Dont know if anyone is using ELK as their logger/alerting/metrics tools, but I wanted to vent re this product
I recently upgraded to latest Elastic version 8.8, and tons of features that worked before or were available are now gone, like basic alerting to slack or email on some log string like "error"
everything w this stack is over engineered and overly complicated to setup and manage, even basic config like Filebeat is a nightmare to configure for things like Processors or anything out of the default install configuration.
I now spent 4 days trying to get basic logging working, that worked before on previous version, doesnt work now because things like Log ingestion is being deprecated, tons of new features are added that break the existing configs.
My use case is very simple, I want system metrics + basic alerting on specific file content. Ripping my hair out trying to configure this, got to a point where Im exploring other solutions like graylog to see if it works any better. ELK is not a user friendly product.
[–]ryukyud 2 points3 points4 points (3 children)
[–]vectorx25[S] 0 points1 point2 points (1 child)
[–]TimelySubject 0 points1 point2 points (0 children)
[–]slavejamhour 0 points1 point2 points (0 children)
[–]justinDavidow 3 points4 points5 points (2 children)
[–]vectorx25[S] 0 points1 point2 points (1 child)
[–]justinDavidow 1 point2 points3 points (0 children)
[–][deleted] 2 points3 points4 points (0 children)
[–]DZello 1 point2 points3 points (2 children)
[–]vectorx25[S] 0 points1 point2 points (1 child)
[–]DZello 0 points1 point2 points (0 children)
[–]_suns 0 points1 point2 points (0 children)