We have 4 sites with 1 ELK stack on each. Therefore, we are using Kibana to visualize and search for log at individual site. Now, we are looking for a solution to use 1 common Kibana as a single point of management to be able to manage all sites (2 node cluster at each site).
I'm confusing with many option such as Tribe node, Cross Cluster Search, Kafka,...
What version are you using?
Cross cluster search would be the recommended option but it was only introduced starting with version 5.5.0.
It will work with clusters at different sites, as long as you have connectivity with the ES clusters on each site.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.