# Config Path

**URL:** <https://discuss.elastic.co/t/config-path/164773>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [January 18, 2019, 10:44am UTC](https://discuss.elastic.co/t/config-path/164773 "2019-01-18T10:44:00Z")\
**Posts on this page:** 15\
**Page:** 1

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 18, 2019, 10:44am UTC](https://discuss.elastic.co/t/config-path/164773/1 "2019-01-18T10:44:00Z")

</div>

Hi,  
As begginner at Elastic, iam tryning to install Elastic stack on my machine (Mac IOS).  
Actually i have a problem with Filebeat. i am trying to add a new index via Filebeat. Config is ok but when i run it i have always the same error that stop Filebeat. its error about config path : "No paths were defined for input accessing config".  
when i run ./filebeat -e -d "\*" i saw that filebeat look for "configured Path" : [/usr/local/elasticsearch/gc.log....] i never set parth config, so how should i changed it and how can i find the right path. hope that my issues is clear!  
Thanks in advance for any help!

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 18, 2019, 11:42am UTC](https://discuss.elastic.co/t/config-path/164773/2 "2019-01-18T11:42:04Z")

</div>

@mylyo,

> [@mylyo](#):
>
> its error about config path : "No paths were defined for input accessing config".

You need to define some log path where you are getting system log or application log to process in your `filebeat.yml` file. Please refer the below sample from filebeat.yml

```auto
#=========================== Filebeat inputs =============================

filebeat.inputs:
- type: log

  # Change to true to enable this input configuration.
 enabled: true

  # Paths that should be crawled and fetched. Glob based paths.
# paths:
   - /var/log/syslog
    #- c:\programdata\elasticsearch\logs\*

```

Kindly let me know if you still get same error.

---

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 18, 2019, 1:17pm UTC](https://discuss.elastic.co/t/config-path/164773/3 "2019-01-18T13:17:13Z")

</div>

Thanks for your reply. i already defined the path to input Files. Actually i'm aiming to ingest a file and configure Filebeat to write an index, this is my config:

```
  filebeat.inputs:
         - type: log
          # Change to true to enable this input configuration.
          enabled: true
          # Paths that should be crawled and fetched. Glob based paths.
          paths:
                 -/my/path/to/myFile.xml
        output.elasticsearch:
          # Array of hosts to connect to.
          hosts: ["localhost:9200"]
          index: "my_index_name"
       setup.template.enabled: false

```

in filebeat/modules.d i enabled elasctic.yml, Kibana.yml and system.yml. I used archive distribution (.tar.gz) for installation.

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 21, 2019, 4:22am UTC](https://discuss.elastic.co/t/config-path/164773/4 "2019-01-21T04:22:56Z")

</div>

@mylyo,

> [@mylyo](#):
>
> Actually i'm aiming to ingest a file and configure Filebeat to write an index

Can you please provide log file path like syslog or auth.log? So we can know that all the configuration is fine.

Thanks.

---

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 21, 2019, 9:36am UTC](https://discuss.elastic.co/t/config-path/164773/5 "2019-01-21T09:36:06Z")

</div>

I can't find them 😫  
There no indication in installation tutorial talking about log files.  
Could you tell where can i find and install it please?  
Thanks,

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 21, 2019, 9:51am UTC](https://discuss.elastic.co/t/config-path/164773/6 "2019-01-21T09:51:33Z")

</div>

@mylyo,

> [@mylyo](#):
>
> I can't find them

Can you please let me know the OS type of your machine where you installed filebeat?

Thanks.

---

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 21, 2019, 10:03am UTC](https://discuss.elastic.co/t/config-path/164773/7 "2019-01-21T10:03:22Z")

</div>

Actually 1st i tried on windows OS and now i'm using Mac OS. i had the same error for both systems.

