Error/Exception/Audit Logs to ELK from Rules


I am trying to send the logs from Auth0 rules to ELK stack. I see the below options.

Extension to send the logs to logstash seems to be happening on a scheduler. Where does it pickup the logs from?
Can a similar method of sending to splunk be used for sending the logs to ELK (i.e. adding a rule at the last and sending logs on demand)?

Appreciate your inputs on this.


Hey there @Selva!

Unfortunately we don’t have any content on ELK so far (I guess you’re talking about Grimoire Labs stuff right?). It’s fetching the logs from the logs section in your dashboard (that’s my guess cause that would make sense)

Hi @konrad.sopala
I am talking about
I am trying to send the logs to elastic search cluster.