Elasticsearch and gzip

(Brian Dunbar) #1

New ES user. Got the ELK stack built. Now I'm importing just north of 100Gb in log files, from 2014.

They are, of course, gzip'd.

Can I do this with the 'file' ? Or do I need to throw it at ES with curl?

(David Pilato) #2

Or use input stdin:

zcat file | bin/logstash -f logstash.conf

(Brian Dunbar) #3

Thank you, David.

(system) #4