说明EFK搭建途中及ES的生命周期打点
副问题[/!--empirenews.page--]
# rpm --import https://artifacts.elastic.co/GPG-KEY-elasticsearch # vim /etc/yum.repos.d/kibana.repo ===================================================== snippet.bash [kibana-6.x] name=Elasticsearch repository for 6.x packages baseurl=https://artifacts.elastic.co/packages/6.x/yum gpgcheck=1 gpgkey=https://artifacts.elastic.co/GPG-KEY-elasticsearch enabled=1 autorefresh=1 type=rpm-md ===================================================== # yum install kibana # vim /etc/kibana/kibana.yml ===================================================== server.host: "kibana处事器ip" elasticsearch.hosts: ["处事器IP:9200"] #假如通过反向署分析见,则还必要添加如下设置。路径详细值视环境而定 server.basePath: "/kibana" 2、下载汉化包并复制到指定目次 wget https://codeload.github.com/anbai-inc/Kibana_Hanization/zip/master unzip master cp -r Kibana_Hanization-master/translations/ /usr/share/kibana/src/legacy/core_plugins/kibana/ #修改说话设置 #vim /etc/kibana/kibana.yml ====================================== i18n.locale: "zh_CN" ====================================== 3、重启处事 service kibana restart 三、FileBeat Filebeat附属于Beats家属。今朝Beats家属包括六种器材: Packetbeat(汇集收集流量数据) Metricbeat(汇集体系、历程和文件体系级此外 CPU 和内存行使环境等数据) Filebeat(汇集文件数据) Winlogbeat(汇集 Windows 变乱日记数据) Auditbeat( 轻量型审计日记收罗器) Heartbeat(轻量级处事器康健收罗器) 1、陈设 # rpm --import https://artifacts.elastic.co/GPG-KEY-elasticsearch # vim /etc/yum.repos.d/filebeat.repo ================================================== snippet.bash [filebeat-6.x] name=Elasticsearch repository for 6.x packages baseurl=https://artifacts.elastic.co/packages/6.x/yum gpgcheck=1 gpgkey=https://artifacts.elastic.co/GPG-KEY-elasticsearch enabled=1 autorefresh=1 type=rpm-md ================================================== # yum install filebeat 2、设置 /etc/filebeat/filebeat.yml filebeat.inputs:
# Each - is an input. Most options can be set at the input level, so # you can use different inputs for various configurations. # Below are the input specific configurations.
- type: log
# Change to true to enable this input configuration. enabled: true
# Paths that should be crawled and fetched. Glob based paths. paths: - d:/ams_logs/*.log encoding: gbk
# 输出设置 output.elasticsearch: (编辑:湖南网) 【声明】本站内容均来自网络,其相关言论仅代表作者个人观点,不代表本站立场。若无意侵犯到您的权利,请及时与联系站长删除相关内容! |