Filebeat实例01-使用log采集nginx日志

ES集群地址

10.0.0.91:9200
10.0.0.92:9200
10.0.0.93:9200

Filebeat实例

root@elk92:~# vim /etc/filebeat/config/01-nginx-to-es.yaml
filebeat.inputs:
- type: log
  paths:
    - /var/log/nginx/access.log*

output.elasticsearch:
  hosts:
  - 10.0.0.91:9200
  - 10.0.0.92:9200
  - 10.0.0.93:9200
  index: dezyan-shizhan-nginx-%{+yyyy.MM.dd}

setup.ilm.enabled: false
setup.template.name: "dezyan-shizhan"
setup.template.pattern: "dezyan-shizhan-*"
setup.template.overwrite: true
setup.template.settings:
  index.number_of_shards: 5
  index.number_of_replicas: 0
  
root@elk92:~# filebeat -e -c /etc/filebeat/config/01-nginx-to-es.yaml
posted @ 2025-03-24 16:29  丁志岩  阅读(19)  评论(0)    收藏  举报