At work, I recently had a need to put in place a scalable logging solution based around the ELK stack. Issues with Multicast networking aside, Elasticsearch scales pretty well on its own without the need for any additional overheads, however discovering whether a node is online or not and connecting only to available nodes can be tricky. Scaling Logstash can be tricky, but it basically involves a