nixos-config/terranix/graylog/README.md

377 B

The idea

on all messages are pipelines which are quick and forward traffic to dedicated streams, on theses streams the more costly but also richer pipelines are triggered.

  • avoid extractors, because they are applied on every message.

Use Generic Geo Ip Location plugin (at the end)

this way I don't have to parse everything myself.

Use Content Packs

  • for nginx