[syslog-ng] Elasticsearch destination and time-zone info

Fabien Wernli wernli at in2p3.fr
Tue Sep 29 21:24:51 CEST 2015


Hi Evan,

On Tue, Sep 29, 2015 at 09:13:40AM -0700, Evan Rempel wrote:
> We are now feeding a steady 5,000 messages per second into elasticsearch with spikes into the 30,000 messages per second.
> All the right indexes and all of the soft macros parsed by the syslog-ng patterndb.

Good to hear! Do you use transport or node client mode?
Also, it would be great if you could share some details about your
Elasticsearch cluster architecture (number of nodes, shards, replicas, etc.)

Thanks!



More information about the syslog-ng mailing list