# FilebeatのOutputに複数の定義を設定する

**URL:** <https://discuss.elastic.co/t/filebeat-output/207275>\
**Category:** 日本語による質問・議論はこちら\
**Created:** [November 11, 2019, 5:59am UTC](https://discuss.elastic.co/t/filebeat-output/207275 "2019-11-11T05:59:41Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![t-nakata](https://avatars.discourse-cdn.com/v4/letter/t/8491ac/32.png) [@t-nakata](https://discuss.elastic.co/u/t-nakata)\
**Post date:** [November 11, 2019, 5:59am UTC](https://discuss.elastic.co/t/filebeat-output/207275/1 "2019-11-11T05:59:41Z")

</div>

Filebeatを使用してElasticseachにデータを登録したいです。その際、FilebeatからLogstash経由で登録したいものと、直接Elasticseachに登録したいファイルが存在します。その場合、一つのFilebeatで実現することは可能でしょうか？

マニュアルを見ると、Filebeatにて指定できるOutputは1つのみとあります。  
やはりFilebeatを2台用意し、Outputの設定をそれぞれLogstash、Elasticseachにするといった方法となりますでしょうか？

---

<div class="post-metadata">

**Author:** ![rashmi](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rashmi/32/16391_2.png) [@rashmi](https://discuss.elastic.co/u/rashmi)\
**Post date:** [November 11, 2019, 6:13am UTC](https://discuss.elastic.co/t/filebeat-output/207275/2 "2019-11-11T06:13:06Z")

</div>

@medcl can u please help

Thanks  
Rashmi

---

<div class="post-metadata">

**Author:** ![st1t](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/st1t/32/9188_2.png) [@st1t](https://discuss.elastic.co/u/st1t)\
**Post date:** [November 11, 2019, 9:01am UTC](https://discuss.elastic.co/t/filebeat-output/207275/3 "2019-11-11T09:01:09Z")

</div>

昔Issueが上がってたみたいですが、現時点では難しいのかな？と思っています。  
ちなみに、Outputを2箇所に分けておきたいのはどのような目的からでしょうか？👀

> <https://github.com/elastic/beats/issues/1035>
>
> Beats already support outputting to any combination of one file, ES, LS, redis, …kafka, and console at the same time. Could Beats be enhanced to support multiple outputs of the same type? An example use case is shown below.
> 
> \`\`\`
> |--\>Logstash input host (dev) -\> redis queue (dev) -\> logstash filter hosts (dev) -\> elasticsearch (dev) 
> Filebeat --|
> |--\>Logstash input host (prod) -\> redis queue (prod) -\> logstash filter hosts (prod) -\> elasticsearch (prod) 
> \`\`\`
> 
> Assuming there are no issues around multi-instantiation of an output type, then I think the biggest challenge here is around how to handle this in configuration (without braking backwards-compatability).

> [@Multiple type output](https://discuss.elastic.co/t/multiple-type-output/146352):
>
> Hi All, Wanted to use elasticsearch and logstash for filebeat output. Though we can use the multiple instances of filebeat would like to check any other possible options. Requirement Use elasticsearch output for default filebeat embedded modules like system and apache module Use logstash output for custom log file parsing and output. Considering workarounds create multiple logstash pipelines in which use the pipeline parameter for es output for every ingest pipeline. Many input filters to …

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 9, 2019, 9:01am UTC](https://discuss.elastic.co/t/filebeat-output/207275/4 "2019-12-09T09:01:12Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
