I started creating a Blog around the ELK and Networking, I am using the stack quite some time now and found it difficult in the beginning to get started, especially on what to do and how to visualize all the precious data I collected.
The first post is about getting Juniper Intrusion Detection/Prevention syslog messages indexed and visualized in a way that technicians and management likes it(got a map :P) .
I added all the needed searches, visualizations and the dashboard up in github, for everyone to use and make the start a bit easier.
Last but not least the link NetlogGuy Blog
If you like it please share, if not just forget about it :).