# How to open my cluster

**URL:** <https://discuss.elastic.co/t/how-to-open-my-cluster/113787>\
**Category:** Elasticsearch\
**Created:** [January 2, 2018, 2:01pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787 "2018-01-02T14:01:26Z")\
**Posts on this page:** 13\
**Page:** 1

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 2, 2018, 2:01pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/1 "2018-01-02T14:01:26Z")

</div>

Hi,

I have these questions:

-How can I monitor my network on Elasticsearch ?

-What is the difference between Elasticsearch and Kibana ?

-When I insert the username and the password In Kibana it doesn't work what is the reason?

Thanks in advance

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 2, 2018, 2:21pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/2 "2018-01-02T14:21:13Z")

</div>

Hi @Nada_I,

> How can I monitor my network on Elasticsearch?

Could you give some more info on what exactly you want to do? Do you want to monitor your entire network using Elasticsearch or monitor network usage of Elasticsearch? \*

> What is the difference between Elasticsearch and Kibana?

Elasticsearch is a storage backend for JSON documents based on Lucine.

Kibana is a GUI or dashboard for Elasticsearch, where you can search Elasticsearch and visualise you data.

> When I insert the username and the password In Kibana it doesn't work what is the reason?

I guess you have installed X-pack for Kibana if you have a login prompt. What credentials are you trying to use?

'\* As such, for question 1, you can't directly monitor your network using just Elasticsearch. You can store the monitoring data in Elasticsearch by using [packetbeat](https://www.elastic.co/products/beats/packetbeat) and then using Kibana as the dashboard.  
If you want to monitor Elasticsearch you can use X-pack for that.

---

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 3, 2018, 10:06am UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/3 "2018-01-03T10:06:42Z")

</div>

-i want to know how i can integrate it in the network to collect “, organize and search Log data and systems events for errors, security breaches..... etc.

- so i should install packetbeat then kibana then x-pack and then elasticsearch right?

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 3, 2018, 10:56am UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/4 "2018-01-03T10:56:33Z")

</div>

Ok then you will need

A log shipper, e.g. [filebeat](https://www.elastic.co/products/beats/filebeat) or [winlogbeat](https://www.elastic.co/products/beats/winlogbeat) fi you ship logs from Windows servers. Check out the rest of the [beats family](https://www.elastic.co/products/beats) as well.

The log shipper can ship logs directly to Elasticsearch but if you want to be able to modify or enrich the logs before they get to Elasticsearch, you can output to [Logstash](https://www.elastic.co/products/logstash) first and have Logstash ship to Elasticsearch.

[Kibana](https://www.elastic.co/products/kibana) is your dashboard where you can search and visualise your logs.

[X-pack](https://www.elastic.co/products/x-pack) extends the features of Logstash, Elasticsearch and Kibana. You do not necessarily need it. I use x.pack for Kibana because it gives me a monitoring dashboard for the Elasticsearch cluster health.

Hope that helps.

---

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 3, 2018, 12:05pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/5 "2018-01-03T12:05:00Z")

</div>

i'm trying a free trial but i can't open kibana gui aslo  
and every software doesn't install easily as its intsallation video doesn't clear  
can you tell me how i can install elasticsearch,x-pack and kibana

---

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 3, 2018, 12:15pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/6 "2018-01-03T12:15:16Z")

</div>

and how i can create username and password in packetbeat to use it in kibana?

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 3, 2018, 2:23pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/7 "2018-01-03T14:23:32Z")

</div>

What operating system do you work on?

I would leave out x-pack for now. If you don't use x-pack, there should be no authentication anywhere.

And _packetbeat_ is for monitoring of network packages. You probably want to start with _filebeat_ for system logs.

---

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 4, 2018, 9:32am UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/8 "2018-01-04T09:32:12Z")

</div>

windows 10

ok I'm trying filebeat now

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 4, 2018, 10:33am UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/9 "2018-01-04T10:33:42Z")

</div>

I haven't use beats for Windows but as far as I know you would need to use [https://www.elastic.co/products/beats/winlogbeat](https://www.elastic.co/products/beats/winlogbeat)

---

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 4, 2018, 11:21am UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/10 "2018-01-04T11:21:54Z")

</div>

filebeat or winlogbeat or both?

---

<div class="post-metadata">

**Author:** ![A\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/a_b/32/17104_2.png) [@A\_B](https://discuss.elastic.co/u/A_B)\
**Post date:** [January 4, 2018, 11:29am UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/11 "2018-01-04T11:29:30Z")

</div>

It's a looong time since I've done anything on Windows... And I have not used beats on Windows ever.

Winlogbeat is for "Windows Event Logs"  
Filebeat is for plain text log files

So, I guess it depends on what logs you want to ship 🙂

---

<div class="post-metadata">

**Author:** ![Nada\_I](https://avatars.discourse-cdn.com/v4/letter/n/278dde/32.png) [@Nada\_I](https://discuss.elastic.co/u/Nada_I)\
**Post date:** [January 4, 2018, 12:29pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/12 "2018-01-04T12:29:48Z")

</div>

ok thanks alot 🙂

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 1, 2018, 12:29pm UTC](https://discuss.elastic.co/t/how-to-open-my-cluster/113787/13 "2018-02-01T12:29:59Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
