# SyslogServer to ELK

**URL:** <https://discuss.elastic.co/t/syslogserver-to-elk/80963>\
**Category:** Logstash\
**Created:** [April 3, 2017, 7:50am UTC](https://discuss.elastic.co/t/syslogserver-to-elk/80963 "2017-04-03T07:50:38Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![mun](https://avatars.discourse-cdn.com/v4/letter/m/35a633/32.png) [@mun](https://discuss.elastic.co/u/mun)\
**Post date:** [April 3, 2017, 7:50am UTC](https://discuss.elastic.co/t/syslogserver-to-elk/80963/1 "2017-04-03T07:50:38Z")

</div>

Hello,

Can anyone help me on this issue?

I have a syslog server and inside these server, there are several folder which are

1. snmp,
2. sophos fw,
3. netflow data &
4. syslog clients.  
I grab those data from different server and push to syslog server. In my case, I want to push all the information from syslog server to ELK.

So, my question is,

How can the ELK read each folder from syslog server? So that, it will appears in different type at Kibana with Syslogserver IP address.

Thank You.

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [April 4, 2017, 9:09am UTC](https://discuss.elastic.co/t/syslogserver-to-elk/80963/2 "2017-04-04T09:09:20Z")

</div>

Use the file input.

But you will want to put things in different indices 🙂

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [May 2, 2017, 9:09am UTC](https://discuss.elastic.co/t/syslogserver-to-elk/80963/3 "2017-05-02T09:09:22Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
