Dear All,
I am trying to follow instructions from this website: https://github.com/elastic/examples/tree/master/ElasticStack_apache
However, I have got this error when I run this command: logstash -f apache_logstash.conf
and this is inside my apache_logstash.conf
input {
stdin { }
user => logstash_internal
password => changeme
}
filter {
grok {
match => {
"message" => '%{IPORHOST:clientip} %{USER:ident} %{USER:auth} \[%{HTTPDATE:timestamp}\] "%{WORD:verb} %{DATA:request} HTTP/%{NUMBER:httpversion}" %{NUMBER:response:int} (?:-|%{NUMBER:bytes:int}) %{QS:referrer} %{QS:agent}'
}
}
date {
match => [ "timestamp", "dd/MMM/YYYY:HH:mm:ss Z" ]
locale => en
}
geoip {
source => "clientip"
}
useragent {
source => "agent"
target => "useragent"
}
user => logstash_internal
password => changeme
}
output {
stdout {
codec => dots {}
}
elasticsearch {
index => "apache_elastic_example"
template => "./apache_template.json"
template_name => "apache_elastic_example"
template_overwrite => true
user => logstash_internal
password => changeme
}
}
Any ideas how to solve it?
Thank You.