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 21, 2019, 10:16am UTC](https://discuss.elastic.co/t/config-path/164773/8 "2019-01-21T10:16:08Z")

</div>

@mylyo,

> [@mylyo](#):
>
> Actually 1st i tried on windows OS and now i'm using Mac OS.

Can you please specify the below path on your mac system in `filebeat.yml` file.

```auto
/var/log/system.log

```

Please restart the filebeat service after making the changes in filebeat.yml.

Also please run the below command to confirm that the filebeat is installed properly:

```auto
filebeat --version

```

Thanks.

---

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 21, 2019, 10:38am UTC](https://discuss.elastic.co/t/config-path/164773/9 "2019-01-21T10:38:37Z")

</div>

`filebeat --version` shows the version of my Filebeat and libbeat so every thing is fine with its installation.  
But i get the same error when i added `/var/log/system.log` in my filebeat.yml  
I think i should add Es\_path\_config in variable system (or user i'm not sure) but i dont know the path that i should put. Should i add the path to elasticsearch/config? even there no such syslog or whatever.log inside?

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 21, 2019, 10:43am UTC](https://discuss.elastic.co/t/config-path/164773/10 "2019-01-21T10:43:32Z")

</div>

@mylyo,

> [@mylyo](#):
>
> But i get the same error when i added `/var/log/system.log` in my filebeat.yml

Have you restarted the filebeat service after making the changes in `filebeat.yml`?

Please share your `filebeat.yml` configuration again with current configuration.

> [@mylyo](#):
>
> Should i add the path to elasticsearch/config?

No need to make any changes at elasticsearch instance right now. Because this error is related to your filebeat configuration.

Thanks.

---

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 21, 2019, 11:02am UTC](https://discuss.elastic.co/t/config-path/164773/11 "2019-01-21T11:02:49Z")

</div>

yes i had restarted the filebeat.  
Here the last filebeat.yml config:

```
filebeat.inputs:
- type: log
  enabled: true
  paths:
    - /var/log/system.log
filebeat.config.modules:
   path: ${path.config}/modules.d/*.yml
  reload.enabled: false
setup.template.settings:
  index.number_of_shards: 3
  #index.codec: best_compression
  #_source.enabled: false
setup.kibana:
 host: "localhost:5601"
output.elasticsearch:
   hosts: ["localhost:9200"]
  #index: "my_index_name"
#setup.template.enabled: false
```

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 21, 2019, 11:34am UTC](https://discuss.elastic.co/t/config-path/164773/12 "2019-01-21T11:34:38Z")

</div>

@mylyo,

> [@mylyo](#):
>
> Here the last filebeat.yml config:

According to above everything configuration everything seems fine. Can you please confirm that your system have `system.log` file. Because i never used mac so i want to cross check that file is available at mac which we have provided in path.

thanks.

---

<div class="post-metadata">

**Author:** ![mylyo](https://avatars.discourse-cdn.com/v4/letter/m/d26b3c/32.png) [@mylyo](https://discuss.elastic.co/u/mylyo)\
**Post date:** [January 21, 2019, 12:04pm UTC](https://discuss.elastic.co/t/config-path/164773/13 "2019-01-21T12:04:23Z")

</div>

there is no such file called "system.log".  
I know that is the issue but i don't know how to get these files.log! and how to set the path to these files in elastic config 😥

---

<div class="post-metadata">

**Author:** ![Tek\_Chand](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/tek_chand/32/34318_2.png) [@Tek\_Chand](https://discuss.elastic.co/u/Tek_Chand)\
**Post date:** [January 21, 2019, 12:21pm UTC](https://discuss.elastic.co/t/config-path/164773/14 "2019-01-21T12:21:39Z")

</div>

@mylyo,

> [@mylyo](#):
>
> there is no such file called "system.log"

No issue, just replace this file path with another file path where you are getting log.

Thanks.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 18, 2019, 12:21pm UTC](https://discuss.elastic.co/t/config-path/164773/15 "2019-02-18T12:21:49Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
