https://github.com/osquery/osquery logo
Title
s

soumitr

08/13/2019, 5:09 PM
do people generally use kolide fleet independently? are there any examples where kolide might be used to pipe osquery query results to a separate database for further processing?
z

zwass

08/13/2019, 5:10 PM
It's very common to push logs from Fleet to Splunk, ELK, or AWS.
s

soumitr

08/13/2019, 6:28 PM
could you please link me to some docs on how that kind of log forwarding could be set up?
z

zwass

08/13/2019, 7:10 PM
Fleet puts the logs on the filesystem of the server, then you can use any forwarding tool you like (fluentd, splunkd, logstash, etc.).
s

soumitr

08/13/2019, 8:43 PM
thanks!!