美文网首页ELK stack
部署EFK日志收集系统 filebeat+elasticsear

部署EFK日志收集系统 filebeat+elasticsear

作者: baiyongjie | 来源:发表于2019-03-19 16:14 被阅读7次

安装部署filebeat, elasticsearch, kibana

参考: https://www.jianshu.com/p/d072a55aa844

配置文件

filebeat

# vim /data/app/filebeat/filebeat.yml
- type: log
  enabled: true
  paths:
    - /data/app/logs/*/*.log

output.elasticsearch:
  hosts: ["10.208.1.11:9200"]
  index: "prod-logs-%{+yyyy.MM.dd}}"
setup.template.name: "prod-logs"
setup.template.pattern: "prod-logs-"

elasticsearch

# vim /data/app/elasticsearch/config/elasticsearch.yml
http.port: 9200
path.data: /data/app/elk/data/es_node
cluster.name: chuck-cluster
network.host: 10.208.1.11
node.name: chuck-cluster-01
path.logs: /data/app/elk/data/es_log
transport.tcp.port: 9300
discovery.type: single-node

kibana

# vim /data/app/kibana/config/kibana.yml 
server.port: 5601
server.host: "10.208.1.11"
elasticsearch.url: "http://10.208.1.11:9200"
kibana.index: ".kibana"

创建索引

image.png image.png image.png

相关文章

网友评论

    本文标题:部署EFK日志收集系统 filebeat+elasticsear

    本文链接:https://www.haomeiwen.com/subject/ffhnmqtx.html