I'm new to elastic stack and have built x2 dedicated logstash servers and a cluster of 3 elasticsearch servers and kibana install on all of them. I'm not sure if that last part is correct but any advise would be great at the moment.
I have configured my input config file in logstash with separate files 1 for input, another for my filters and a final config file for my output to elasticsearch.
I have a VIP load balance sitting in front of my logstash point to both servers and a VIP pointing to the kibana gui for login.
I am having an issue seeing my logs in kibana I'm not sure if its related to the logstash, elasticsearch or kibana.
I can see my cisco asa logs in logstash and I used a template syslog filter for cisco asa I found and it looks like the script was accepted by the logstash as it started with no errors.
If anyone can please help me I would greatly appreciate it. My business isn't sure of the benefits of using ELK but I have read and seen all the quality it can provide. I'm just not confident with the application and the build.
Im happy to show outputs of conf etc please just ask and also show me what output command I need to use to get details for you. My Linux skills are not great so please bear with me.
Im running version 7.6 on an ubuntu 18.04.4 LTS
Thanks in advance,