i wanted to know whether it's a best practice to send log data DIRECTLY with rsyslog into logstash ??
or is it better to send data from rsyslog to another rsyslog server and and then make logstash operate on this data received by rsyslog ??
i mean is this strategy pointed in this article how-to-centralize-logs-with-rsyslog-logstash-and-elasticsearch-on-ubuntu-14-04, would be the best option ?
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.