# Kibana not reading logstash output

**URL:** <https://discuss.elastic.co/t/kibana-not-reading-logstash-output/85564>\
**Category:** Logstash\
**Created:** [May 12, 2017, 12:40pm UTC](https://discuss.elastic.co/t/kibana-not-reading-logstash-output/85564 "2017-05-12T12:40:52Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Honda\_fred\_elk](https://avatars.discourse-cdn.com/v4/letter/h/919ad9/32.png) [@Honda\_fred\_elk](https://discuss.elastic.co/u/Honda_fred_elk)\
**Post date:** [May 12, 2017, 12:40pm UTC](https://discuss.elastic.co/t/kibana-not-reading-logstash-output/85564/1 "2017-05-12T12:40:52Z")

</div>

Hi,

I have two inputs plugins in logstash.conf 1. beats & 2. file like below. I input JSON string for both.

Logstash config

input {  
file{  
path =\> "/logs/ServerLogs/testing-jsonoutput.log"  
sincedb\_path =\> "/appl/log/sincedbloc/sincedbfile.txt"  
codec =\> json  
}

beats {  
port =\> 6000  
tags =\> "beats"  
codec =\> json  
}   
}  
output {  
elasticsearch { hosts =\> ["localhost:9200"] }  
stdout{}  
file{  
path =\> "/appl/log/TestLogsOutput/LogStash\_output.log"  
}  
}

filebeat config

filebeat.prospectors:

- paths:

output.logstash:  
hosts: ['111.111.111.111:6000']

I am inputing data to logstash simultaniouly and I do see logstash processed data in its output file like below.

String from filebeat after processing:{"logMessage":"Invoke null takes 7 ms","offset":220,"type":"log","input\_type":"log","hostName":"VNWQ63213","source":"/read-write/mnt/addons/ClientLogs/client-jsonoutput.log","clientName":"LOT\_CONTROL\_SIM\_2","loglevel":"DEBUG","beat":{"hostname":"VNWQ63213","version":"5.1.2","name":"VNWQ63213"},"@timestamp":"2017-05-11T16:40:35.545Z","loggingTime":"Thu 11 May 2017 12-40-33 474 EDT","applicationName":"LOT\_CONTROL\_SIM\_2","@version":"1","host":"VNWQ63213","tags":["beats","beats\_input\_raw\_event"]}

String from file input after processing: {"loggingTime":"Thu 11 May 2017 08-45-47 505 EDT","applicationName":"RestService","hostName":"HostName1","loglevel":"INFO","threadName":"WebContainer : 0","logMessage":{"hostName":"LOT\_CONTROL\_SIM\_2","ipAddress":"111.111.111.111","port":40000,"routerPort":0,"terminalDescription":"LOT CONTROL SIM 2","locatedProcessPointId":"SIMPP01","divisionId":"SIMDIV01","afTerminalFlag":"Terminal","processPoint":{"processPointId":"SIMPP01","processPointName":"LOT\_CONTROL\_SIM\_2","processPointDescription":"","processPointTypeId":5,"siteName":"SITESIM01","plantName":"SIMPLANT01","divisionId":"SIMDIV01","divisionName":"AF","lineId":"SIMLINE01","lineName":"AF ON","backFillProcessPointId":"","sequenceNumber":0,"trackingPointFlag":0,"recoveryPointFlag":0,"passingCountFlag":1,"createTimestamp":"2017-05-11 08:07:44.752 EDT","updateTimestamp":"2013-01-09 14:43:30.000 EST"},"createTimestamp":"2017-05-11 08:07:44.794 EDT"},"@version":"1","@timestamp":"2017-05-11T12:45:50.419Z","path":"/logs/GALCServerLogs/server-jsonoutput.log","host":"HMIPGRBLAPP502"}

Both the processed json strings are valid too

But when I try to search the logs through kibana. kibana pulls only logs processed through file input.  
Looks I have proper data.. but why kibana is not pulling data which was through filebeat

Here is the sample json string data which came through filebeat

{"loggingTime":"Thu 11 May 2017 08-33-06 945 EDT","applicationName":"LOT\_CONTROL\_SIM\_2","hostName":"[VNWQ63213.hmin.am.honda.com](http://VNWQ63213.hmin.am.honda.com)","clientName":"LOT\_CONTROL\_SIM\_2","loglevel":"DEBUG","logMessage":"Invoke null takes 6 ms"}  
{"loggingTime":"Thu 11 May 2017 08-33-07 157 EDT","applicationName":"LOT\_CONTROL\_SIM\_2","hostName":"[VNWQ63213.hmin.am.honda.com](http://VNWQ63213.hmin.am.honda.com)","clientName":"LOT\_CONTROL\_SIM\_2","loglevel":"DEBUG","logMessage":"Invoke null takes 8 ms"}

---

<div class="post-metadata">

**Author:** ![Honda\_fred\_elk](https://avatars.discourse-cdn.com/v4/letter/h/919ad9/32.png) [@Honda\_fred\_elk](https://discuss.elastic.co/u/Honda_fred_elk)\
**Post date:** [May 12, 2017, 3:22pm UTC](https://discuss.elastic.co/t/kibana-not-reading-logstash-output/85564/2 "2017-05-12T15:22:36Z")

</div>

Please ignore this post.. I figured out the issue.. its with the data type that I have in the JSON String.. I will create ticket under Kibana

Thanks

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 9, 2017, 3:35pm UTC](https://discuss.elastic.co/t/kibana-not-reading-logstash-output/85564/3 "2017-06-09T15:35:48Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
