I'd like to leverage Filebeat so it'd fetch our o365\azure\aws logs using the various modules.
I'd like to understand how would it handle with very high volumes?
Any way to maintain a cluster of Filebeat clusters?
Did anyone manage to handle such a situation where one Filebeat per data type (o365\gsuite\azure audit log) wasn't enough?
Seems like in S3 sqs specifically horizontal scaling is feasible, but what about the others?