How to push .log file to elasticsearch

(Sundar) #1

Hi all,
I have .log file with following content. values separated by [tab].


I have to give fields name for these values and push it in to elasticsearch.
The fields should be following.
time src port dst count
I don't know how to write logstash pipeline logic for push data to elasticsearch.

My Expected output


(Magnus B├Ąck) #2

You need

  • a file input,
  • a csv filter (with the separator option set to \t), and
  • an elasticsearch output.

There are lots of blog posts that show complete examples.

(Sundar) #3

Ok that's fine. How to map the fields with appropriate values?

(R!) #4

there is good grok example for matching.

(system) #5

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.