1、FileBeats 数据采集
FileBeats安装
1) wget [https://artifacts.elastic.co/downloads/beats/filebeat/filebeat-oss-7.5.1-darwin-x86_64.tar.gz](https://artifacts.elastic.co/downloads/beats/filebeat/filebeat-oss-7.5.1-darwin-x86_64.tar.gz) --no-check-certificate
2)tar -xzf filebeat-oss-7.5.1-darwin-x86_64.tar.gz -C /usr/local/
3)cd /usr/local/
4)ln -s filebeat-oss-7.5.1-darwin-x86_64 filebeat
FileBeats中filebeat.yaml文件配置
enabled: true
paths:
- /var/log/*.log
#- c:\programdata\elasticsearch\logs\*
multiline.pattern: '^[0-9]{4}-[0-9]{2}-[0-9]{2}'
multiline.negate: true
multiline.match: after
include_lines: ['^ERR', '^WARN']
output.elasticsearch:
hosts: ["XX.XX.XX.XX:9200"]
./filebeat -e -c filebeat.yml
2、LogStash 数据处理
3、ElasticSearch 数据存储&搜索引擎
4、Kibana 数据可视化
docker pull nshou/elasticsearch-kibana:latest
docker run -e ES_JAVA_OPTS="-Xms256m -Xmx256m" -idt -p 9200:9200 -p 5601:5601 nshou/elasticsearch-kibana
参考文档:https://www.cnblogs.com/happyShare/p/13566846.html
网友评论