I am starting to use Graylog for log shipping on some web servers. I have 3 environments to monitor (test, uat, prod) and am wondering how best to go about organizing my dashboard(s).

In my previous experience with Splunk, I could add a custom dropdown to the dashboard and update the query of each panel to be something like “…AND env=’$env$’”. Basically, I am hoping to have the same dashboard panels for these 3 different environments without having to maintain 3 different dashboards.

Looks like you are interested in Graylog Parameters The catch is it requires a Enterprise license … which you can have for free if you can keep your data below 5GB per day.


Yup. That’s what I’m looking for. Thanks for the assist!

