# Graylog: ES Log: Limit of total fields \[1000\] in index \[graylog\_519\] has been exceeded and no longer processing

**URL:** <https://community.graylog.org/t/graylog-es-log-limit-of-total-fields-1000-in-index-graylog-519-has-been-exceeded-and-no-longer-processing/2009>\
**Category:** Graylog Central (peer support)\
**Created:** [August 8, 2017, 4:43pm UTC](https://community.graylog.org/t/graylog-es-log-limit-of-total-fields-1000-in-index-graylog-519-has-been-exceeded-and-no-longer-processing/2009 "2017-08-08T16:43:36Z")\
**Posts on this page:** 1\
**Showing post:** 3

<div class="post-metadata">

**Author:** ![jochen](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/jochen/32/8_2.png) [@jochen](https://community.graylog.org/u/jochen)\
**Post date:** [August 9, 2017, 12:36pm UTC](https://community.graylog.org/t/graylog-es-log-limit-of-total-fields-1000-in-index-graylog-519-has-been-exceeded-and-no-longer-processing/2009/3 "2017-08-09T12:36:28Z")

</div>

The thread on the Elastic discussion boards you’ve linked to already shows how to increase the maximum number of fields per index/mapping, also see [https://www.elastic.co/guide/en/elasticsearch/reference/5.5/mapping.html#mapping-limit-settings](https://www.elastic.co/guide/en/elasticsearch/reference/5.5/mapping.html#mapping-limit-settings) for details.

This being said, I think having 1000 different fields in one index is a bit excessive and you should think about splitting up your messages in different index sets, so that each index has less than 1000 different fields: [http://docs.graylog.org/en/2.3/pages/configuration/index\_model.html](http://docs.graylog.org/en/2.3/pages/configuration/index_model.html)

---

_[View the full topic](https://community.graylog.org/t/graylog-es-log-limit-of-total-fields-1000-in-index-graylog-519-has-been-exceeded-and-no-longer-processing/2009)._
