Since I am a novice would like to know if shipping logs from Linux system like apache/nginx filebeat would be better as compare to logstash? or I need to have logstash to injest the logs?
I believe I can directly ingest the logs in elasticsearch from filebeat, correct? Or which is mode advisable * from filebeat directly to elastcisearch
- Or from filebear to logstash