新博客地址:https://blog.iaiot.com/logstash-conf.html
# Sample Logstash configuration for creating a simple
# File -> Logstash -> Elasticsearch pipeline.
input {
file {
path => "/data/nginx/logs/access.log"
}
}
filter {
mutate {
add_field => [ "[fields][path]", "%{[path]}"]
add_field => [ "message]", "%{[message]}"]
}
}
output {
elasticsearch {
hosts => ["http://192.168.153.7:9200"]
index => "test-logstash"
}
}
input 配置参考:https://www.elastic.co/guide/en/logstash/current/input-plugins.html
output 配置参考:https://www.elastic.co/guide/en/logstash/current/output-plugins.html
filter 配置参考:https://www.elastic.co/guide/en/logstash/6.4/filter-plugins.html
Logstash Reference:https://www.elastic.co/guide/en/logstash/6.4/index.html
本文提供了一个简单的Logstash配置示例,用于从文件读取数据,经过过滤处理后,将数据发送到Elasticsearch中。输入部分配置了从指定路径读取Nginx访问日志,过滤部分使用mutate插件添加字段,输出部分则配置了向Elasticsearch发送数据。

269

被折叠的 条评论
为什么被折叠?



