How to visualise syslog reporting data deltas

Hi There,

I am new to ELK, so need suggestion on visualisation of rsyslog data. I am continuously ingesting rsyslog data from multiple rsyslog servers to my ELK stack. What I wish to have is, a view wherein I can have a look at,

a. Number of non-reported servers from previous day.
b. Number of Extra reported Servers from previous day.

I may have two separate graphs for these two situations.

Thanks,
Nitin

Hello,

Have you looked at using built dashboards from beats for this?
https://www.elastic.co/guide/en/beats/filebeat/master/setting-up-and-running.html
https://www.elastic.co/guide/en/beats/filebeat/master/filebeat-input-syslog.html

They come with built in dashboards with visualizations.

Thanks,
Bhavya

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.