# Collect log from file via Filebeat to Logstash VS collect from logstash directly

**URL:** <https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [August 10, 2022, 10:04am UTC](https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816 "2022-08-10T10:04:46Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![thahgr](https://avatars.discourse-cdn.com/v4/letter/t/e19b73/32.png) [@thahgr](https://discuss.elastic.co/u/thahgr)\
**Post date:** [August 10, 2022, 10:04am UTC](https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816/1 "2022-08-10T10:04:46Z")

</div>

What are the PROS and CONS of using Filebeat to collect logs from an application writing files against using the File input plugin of Logstash to directly gather them.

> **[File input plugin | Logstash Reference \[8.3\] | Elastic](https://www.elastic.co/guide/en/logstash/current/plugins-inputs-file.html)**

What is more efficient ?

---

<div class="post-metadata">

**Author:** ![thahgr](https://avatars.discourse-cdn.com/v4/letter/t/e19b73/32.png) [@thahgr](https://discuss.elastic.co/u/thahgr)\
**Post date:** [August 30, 2022, 8:02am UTC](https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816/2 "2022-08-30T08:02:08Z")

</div>

hi, nobody can give an insight ?

---

<div class="post-metadata">

**Author:** ![MichelLaterman](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/michellaterman/32/110221_2.png) [@MichelLaterman](https://discuss.elastic.co/u/MichelLaterman)\
**Post date:** [September 1, 2022, 7:07pm UTC](https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816/3 "2022-09-01T19:07:15Z")

</div>

Generally, the \*beats are considered to be lightweight processes: [Not sure whether to use Logstash or Beats | Filebeat Reference [8.4] | Elastic](https://www.elastic.co/guide/en/beats/filebeat/current/diff-logstash-beats.html)

---

<div class="post-metadata">

**Author:** ![elasticforme](https://avatars.discourse-cdn.com/v4/letter/e/f05b48/32.png) [@elasticforme](https://discuss.elastic.co/u/elasticforme)\
**Post date:** [September 1, 2022, 7:13pm UTC](https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816/4 "2022-09-01T19:13:20Z")

</div>

if you would like to do lot of processing on incoming data then you will use logstash.  
if you already have prebuilt parser for beats then use directly and for small changes you can setup ingest pipeline

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 29, 2022, 9:13pm UTC](https://discuss.elastic.co/t/collect-log-from-file-via-filebeat-to-logstash-vs-collect-from-logstash-directly/311816/5 "2022-09-29T21:13:27Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
