#서비스 등록시 아래 명령어 실행필요
Get-ExecutionPolicy?
Set-ExecutionPolicy? unrestricted
# filebeat.yml settings
## Filebeat inputs
filebeat.inputs: # 로그를 가져올 위치입니다.
- type: log
- c:\workspace\logs\*
## Filebeat modules
filebeat.config.modules:
path: ${path.config}/modules.d/*.yml reload.enabled: false
## Elasticsearch template setting
setup.template.settings:
index.number_of_shards: 1
## General
# 로그포맷을 지정해 줍니다.
fields:
log_format: "logstash"
## Kibana
host: "192.168.10.130:5601"
## Outputs
## Kafka output
output.kafka:
hosts: ["kafka-01:9092","kafka-02:9092","kafka-03:9092"]
topic: "filebeat" partition.round_robin:
reachable_only: false
required_acks: 1 compression: gzip max_message_bytes: 1000000
## Processors
# 로그를 logstash의 message의 속성에 맞게 파싱하여 업로드합니다.
processors:
- add_host_metadata: ~
- decode_json_fields:
fields: message? process_array: false max_depth: 10 target: "" overwrite_keys: true
## Xpack Monitoring
xpack.monitoring.enabled: true xpack.monitoring.elasticsearch: xpack.monitoring.elasticsearch.hosts: 192.168.10.144:9200?
'공부 > ELK' 카테고리의 다른 글
[ELK] MAC OS debfault paths (0) | 2020.06.16 |
---|---|
[ELK] apm agent - go (0) | 2019.07.10 |