-
Notifications
You must be signed in to change notification settings - Fork 0
/
Important_Note
30 lines (19 loc) · 896 Bytes
/
Important_Note
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
The pipeline should be created under
/etc/logstash/conf.d/ /******** Can create your own folder and create the .conf files under the same folder*************/
Configure pipeline path
edit /etc/logstash/pipeline.yml
and add the pipeline path
-pipeline.id: any name
pipeline.path: /"etc/logstash/conf.d/yourfolder/*.conf"
then save and exit and restart logstash
resrat filebeat
or juts filebeat -e for some munets and then systemctl filebeat restart
Enable the below modules for various logs
filebeat modules enable system /*** for system logs***/
filebeat modules enable elasticsearch /*** for elasticsearch logs***/
filebeat modules enable logstash /****for logstash logs****/
Always check the below ports are up and running
Elasticsearch : 9200/9300
Kibana: 5601
Logstash: 5044 (Depends on your configuration)
Allow the above ports in firewall-cmd