+1 for sure. We're spending a significant time writing our own shipper that's polling the logs API (which only updates every 5min). Being able to provide an endpoint with an ElasticSearch or Splunk interface would be much appreciated.
We're shipping all the logs, server and audit, for all of our clusters.
+1 for sure. We're spending a significant time writing our own shipper that's polling the logs API (which only updates every 5min). Being able to provide an endpoint with an ElasticSearch or Splunk interface would be much appreciated.
We're shipping all the logs, server and audit, for all of our clusters.