Can we install Fluentd at the application server to collect the logs and parse it and then send it to Elasticsearch? Do we need to install Fluentd as an aggregator in a diff