# Docker SEBP/ELK not logging IP msgs

**URL:** <https://discuss.elastic.co/t/docker-sebp-elk-not-logging-ip-msgs/78153>\
**Category:** Logstash\
**Created:** [March 10, 2017, 1:59pm UTC](https://discuss.elastic.co/t/docker-sebp-elk-not-logging-ip-msgs/78153 "2017-03-10T13:59:28Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![ArnieNFW](https://avatars.discourse-cdn.com/v4/letter/a/7cd45c/32.png) [@ArnieNFW](https://discuss.elastic.co/u/ArnieNFW)\
**Post date:** [March 10, 2017, 1:59pm UTC](https://discuss.elastic.co/t/docker-sebp-elk-not-logging-ip-msgs/78153/1 "2017-03-10T13:59:28Z")

</div>

I'm new to the stack but struggling for 2 weeks now and not making any progress.

What I am trying to do is logging messages made by my IoT devices (EPS8266). I have the docker container running on the latest Ubuntu server sw, latest docker version, latest ELK container.  
I'm running on ESXi or Virtual box (both available); I experience no differences between them.

I installed the SEBP/ELK docker image and it is running. Manually creating log-entries by:  
`/opt/logstash/bin/logstash -e 'input { stdin { } } output { elasticsearch { hosts => ["localhost"] } }'`  
works well, I see the messages when I connect to KIBANA.

I'm confused by the mapping of this installation (/OPT) and am not able to find the right config/plugin maps.  
But what I do is according to the LOGSTASH video, installing pluggin FINGERPRINT (not sure if I need it) and it validates and installs well:  
`/opt/logstash/bin/logstash-plugin install logstash-filter-fingerprint`

And after that I give:  
`/opt/logstash/bin/logstash -e 'input { tcp { port => "5000" } } output { elasticsearch { hosts => ["localhost"] } }'`  
and logstash starts succesful and is listening to 0.0.0.0:5000

But issuing a (on a linux mint netbook):  
`echo "Test message." | nc 192.168.10.112 5000`  
does absolutely nothing (replacing TCP by UDP doesnt work either).

Anyone knows what I am doing wrong?

I do have other questions about the maps used (not able to save the pipeline), but it should work like this, right?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 7, 2017, 2:00pm UTC](https://discuss.elastic.co/t/docker-sebp-elk-not-logging-ip-msgs/78153/2 "2017-04-07T14:00:00Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
