logoalt Hacker News

TylerEyesterday at 9:44 AM1 replyview on HN

At that point you almost might as well just log everything. The decision logic is likely about as complex as just doing it. Then I suppose you have a watchdog task that fires off every, say, 15 minutes or an hour or something, looks at the collected data, and either decides to keep it or trash it while recording a tiny "nothing interesting" datapoint.


Replies

Flamkuchloyesterday at 2:09 PM

Loghandling is quite resource intensive.

All the log ingestion systems i have seen were bigger elastic search clusters.