# Elastic to logs management

**URL:** <https://discuss.elastic.co/t/elastic-to-logs-management/341716>\
**Category:** Logs\
**Created:** [August 25, 2023, 7:16pm UTC](https://discuss.elastic.co/t/elastic-to-logs-management/341716 "2023-08-25T19:16:10Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Flavio\_Alves](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/flavio_alves/32/124977_2.png) [@Flavio\_Alves](https://discuss.elastic.co/u/Flavio_Alves)\
**Post date:** [August 25, 2023, 7:16pm UTC](https://discuss.elastic.co/t/elastic-to-logs-management/341716/1 "2023-08-25T19:16:10Z")

</div>

Hey, guys!  
I'm new to using elastic  
What is the best way to build this structure? and what features should i use?

at the moment I will only use the stack to centralize the logs

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [August 25, 2023, 10:48pm UTC](https://discuss.elastic.co/t/elastic-to-logs-management/341716/2 "2023-08-25T22:48:39Z")

</div>

Hi @Flavio_Alves Welcome to the community!

That is a really broad and general question.

People use the elastic stack to monitor a single application with a few logs a day. Other people use it to collect logs from thousands of hosts across many different logs types which results in hundreds of terabytes of data.

What I would suggest is take a look at this

> **[Logs overview | Elastic Observability \[8.9\] | Elastic](https://www.elastic.co/guide/en/observability/current/logs-observability-overview.html)**

And then come back and give us some further detail on what you're trying to accomplish.

What kind of logs do you want to collect?

Are you running an elastic cloud or self-managed?

If you're just getting started, you'd probably use elastic agent

But there are other methods as well. You should probably read about those.

> **[Beats and Elastic Agent capabilities | Fleet and Elastic Agent Guide \[8.9\] |...](https://www.elastic.co/guide/en/fleet/current/beats-agent-comparison.html)**

In general, if you're just getting started, I would use a lot of the defaults and not try to overarchitect over configure change a lot of settings. There's a lot of customization you can do... But if you are just beginning your journey...elastic stack will work pretty good out of the box with many of the default configurations.

Perhaps consider a little of that and then come back and give us a little bit more details and someone might be able to give you some more advice.

---

<div class="post-metadata">

**Author:** ![Flavio\_Alves](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/flavio_alves/32/124977_2.png) [@Flavio\_Alves](https://discuss.elastic.co/u/Flavio_Alves)\
**Post date:** [August 28, 2023, 4:44pm UTC](https://discuss.elastic.co/t/elastic-to-logs-management/341716/3 "2023-08-28T16:44:52Z")

</div>

Thanks for the answer @stephenb, I will explain my intention.

The stack is self-management, I'm running on Docker.

I'm going to collect logs from different servers, that compose banking system. I thought at first to use filebeat just to collect logs. I have a linux and windows servers, with a docker or kubernets on them.

I going to read the recomended document.

Thank you for the help

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 25, 2023, 4:45pm UTC](https://discuss.elastic.co/t/elastic-to-logs-management/341716/4 "2023-09-25T16:45:09Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
