logstash-filebeat.conf 441 B

1234567891011121314151617181920212223
  1. input {
  2. # 来源beats
  3. beats {
  4. # 端口
  5. port => "5044"
  6. }
  7. }
  8. # 分析、过滤插件,可以多个
  9. filter {
  10. grok {
  11. match => { "message" => "%{COMBINEDAPACHELOG}"}
  12. }
  13. geoip {
  14. source => "clientip"
  15. }
  16. }
  17. output {
  18. # 选择elasticsearch
  19. elasticsearch {
  20. hosts => ["http://es-master:9200"]
  21. index => "%{[@metadata][beat]}-%{[@metadata][version]}-%{+YYYY.MM.dd}"
  22. }
  23. }