elasticsearch service did not start after upgrade and needed some fixing.  
But it’s running now with Graylog 4.0.5.

---

<div class="post-metadata">

**Author:** ![aguida79](https://avatars.discourse-cdn.com/v4/letter/a/eb8c5e/32.png) [@aguida79](https://community.graylog.org/u/aguida79)\
**Post date:** [March 22, 2021, 3:20pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/8 "2021-03-22T15:20:54Z")

</div>

Hi @dani,

Can you tell us what did you do to fixing ElasticSearch to work with Graylog 4.0.5?

Thanks in advance.

Regards,  
Alejandro

---

<div class="post-metadata">

**Author:** ![aaronsachs](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/aaronsachs/32/7180_2.png) [@aaronsachs](https://community.graylog.org/u/aaronsachs)\
**Post date:** [March 22, 2021, 9:22pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/9 "2021-03-22T21:22:00Z")

</div>

Hi @dani and @aguida79 ,

As I mentioned previously, there are some actual technical bits that 7.11 introduces that actually break things (specifically around indexing). As such, 7.11 is categorically not supported by Graylog. While it may work now, we’ve seen a number of customers run into issues. That said, we don’t have a path forward for making it work, nor do we have an ETA on if/when we’ll support it. If y’all would like to continue discussing getting 7.11 working, my suggestion is to start a new discussion on it.

---

<div class="post-metadata">

**Author:** ![aaronsachs](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/aaronsachs/32/7180_2.png) [@aaronsachs](https://community.graylog.org/u/aaronsachs)\
**Post date:** [March 22, 2021, 9:22pm UTC](https://community.graylog.org/t/graylog-4-x-and-elasticsearch-7-11-x/19069/10 "2021-03-22T21:22:05Z")

</div>


