TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Ask HN: What is more reliable, logstash or rsyslog?

3 pointsby uptownhrabout 10 years ago
Trying to decide if i should replace rsyslog with logstash or read off of rsyslog&#x27;s file and use logstash to insert to elastic search.<p>I&#x27;m thinking rsyslog is not required but not sure if logstash is more stable than rsyslog.

4 comments

radu0gheorgheabout 10 years ago
They are both reliable and they both have Elasticsearch outputs (recipe for rsyslog+Elasticsearch+Kibana here: <a href="http:&#x2F;&#x2F;blog.sematext.com&#x2F;2013&#x2F;07&#x2F;01&#x2F;recipe-rsyslog-elasticsearch-kibana&#x2F;" rel="nofollow">http:&#x2F;&#x2F;blog.sematext.com&#x2F;2013&#x2F;07&#x2F;01&#x2F;recipe-rsyslog-elasticse...</a>). I would stick with rsyslog if you only need to send syslog to Elasticsearch (maybe upgrade to a recent version, the ones from most distros are ancient). Logstash is more flexible and easy to use, so if I have something that rsyslog can&#x27;t do or it&#x27;s too messy, I would replace it with Logstash, or just install Logstash alongside rsyslog (normally, rsyslog is very light)
sumodirjoabout 10 years ago
Both should be reliable. The benefit you get with logstash or ELK (Elasticsearch, Logstash, Kibana) is that you can graph the log, search the logs easily from multiple servers and set alert based on anomaly pattern found on logs.
runjakeabout 10 years ago
You&#x27;ve provided no context, so I couldn&#x27;t provide you with a meaningful answer. On the face of it, they are both stable at high loads.
uptownhrabout 10 years ago
thanks for everyone&#x27;s answers.