# Using Filebeat to send different logs and differentiating in Kibana

**URL:** <https://discuss.elastic.co/t/using-filebeat-to-send-different-logs-and-differentiating-in-kibana/287580>\
**Category:** Logs\
**Created:** [October 25, 2021, 1:01pm UTC](https://discuss.elastic.co/t/using-filebeat-to-send-different-logs-and-differentiating-in-kibana/287580 "2021-10-25T13:01:34Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Maduranga](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/maduranga/32/109172_2.png) [@Maduranga](https://discuss.elastic.co/u/Maduranga)\
**Post date:** [October 25, 2021, 1:01pm UTC](https://discuss.elastic.co/t/using-filebeat-to-send-different-logs-and-differentiating-in-kibana/287580/1 "2021-10-25T13:01:34Z")

</div>

Hello,

I am looking for guidance to get started with ELK stack with Filebeat.  
I am using Elastic cloud with my servers using Filebeat to send logs directly to the Elastic cloud.

I can get the log stream and see the stream in Kibana.  
Now I want to know how I can send multiple streams and differentiate them.

For example, I have two servers. Each server has its own Filebeat streaming logs.  
Each server has an application log and an Nginx log that I want to send to Elastic.

My question is, what is the correct way to configure these log streams, so I can differentiate them in Kibana.

I understand I am asking quite a fundamental question. There are many concepts in ELK and I am a bit lost. Would really appreciate if I can get some guidance on how to get started.

---

<div class="post-metadata">

**Author:** ![riferrei](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/riferrei/32/104867_2.png) [@riferrei](https://discuss.elastic.co/u/riferrei)\
**Post date:** [October 25, 2021, 4:54pm UTC](https://discuss.elastic.co/t/using-filebeat-to-send-different-logs-and-differentiating-in-kibana/287580/2 "2021-10-25T16:54:06Z")

</div>

Hi @Maduranga,

First of all — in the Elastic community — you're more than welcome to ask fundamental questions. In fact, those are usually the best ones 🥰

You can differentiate your log streams via tags. You can add the [add\_tags](https://www.elastic.co/guide/en/beats/filebeat/current/add-tags.html) processor to your Filebeat configuration that can add custom tags to the events generated. Though the add\_tags processor should be enough for your needs, you may also want to take a look into the [add\_host\_metadata](https://www.elastic.co/guide/en/beats/filebeat/current/add-host-metadata.html) one.

— @riferrei

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 22, 2021, 4:55pm UTC](https://discuss.elastic.co/t/using-filebeat-to-send-different-logs-and-differentiating-in-kibana/287580/3 "2021-11-22T16:55:01Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
