There are various ways to transfer logs from S3
to Opensearch
:
What should be used in what situation? What is the cheapest? I would imagine that Kinesis and/or Event Handler method would be the quickest, but that might also put a big load on your cluster given that many calls would be made very often and there is not as much opportunity for bulk uploads. But with Glue you could for example do this operation say every 10 minutes, and then have a lot of bulk uploads, or schedule this operation in low usage periods for logs you do not need to be inserted into opensearch so quickly. I'd be interested to hear under what situation what strategy is used. I want to minimize the load on my cluster as I feel at the end of the day, putting a higher load on opensearch will cost the most.