Hi All,
Facing issue while creating logstash for cloudtrail integration and data is not flowing to elasticsearch.
Please find the logstash 2.4 config details below.
input{
s3
{
bucket => "sademocloudtrail"
sincedb_path => "/opt/logstash_cloudtrail/sincedb"
temporary_directory => "/opt/temp-cloudtrail_s3_temp"
delete => false
interval => 60 # seconds
prefix => "AWSLogs/066037576108/CloudTrail/"
add_field => { source => "gzfiles" }
codec => cloudtrail {}
}
}
output{
elasticsearch {
hosts => "http://10.3.1.99:9200"
index => "test"
}
stdout {}
}