I'm new to ELK and all the stuff. I've been reading the documentation to have a better understanding of elastic's products and, as far I've seen, couldn't find a solution for the case below:
I'm trying to receive syslog from 3rd party embedded systems directly into logstash, compress it and send to another logstash which will decompress and send to our log management.
enviroment #1(syslog server -> logstash) -> internet(compressed data) -> environment #2 (logstash -> uncompressed data -> log management).
The idea is to compress data focusing on saving bandwidth.
Also, I'm trying to cipher this data. Will this mess up the idea above?
Thanks in advance.
PS: English isn't my first language, so, sorry for any misspelled word or unsense sentence.