Hot/warm/cold architecture

Hello. Where can I read about the implementation of the hot/warm/cold architecture in graylog? And is it possible for lm to do this as in kibana?


For something like that it would be under the following with elasticsearch.

  • Configuring shard allocation awareness
  • Configuring an ILM policy

With Graylog it would be more as a log retention. Also the enterprise version would allow ARCHIVING which I think is similar to Cold.

I have personally only used Kabana on OpenSearch and ELK stack But in the forum I have noticed other combining Graylog/ Kibana.
Perhaps you can get a better insight here.

enterprise version is cool, but unfortunately it is not available in my country

I didn’t know licenses are restricted on location.
Have you talked to someone about that? Perhaps customer support?

