> Elasticsearch was never a database. It was built as a search engine API over Apache Lucene (an incredibly powerful full-text search library), but not as a system of record. Even Elastic’s own guidance has long suggested that your source of truth should live somewhere else, with Elasticsearch serving as a secondary index. Yet, over the last decade, many teams have tried to stretch the search engine into being their primary database, usually with unexpected results.
We demanded to keep our normal logs but you know how corporate IT is ...
feld
Unknown parent • • •@maphouse this quote came from ElasticSearch
when I worked at bigcorp, we were in a high security team. Devs angry they didn't have all access to all logs. We had our regular logs and our system audit logs. Management basically forced us to to jam everything into ElasticSearch and abandon the normal logs. Elastic was supposed to be the source of truth.
We warned them. Of course it became a nightmare with the cluster falling out of sync and having broken replicas and stuff, data loss...