Barry,
You could definitely use ELSA for centralized logging. ELSA scales very well for enterprise log collection, storage, and analysis. You could send these logs to the master server or to a designated sensor. Many folks decide to use this for their network devices and other systems capable of forwarding syslog.
Depending on which logs you are looking to import, to be able to filter and search as you wish, you may need to add parsers for the particular log types.
You may not be able to perform direct correlation (such as IDS event to apache) between the log types, but you can determine correlation between the different logs by sorting, filtering and querying, based on various factors, and drilling into logs.
Thanks,
Wes
Barry,
You can have a look here for more information:
https://github.com/Security-Onion-Solutions/security-onion/wiki/Syslog
Thanks,
Wes