Answer the question
In order to leave comments, you need to log in
Zabbix + elasticsearch?
Good afternoon, I plan to build an alert system, the load is 2 GB of data per day,
there will be about 150 triggers, the characteristics of the server from what I know are 2 tb (sd ss 15k) of disk space, 64 GB of RAM and a processor of 12 cores,
I want to install zabbix, subd is not yet I know, but I think oracle since there is sga, advise which one to use? and in my case, will using elasticsearch help in performance? if yes then how to marry zabbix with elasticsearch?
Answer the question
In order to leave comments, you need to log in
I would advise against both.
And put influxdb (base for metrics) + kapacitor (triggers) + grafana (charts).
This is how we monitor the cluster.
If you really need an elastic, then for the analysis of logs. Then install ES + logstash + kibana.
We also monitor this way, but in a different place and for other purposes.
The main question here is why they decided to use such a bundle.
Zabbix can be easily made friends with elasticSearch through a script. The script makes a request to the ElasticSearch API, and passes the search filter to the script (see the ElasticSearch API documentation).
Another question is what do you want to monitor in this way? If logs, then there is a long-existing combination of Logstash + ElasticSearch + Kibana (without notifications) and / or Logstash + ElasticSearch + ElastAlert (with notification)
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question