Hi
I installed a metricbeat in the server... and it have next configuration.
metricbeat.config.modules:
path: ${path.config}/modules.d/.yml*
reload.enabled: false
setup.template.settings:
index.number_of_shards: 1
index.codec: best_compression
processors:
- add_host_metadata: ~
- add_cloud_metadata: ~
setup.kibana:
host: "ci-elk-kibana.ucr.ac.cr:5601"
output.logstash:
hosts: ["ci-elk-logstash-01.ucr.ac.cr:5044"]
ssl.certificate_authorities: ["/etc/pki/tls/certs/logstash-01-forwarder.crt"]
ssl.certificate: "/etc/pki/tls/certs/logstash-01-forwarder.crt"
ssl.key: "/etc/pki/tls/private/logstash-01-forwarder.key"
But in the metricbeat log show this error:
2019-05-02T08:30:35.308-0600 ERROR pipeline/output.go:100 Failed to connect to backoff(async(tcp://ci-elk-logstash-01.ucr.ac.cr:5044)): dial tcp 172.16.48.93:5044: connect: no route to host
The logstash config is next:
input {
beats {
port => 5044
ssl => true
ssl_certificate => "/etc/pki/tls/certs/logstash-01-forwarder.crt"
ssl_key => "/etc/pki/tls/private/logstash-01-forwarder.key"
client_inactivity_timeout => 0
}
}
filter {
if [type] == "syslog" {
grok {
match => { "message" => "%{SYSLOGTIMESTAMP:syslog_timestamp} %{SYSLOGHOST:syslog_hostname} %{DATA:syslog_program}(?:[%{POSINT:syslog_pid}])?: %{GREEDYDATA:syslog_message}" }
}
date {
match => [ "syslog_timestamp", "MMM d HH:mm:ss", "MMM dd HH:mm:ss" ]
}
}
}
output {
elasticsearch {
hosts => ["ci-elk-client-01.ucr.ac.cr:9200"]
index => "%{[@metadata][beat]}-%{+YYYY.MM.dd}"
}
}
Can any help me?
Thanks a lot...