August 2025
Intermediate to advanced
344 pages
8h 34m
English
All effective monitoring and security infrastructures rely on the ability to collect data from diverse sources across an organization. We’ll begin our discussion of log collection with Elastic Filebeat, which can extract dozens of log types from endpoints and the network.
You’ll discover how to harvest local logfiles and listen to the network for incoming data. Then, you’ll use Filebeat’s modules and processors to convert data to the Elastic Common Schema (ECS) naming convention, extract relevant fields from a filestream, apply tags to events to aid later analysis, and read custom logs that Filebeat’s modules ...
Read now
Unlock full access