I know and have confirmed there are logs comming in for this device, yet when i go to search page and select the stream and click the search button, i dont see any logs:
can anyone provide some guidance? what im looking for is if I have an input (example avaya switches) that all log to 1 specific input since you cannot change the port (all go to 514) so I want to containerize the logs for each individual switches. How can I do this? Thanks
Your search is limited to PowerDNS stream. Try just using the default stream first to keep things simple. Once that works you can route to different streams.
Streams are used to route messages to indices.
The default stream automatically goes to the default index. If you create additional indices, you need to also define corresponding streams.
My input works thats a fact as i can see the messages.
i dont have any indeces so its using the default index set.
i have a pipeline setup named “redirecting NPS” connected to the default stream.
but then what? I need to apply rules but this is all coding..?!?