# Data parse from multiple rsyslog to logstash to elasticsearch

**URL:** <https://discuss.elastic.co/t/data-parse-from-multiple-rsyslog-to-logstash-to-elasticsearch/341506>\
**Category:** Logstash\
**Created:** [August 23, 2023, 5:38pm UTC](https://discuss.elastic.co/t/data-parse-from-multiple-rsyslog-to-logstash-to-elasticsearch/341506 "2023-08-23T17:38:28Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![ermilan2309](https://avatars.discourse-cdn.com/v4/letter/e/b9bd4f/32.png) [@ermilan2309](https://discuss.elastic.co/u/ermilan2309)\
**Post date:** [August 23, 2023, 5:38pm UTC](https://discuss.elastic.co/t/data-parse-from-multiple-rsyslog-to-logstash-to-elasticsearch/341506/1 "2023-08-23T17:38:28Z")

</div>

Hello,

I am new to ELK. I have deployed my ELK with this article.  
[https://www.digitalocean.com/community/tutorials/how-to-install-elasticsearch-logstash-and-kibana-elastic-stack-on-ubuntu-22-04](https://www.digitalocean.com/community/tutorials/how-to-install-elasticsearch-logstash-and-kibana-elastic-stack-on-ubuntu-22-04)

I skipped the nginx part and just used the rest process.

My goal is to transfer rsyslogs form multiple locations to Logstash to elasticsearch and want to see it on kibana.

But having issue and do not know how to archive this. Can some one please guide me here ?

Also when we send logs from rsyslog it includes multiple vhosts logs so how can we differentiate that ?

Any help would be appreciated.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 20, 2023, 5:38pm UTC](https://discuss.elastic.co/t/data-parse-from-multiple-rsyslog-to-logstash-to-elasticsearch/341506/2 "2023-09-20T17:38:48Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
