# Error during make update while creating custom filebeat module

**URL:** <https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407>\
**Category:** Beats\
**Tags:** docker, beats-module, filebeat\
**Created:** [February 28, 2022, 1:18pm UTC](https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407 "2022-02-28T13:18:54Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![kkouramenos](https://avatars.discourse-cdn.com/v4/letter/k/f0a364/32.png) [@kkouramenos](https://discuss.elastic.co/u/kkouramenos)\
**Post date:** [February 28, 2022, 1:18pm UTC](https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407/1 "2022-02-28T13:18:54Z")

</div>

Trying to create a custom module for filebeat. I passed successfully the make create-module, make create-fileset, create and test the pipeline, make create-fields.  
When running make update I get the following

```auto
mage update
Generated fields.yml for filebeat to /root/go/src/github.com/elastic/beats/filebeat/fields.yml
Generated fields.yml for filebeat to /root/go/src/github.com/elastic/beats/filebeat/fields.yml
>> Building filebeat.yml for linux/amd64
>> Building filebeat.reference.yml for linux/amd64
>> Building filebeat.docker.yml for linux/amd64
Error: parsing modules.d/f5_custom.yml.disabled as YAML: yaml: unmarshal errors:
  line 6: cannot unmarshal !!map into string
make: *** [update] Error 1

```

the file f5\_custom.yml.disabled is auto created and contains the following

```auto
# Module: f5_custom
# Docs: https://www.elastic.co/guide/en/beats/filebeat/master/filebeat-module-f5_custom.html

- module: f5_custom
  # All logs
  {fileset}:
    enabled: true

    # Set custom paths for the log files. If left empty,
    # Filebeat will choose the paths depending on your OS.
    #var.paths

```

How can I fix this if the offending file is created automatically?

---

<div class="post-metadata">

**Author:** ![ChrsMark](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/chrsmark/32/55858_2.png) [@ChrsMark](https://discuss.elastic.co/u/ChrsMark)\
**Post date:** [March 1, 2022, 9:38am UTC](https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407/2 "2022-03-01T09:38:42Z")

</div>

Hi!

Is this `{fileset}` key normal? Can you compare your file with [beats/apache.yml.disabled at main · elastic/beats · GitHub](https://github.com/elastic/beats/blob/main/filebeat/modules.d/apache.yml.disabled)?

---

<div class="post-metadata">

**Author:** ![kkouramenos](https://avatars.discourse-cdn.com/v4/letter/k/f0a364/32.png) [@kkouramenos](https://discuss.elastic.co/u/kkouramenos)\
**Post date:** [March 1, 2022, 10:08am UTC](https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407/3 "2022-03-01T10:08:20Z")

</div>

It doesn't look normal. It should take the fileset that I used when I run the "make create-fileset". The thing is, I didn't create this file, it was created automatically. I tried to edit it and run the "make update" again. The file was overwritten with one that has the same content as shown above and the process failed with the same error.

---

<div class="post-metadata">

**Author:** ![ChrsMark](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/chrsmark/32/55858_2.png) [@ChrsMark](https://discuss.elastic.co/u/ChrsMark)\
**Post date:** [March 1, 2022, 10:31am UTC](https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407/4 "2022-03-01T10:31:55Z")

</div>

I see, this must be a bug. Could you open a Github issue explaining this so as to file it properly and have the team working on it?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 29, 2022, 12:32pm UTC](https://discuss.elastic.co/t/error-during-make-update-while-creating-custom-filebeat-module/298407/5 "2022-03-29T12:32:13Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
