I am new to ELK, so need suggestion on visualisation of rsyslog data. I am continuously ingesting rsyslog data from multiple rsyslog servers to my ELK stack. What I wish to have is, a view wherein I can have a look at,
a. Number of non-reported servers from previous day.
b. Number of Extra reported Servers from previous day.
I may have two separate graphs for these two situations.