i'm new to elk and i wanted to know what exactly should i do to receive various syslog and proccess and define filed and make dashbord? i've read some articles that points to some filter ,rule and grok stuff that i didn't understand,would you plz explain to me?
This is a super similar question to Specific steps to build monitoring and siem with elk, right?
yeah they both got no answerb , very similar!
I'd look at some of the free trainings we have: