logstash运行
filter配置Grok是例
Filter配置
Input和Output配置
logstash入门
Packetbeat运行
Packetbeat解析http协议
Packetbeat简介
head -n 2 ~/Downloads/nginx_logs/nginx.log| .filebeat命令
filebeat配置
filebeat解压后文件目录
Filebeat收集nginx log
Filebeat Module简介
Filebeat+Elasticsearch Ingest Node
Filebeat Output配置简介
filebeat Input配置简介
Filebeat简介
Beats简介
Elasticsearch Query
Elasticsearch CRUD
Elasticsearch常用术语
Kibana配置说明
Kibana安装与运行
本地启动集群的方式
Elasticsearch配置说明
GET /accounts/_search
{
"query": {"match_all": {}}
}
GET /accounts/_search?q=Doe
GET /accounts/_search?q=name:Lily
GET /accounts/_search
{
"query":{
"match":{
"name":"Lily"
}
}
}
GET /accounts/_search
{
"query": {
"bool": {
"must": [
{
"match": {
"name": "Lily"
}
}
],
"should": [
{
"match": {
"lastname": "Doe"
}
}
],
"must_not": [
{
"match": {
"job_desscription": 111
}
}
]
}
}
}
新版语句:
POST /accounts/_doc/1
{
"name":"John",
"lastname":"Doe",
"job_desscription":"Systems administrator and Linux specialit"
}
GET /accounts/_doc/1
POST /accounts/_update/1
{
"doc":{
"name":"Tom"
}
}
DELETE /accounts/_doc/1
head -n 2 /Library/software/nginx/logs/access.log | ./filebeat -e -c nginx.yml
nginx.yml 文件内容
filebeat.prospectors:
- input_type: stdin
output.console:
pretty: true
本地集群搭建
beats output