Log sources generate log data that vRealize Log Insight can ingest and analyze. You can find the information for configuring a log source under the Log Sources section.
- A vRealize Log Insight agent collects log events from log files and forwards the logs to a vRealize Log Insight server using cfapi or syslog protocols, or to any third-party syslog destination.
- Fluentd is an open source data collector integrated with vRealize Log Insight, which lets you unify the data collection and consumption for a better understanding of the data. You can collect logs from log sources such as Docker and Kubernetes through Fluentd.
The configuration for these log sources uses the Fluentd output plug-in fluent-plugin-vmware-loginsight. For more information, see https://github.com/vmware/fluent-plugin-vmware-loginsight. This plug-in parses logs based on the log source configuration and forwards logs to vRealize Log Insight. You can configure cfapi or syslog protocols using the plug-in. For information about the plug-in configuration, see https://github.com/vmware/fluent-plugin-vmware-loginsight/blob/master/README.md.
For information about configuring an agent, navigate to Log Sources > Agents and click the agent.
To view the installation instructions for a log source, navigate to Log Sources > Containers and click the log source.