What exactly steps should take to import custom syslog to elk

hi
i'm new to elk and i wanted to know what exactly should i do to receive various syslog and proccess and define filed and make dashbord? i've read some articles that points to some filter ,rule and grok stuff that i didn't understand,would you plz explain to me?

This is a super similar question to Specific steps to build monitoring and siem with elk, right?

yeah they both got no answerb , very similar!

I'd look at some of the free trainings we have:

1 Like

tnx :slightly_smiling_face: