In my /etc/filebeat/filebeat.yml
I have this set:
paths:
- /var/log/audit/audit.log
- /var/log/secure
But in our Kibana we only seem to be receiving from this log.file.path
:
/var/log/messages
Not sure why
In my /etc/filebeat/filebeat.yml
I have this set:
paths:
- /var/log/audit/audit.log
- /var/log/secure
But in our Kibana we only seem to be receiving from this log.file.path
:
/var/log/messages
Not sure why
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.