I think I've got elastic search setup to parse metrics out of the postfix logs!

It's taken a week, off and on, to work it out, but now I know.

One must add a "custom ingest pipeline" to the journald integration of the agent that's sharing a host with postgres.

Now I know that, I can start adding rules for dovecot (although really I should be able to scrape their Prometheus metrics), spampd, and the rest of the mail pipeline. I wonder if I can get them all to log a trace id ?

I'm also getting the infrastructure for the Elastic APM stuff sorted. The Elastic server (or maybe as Kibana) can do things like organise a new API key, so it's irritating it can't generate a zip of TLS keys to download.