I'm newbie at ELK stack. I have installed and the ELK working find but now i want to visualize the content of my log after filebeat send it to logstash. I had read some topic still cant find how to do it so i post the issue here. Anyone know how to do it pls tell me. Thanks
Welcome to this awesome community!
I think you want to have a look to Kibana: https://www.elastic.co/guide/en/kibana/5.5/introduction.html
Using Kibana you can visualize and analyze your logs and rest of data, give it a try
Also I would recommend you to have a look to: https://www.elastic.co/guide/en/beats/filebeat/current/filebeat-getting-started.html,
It will show you how to do your first steps with filebeat & Kibana
Thank for fast reply
I already did the first steps and the result look like this
But now how can i visualize the field message in the result or create another template for filebeat to take the content in log files. That's what i want and i still stuck in this step, maybe because i cannot know right all the idea in the doc.
It would be great if you tell me where can i focus on. Ty
If I understand correctly you want to see only the message field, and not the whole document, you should have the list of fields on the left menu, just choose message to add it as a column, this way you will see the stream of messages
Sr for late reply and for not describe exactly what i want to do
The problem is i want to change the content of message into index, so i can choose what i want to visualize, with the picture i just post it's the example of content, maybe it'll be more field with the real log. That's exactly what i want to do.
Thank you btw
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.