currently,,I want to send nginx_access.log and nginx_error.log to logstash server.here is the filebeat.yml configuration,I don't know whether I am right or not.
eeeeee.............I don't know how to configure logstash.conf in logstash server,to separate them and treat different logs in different ways.
this configuration above is the wrong my example ....I searched a lot,still don't get a clue.
appreciate a lot ,if you could help
You're on the right track with the conditional, but you can't wrap just codec => "json" since that's not a filter. Instead, wrap a json filter with your conditional:
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.