Hi,
I'm sending events from my SIEM system to logstash.
- sending SYSLOG CEF over tcp
- 5000-10000 EPS (events per second)
- my logstash hardware:
- 16 Giga RAM
- 8 CPU
- 100 Giga SSD
My logstash don't ingest all data and crashing..
Is there any Step by Step guide to how implement the best performance for a logstash service...
Thanks in advance