Unknown status in the Cluster Management pagenodetool-no-pass status on an affected node shows that Cassandra is downSystem Monitor > Statistics, the Events ingestion rate (per second) exceeds the recommended limit of 15,000 EPSVMware Aria Operations for logs 8.18.x
The maximum supported ingestion rate per node is 15,000 events/second. When a node receives events beyond this threshold, the Aria Operations for Logs cluster may behave abnormally, including services becoming unresponsive and nodes showing as unknown
To resolve the issue, follow these steps:
Reduce the Ingestion Rate
Apply filters on the log sources (e.g., vSphere, syslog forwarders, etc.) to only forward the most critical and necessary logs. This reduces the amount of data processed and stored, which helps minimize unnecessary overhead.
Scale Out the Cluster
If the ingestion rate cannot be reduced, consider scaling out the cluster by adding additional nodes. Use the Aria Operations for Logs Sizing Calculator to calculate the required nodes for the cluster.