Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- C:>logstash.bat agent -f logstash.conf
- Using JAVA_HOME=C:Program FilesJavajre1.8.0_102 retrieved from C:ProgramDataOraclejavajavapathjava.exe
- io/console not supported; tty will not be manipulated
- Settings: Default pipeline workers: 4
- Pipeline main started
- input {
- file {
- path => "C:LogStashlogslogfile"
- type => "log4net"
- codec => multiline {
- pattern => "^(DEBUG|WARN|ERROR|INFO|FATAL)"
- negate => true
- what => previous
- }
- }
- }
- filter {
- if [type] == "log4net" {
- grok {
- match => [ "message", "(?m)%{TIMESTAMP_ISO8601:sourceTimestamp} [Worker #%{NUMBER:threadId}] %{LOGLEVEL:level} %{GREEDYDATA:tempMessage}" ]
- }
- mutate {
- replace => [ "message" , "%{tempMessage}" ]
- remove_field => [ "tempMessage" ]
- }
- }
- }
- output {
- elasticsearch {
- hosts => ["http://XXXXX:9200"]
- user => "XXXXX"
- password => "XXXXX"
- index => "logstash-%{+YYYY.MM.dd}"
- template_overwrite => true
- }
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement