# How do I separate nginx logs for different sites on the same server with Filebeat 7.0.1

**URL:** <https://discuss.elastic.co/t/how-do-i-separate-nginx-logs-for-different-sites-on-the-same-server-with-filebeat-7-0-1/180078>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [May 7, 2019, 9:57pm UTC](https://discuss.elastic.co/t/how-do-i-separate-nginx-logs-for-different-sites-on-the-same-server-with-filebeat-7-0-1/180078 "2019-05-07T21:57:41Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![ald](https://avatars.discourse-cdn.com/v4/letter/a/e47774/32.png) [@ald](https://discuss.elastic.co/u/ald)\
**Post date:** [May 7, 2019, 9:57pm UTC](https://discuss.elastic.co/t/how-do-i-separate-nginx-logs-for-different-sites-on-the-same-server-with-filebeat-7-0-1/180078/1 "2019-05-07T21:57:42Z")

</div>

Sorry in advance if this is covered already elsewhere.

I have a nginx server that hosts multiple sites and want to set a custom field/unique identifier for the access/error logs from each site that go to separate files. Should I modify the nginx module directly or do I disable it and create an filebeat.input for each website's access and error logs? What would that look like in the appropriate config? I have the filebeat output going to logstash and currently have a filter there to parse the log data.

Thanks,  
Al

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 4, 2019, 10:00pm UTC](https://discuss.elastic.co/t/how-do-i-separate-nginx-logs-for-different-sites-on-the-same-server-with-filebeat-7-0-1/180078/2 "2019-06-04T22:00:52Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
