In my /etc/filebeat/filebeat.yml
I have this set:
paths:
- /var/log/audit/audit.log
- /var/log/secure
But in our Kibana we only seem to be receiving from this log.file.path
:
/var/log/messages
Not sure why
In my /etc/filebeat/filebeat.yml
I have this set:
paths:
- /var/log/audit/audit.log
- /var/log/secure
But in our Kibana we only seem to be receiving from this log.file.path
:
/var/log/messages
Not sure why
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.