For point 2, both ELK stacks were cloned from the same VM instance, and hence, they are of the same hardware spec. 8core cpu + 24g RAM, ubuntu 16.04. when I clicked "Discover" and "Refresh" on Kibana, ELK stack v6.8.16 takes 1 second to show the results of last 15 mins while ELK stack v7.13.2 takes 3 seconds to do the same thing.
but i tested it separately.
k8s cluster 1 is sending logs to v6.8
k8s cluster 2 is sending logs to v7.13
that is a new kubectl command i issued.
event was logged on v6.8 but not on v7.13
i'm wondering if such event was filtered on logstash or filebeat or any component? any way I can enable to accept all logs from k8s?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.