# Elastic-agent: output by integration and not by policy

**URL:** https://discuss.elastic.co/t/elastic-agent-output-by-integration-and-not-by-policy/334252
**Category:** Elastic Agent
**Created:** [May 24, 2023, 6:12pm UTC](https://discuss.elastic.co/t/elastic-agent-output-by-integration-and-not-by-policy/334252 "2023-05-24T18:12:16Z")
**Posts on this page:** 4
**Page:** 1

<div class="post-metadata">

### Author: ![Ofir\_Edi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ofir_edi/32/78181_2.png) [@Ofir\_Edi](https://discuss.elastic.co/u/Ofir_Edi)
#### Post date: [May 24, 2023, 6:12pm UTC](https://discuss.elastic.co/t/elastic-agent-output-by-integration-and-not-by-policy/334252/1 "2023-05-24T18:12:16Z")

</div>

Hi,  
i have an instance of elastic-agent on a server where i have multiple integrations. for most of them I need the Elasticsearch output. But, I also have some log files on that server which I want to send to Logstash for parsing.  
The issue is that the agent output is set on the agent-policy level and not on integration level, thus limiting each agent to only one output format (according to documentation there can only be single policy per agent).

Is there a way to combine outputs or will I have to install Filebeat standalone in addition to Elastic-Agent on this server in order to harvest these log files and send to LS?

Thanks,  
Ofir

---

<div class="post-metadata">

### Author: ![leandrojmp](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/leandrojmp/32/107231_2.png) [@leandrojmp](https://discuss.elastic.co/u/leandrojmp)
#### Post date: [May 24, 2023, 11:48pm UTC](https://discuss.elastic.co/t/elastic-agent-output-by-integration-and-not-by-policy/334252/2 "2023-05-24T23:48:40Z")

</div>

> [@Ofir\_Edi](#):
>
> Is there a way to combine outputs or will I have to install Filebeat standalone in addition to Elastic-Agent on this server in order to harvest these log files and send to LS?

There is none, the output is per policy, so every integration in that policy will use the same output.

You will need to run a standalone filebeat instance to collect those logs and send to Logstash.

---

<div class="post-metadata">

### Author: ![Ofir\_Edi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ofir_edi/32/78181_2.png) [@Ofir\_Edi](https://discuss.elastic.co/u/Ofir_Edi)
#### Post date: [May 26, 2023, 9:13am UTC](https://discuss.elastic.co/t/elastic-agent-output-by-integration-and-not-by-policy/334252/3 "2023-05-26T09:13:16Z")

</div>

Thanks for the reply @leandrojmp

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [June 23, 2023, 9:14am UTC](https://discuss.elastic.co/t/elastic-agent-output-by-integration-and-not-by-policy/334252/4 "2023-06-23T09:14:11Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
