Address Elastic ingestion backups

With the re-appearance of logging ingestion backlogs in production#15825 (closed), we should spike adding dedicated ingestion nodes to our logs-prod cluster.

Per the edit cluster info for Coordinating and Ingest instances - Coordinating and ingest nodes are dedicated to processing all incoming requests. Selecting a dedicated coordinating and ingest node results in better performance and less chance of failure.

We can engage our Elastic support team for input on the sizing of those instances.

Edited by Dave Smith