VOOZH about

URL: https://marcinbojko.wordpress.com/tag/elasticsearch/

⇱ elasticsearch | Blog Marcina Bojko


Blog Marcina Bojko

Linux,Windows,serwer, i tak dalej ;)

Posts Tagged ‘elasticsearch

Catching logs – Graylog is a good place to start.

During my talks with multiple clients, there always was a lot of jam about ‚Observability‚ buzzword, mostly followed by ‚prometheus’, ‚grafana’, ‚sensu’, ‚datadog’ tags. However the statement above is quite right, the second question asked by me was ‚what about logs’. Here answers were not so unanimous. So we could get:

  • What about them?
  • Yes, we have them, on hosts
  • We don’t care about logs, only (prometheus/sensu/grafana/metrics) matters!
  • We’re sending them to some Linux host via Syslog and we can browse them later

Sounds familiar? Yup.

More advanced answers were dancing around ELK stack, some of them mentioned cloud-native solutions like Google’s StackDriver, Amazon CloudWatch Logs, Azure Monitor.
For simples cases (regarding: on-premise or cloud-based) we can use a smaller setup of Graylog – https://www.graylog.org/

It can be used as Enterprise Licensed stack for up to 5 GB of data per day. You can have advanced analytics, archiving (long term – as long as you please), alerts & event management, all in one box.

Sure, for production usage it’s recommended to rebuild this setup, having more than 1 node, but for simpler and non-performance-greedy usage this can be a good start.

You can deliver logs (WindowsLogs, TextFile logs, and AuditLogs using proper Beats – https://www.elastic.co/beats/)

As a simple starter you can try using this setup – available as Traefik proxied setup:

https://github.com/marcinbojko/graylog

Written by marcinbojko

24 stycznia, 2021 at 13:36

Napisane w work

Tagged with beats, elasticsearch, graylog, logs, opensource, traefik, work

Jestem dostępny:

O autorze https://marcinbojko.wordpress.com/about/ github.com https://github.com/marcinbojko LinkedIn https://www.linkedin.com/in/marcinbojko Facebook https://www.facebook.com/marcin.bojko1

Chocolatey

Chocolatey

Najnowsze wpisy

Blog Stats

  • 127 594 hits

Najpopularniejsze wpisy

active directory amiga Android ansible ati backup ca centos chmura chocolatey chrome debian Dell disaster recovery dlink docker drbl dsc emulacja etch filesystem firefox food foreman foto Fujitsu-Siemens fun github google gsm HP htc hyper-v hypervisor IBM internet kubernetes linux media microsoft mint mozilla nexus 7 ntfs-3g nvidia office oldchool open open source opensource opensuse outlook packer pacman pocket powershell puppet radeon sci-fi scvmm servers star trek traefik Uncategorized vagrant virtualisation vmware windows windows defender winuae win_manage wirtualizacja work xbmc zabbix
Czerwiec 2026
Pon W Śr Czw Pt S N
1234567
891011121314
15161718192021
22232425262728
2930

Meta

Archiwum

Dołącz do 11 innych subskrybentów

Stwórz darmową stronę albo bloga na WordPress.com.

%d
Zaprojektuj witrynę taką jak ta za pomocą WordPress.com
Rozpocznij