ELK stack Implementation on Windows using nxlog - Help required


(Mathan Subramaniam) #1

Hi ,
This is Mathan subramaniam Wintel Admin . I am a new using ELK . Before
getting started with the ELK stack ,I have gone through the below
mentioned links and videos .

http://www.elasticsearch.org/overview/elkdownloads/

http://www.elasticsearch.org/webinars/elk-stack-devops-environment/
http://www.elasticsearch.org/webinars/kibana-made-simple/?watch=1

http://www.elasticsearch.org/videos/

http://logstash.net/docs/1.4.1/tutorials/getting-started-with-logstash


My goal : I am going to setup in my Infrastructure using Logstash to
gather eventlogs of multiple Windows servers, and set up Kibana to
visualize the gathered logs.....
Before implementing in my infra , i am testing with 3
Windows servers . But logstash conf file is not supporting to visualize the
logs in kibana . Here i have attached word document which i already
followed the steps for implementing ELK moreover i have mentioned logstash
config file . Kindly suggest me whether i am doing correctly or not . In
order to get the appropriate output in kibana , Could you please suggest me
what kind of changes i need to do ...

  1. How to configure kibana json file depends upon our requirement .
  2. I am not aware how to proceed further for visualising event logs using
    kibana

Kindly help . Awaiting for response ...

Thanks and Regards ,
Mathan Subramaniam

--
You received this message because you are subscribed to the Google Groups "elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an email to elasticsearch+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/45de414f-45db-4dec-9433-e63cc41e0bf0%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


(Mark Walkom) #2

It's not really a good idea to send word docs to the list, better to just
put everything into a gist/pastebin/etc :slight_smile:

You may want to send an email to the Logstash mailing list as you should
really start troubleshooting there, making sure your config is correct and
is actually sending data through to Elasticsearch as you are expecting.
However you can check out a few visualisation plugins like ElasticHQ or
kopf which will show you if anything has been indexed into ES.

Regards,
Mark Walkom

Infrastructure Engineer
Campaign Monitor
email: markw@campaignmonitor.com
web: www.campaignmonitor.com

On 20 August 2014 20:57, Mathan Subramaniam mathanvnm@gmail.com wrote:

Hi ,
This is Mathan subramaniam Wintel Admin . I am a new using ELK . Before
getting started with the ELK stack ,I have gone through the below
mentioned links and videos .

http://www.elasticsearch.org/overview/elkdownloads/

http://www.elasticsearch.org/webinars/elk-stack-devops-environment/
http://www.elasticsearch.org/webinars/kibana-made-simple/?watch=1

http://www.elasticsearch.org/videos/

http://logstash.net/docs/1.4.1/tutorials/getting-started-with-logstash


My goal : I am going to setup in my Infrastructure using Logstash to
gather eventlogs of multiple Windows servers, and set up Kibana to
visualize the gathered logs.....
Before implementing in my infra , i am testing with 3
Windows servers . But logstash conf file is not supporting to visualize the
logs in kibana . Here i have attached word document which i already
followed the steps for implementing ELK moreover i have mentioned logstash
config file . Kindly suggest me whether i am doing correctly or not . In
order to get the appropriate output in kibana , Could you please suggest me
what kind of changes i need to do ...

  1. How to configure kibana json file depends upon our requirement .
  2. I am not aware how to proceed further for visualising event logs using
    kibana

Kindly help . Awaiting for response ...

Thanks and Regards ,
Mathan Subramaniam

--
You received this message because you are subscribed to the Google Groups
"elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an
email to elasticsearch+unsubscribe@googlegroups.com.
To view this discussion on the web visit
https://groups.google.com/d/msgid/elasticsearch/45de414f-45db-4dec-9433-e63cc41e0bf0%40googlegroups.com
https://groups.google.com/d/msgid/elasticsearch/45de414f-45db-4dec-9433-e63cc41e0bf0%40googlegroups.com?utm_medium=email&utm_source=footer
.
For more options, visit https://groups.google.com/d/optout.

--
You received this message because you are subscribed to the Google Groups "elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an email to elasticsearch+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/CAEM624ZJ6Vhr-BUmqqXdWs-WOoNETsaGG0gHLJ3V5%3DVyRyCfbA%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.


(Mathan Subramaniam) #3

Hi , Thanks for your reply .. Here after i will not attach the documents. I
am checking the ES plugins and let you know .

--
You received this message because you are subscribed to the Google Groups "elasticsearch" group.
To unsubscribe from this group and stop receiving emails from it, send an email to elasticsearch+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/f49443df-8bb2-49ed-bab4-189077592a77%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


(system) #4