Hello to all!
I'm using Logastash to send syslog data to ElasticSearch and I'm browsing it using Kibana. I have 2 questions regarding log backup:
- I would like to keep this data for at least 1 year before it is deleted. Where can I set the length of data retention? Is it set on each index pattern? That way, depending on each source, we can define a different retention time.
And what is the default data retention for each index pattern ?
- Concerning the backup of the server that hosts ElasticSearch. Are there any particular requirements or is a backup of the VM with a tool like Veeam enough? (As the data is saved as JSON files)
Thanks in advance for your help.