Enhance logging infrastructure

Description

All new servers are logging to our central logging servers (tor1-prd-log01 and log02). This is running on rsyslog (clients and servers) and writing to traditional text files (see /var/log/hosts).

We need to complement this with additional tools like a web interface to logs, search capabilities, etc, so end users (developers) can run queries against logs.

Environment

None

Activity

Show:

Giovanni Tirloni January 23, 2018 at 2:11 PM

is it okay if we close this Jira and open a new one specifically for ELK? I can do that if you think that's okay.

Alan Harnum August 7, 2015 at 2:19 PM

Avtar and I were discussing this yesterday and were wondering what the thoughts of others were about deploying this as a separate service (ELK stack or similar, with Logstash Forwarder or other pieces in place on the central logging servers) on Kubernetes.

It seemed plausible to us both that since this would be a brand new service it would be an opportunity to trial-run Kubernetes.

To that end I'm looking into the containerization options for running the ELK stack along with various other things.

Details

Assignee

Reporter

Priority

Created August 3, 2015 at 9:40 PM
Updated January 23, 2018 at 2:11 PM