Architecture


PATROL for Elasticsearch enables you to monitor the Elasticsearch cluster, its nodes and indices. A typical architecture for PATROL for Elasctisearch is as follows:

 

PATROL for Elasticsearch architecture

PATROL for ESK architecture.png

Collector details

The following table lists the different PATROL for Elasctisearch collectors and explains how they work:

Collectors 
(Collection interval)

Monitor type

Description

eskConsumer
(10 minutes)

Elasticsearch (ESK_CONT)

Opens and manages the communication channel with  the JAVA process

eskInventory
(1 minute) 

Elasticsearch (ESK_CONT)

Discovers the elasticsearch inventory, that is, cluster, nodes, and indices

eskPerformance
(1 minute) 

Elasticsearch (ESK_CONT)

Collects the performance data of the elasticsearch cluster

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*

BMC PATROL for Elasticsearch 1.0