Outcold Solutions is sponsoring Splunk .conf26 - see you there!

Forward Kubernetes logs to ElasticSearch and OpenSearch.

Stream container logs, host logs, syslog, journald, and Kubernetes events from any cluster - straight into your ElasticSearch or OpenSearch indices, with index lifecycle policies and templates handled for you.

Install in 5 minutes Read concepts Troubleshooting

Installation

Forward logs to ElasticSearch or OpenSearch → Installation

Concepts

What Collectord does, the data model, and how configuration layers → Concepts

Configuration

Deployment files for ElasticSearch and OpenSearch → Configuration

Annotations

Control datastream routing and log discovery per pod → Annotations

Annotations reference

Full list of every annotation grouped by datatype → Annotations reference

Troubleshooting

Verify configuration and diagnose deployment issues → Troubleshooting

License server

Distribute license keys across clusters from a central URL → License server

Release history

Changelog of Collectord releases for ElasticSearch and OpenSearch → Release history

Upgrade

Step-by-step version upgrade instructions → Upgrade

Security

Image security, container privileges, and RBAC access model → Security