On Thu, Mar 31, 2016 at 03:46:53AM PDT, Simon Lyall spake thusly: > * logstash and Elasticsearch would probably be the longer team option > although there doesn't seem to be a good built-in asterisk filter for > grok.
I have been very happy with and have done wonderful things with the ELK (elasticsearch, logstash, kibana) stack. A grok filter isn't hard to develop. I have done a lot of work with Splunk also and have seriously mixed feelings about it. -- Tracy Reed _______________________________________________ Tech mailing list Tech@lists.lopsa.org https://lists.lopsa.org/cgi-bin/mailman/listinfo/tech This list provided by the League of Professional System Administrators http://lopsa.org/