Hello all, 

I'm new to the ELK stack. I will be logging Windows Events, Syslogs from 
firewalls, routers etc into my elasticsearch. 

I am expecting daily data of around 2GB to be logged into my elasticsearch 
server. I will be creating indices on daily or weekly basis. 

And my logs are going to be stored for atleast a year online and offline 
after that. 

I have been looking around and also searched this forum, but I was not able 
to find a definitive guide that explained how to design the architecture - 
RAM, # of CPU cores, # of Elastcisearch nodes and shards / node. 

The system will be mainly used for logging purposes only. So there won't be 
that many concurrent users. 

Appreciate any pointers on best practices in setting up the Elasticsearch 
deployment. 

Thanks, 
Gopinath

-- 
You received this message because you are subscribed to the Google Groups 
"elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to elasticsearch+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/elasticsearch/23818203-6fe3-49ae-996d-443c2250ea34%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to