I am wondering how to create separated indexes for different logs fetched into logstash (which were later passed onto elasticsearch), so that in kibana,
In my case, I have a few client servers (each of which is installed with
filebeat ) and a centralized log server (
ELK ). Each client server has different kinds of logs. (i.e. one filebeat should read one grok filter and another filebeat should read another grok filter)
i am using ELK 7.6 , i heard that document_type was deprecated . so how to achieve this.