# Logstash - Agent Failing to execute Actions

**URL:** <https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580>\
**Category:** Logstash\
**Created:** [March 2, 2019, 8:17am UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580 "2019-03-02T08:17:33Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Elliott954](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/elliott954/32/41471_2.png) [@Elliott954](https://discuss.elastic.co/u/Elliott954)\
**Post date:** [March 2, 2019, 8:17am UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580/1 "2019-03-02T08:17:33Z")

</div>

Hey Everyone,

I'm currently trying to load some .csv data into my Elasticsearch/Kibana by using logstash. At this current time I'm getting the following error when I'm trying to load my data.  
[WARN] 2019-03-02 18:52:48.499 [LogStash::Runner] multilocal - Ignoring the 'pipelines.yml' file because modules or command line options are specified  
[INFO] 2019-03-02 18:52:48.515 [LogStash::Runner] runner - Starting Logstash {"logstash.version"=\>"6.6.1"}  
[ERROR] 2019-03-02 18:52:54.711 [Converge PipelineAction::Create] file - Unknown setting 'start' for file

[ERROR] 2019-03-02 18:31:46.195 [Converge PipelineAction::Create] agent - Failed to execute action {:action=\>LogStash::PipelineAction::Create/pipeline\_id:main, :exception=\>"LogStash::ConfigurationError", :message=\>"Something is wrong with your configuration.", :backtrace=\>["/usr/share/logstash/logstash-core/lib/logstash/config/mixin.rb:86:in `config_init'", "/usr/share/logstash/logstash-core/lib/logstash/inputs/base.rb:60:in`initialize'", "org/logstash/plugins/PluginFactoryExt.java:251:in `plugin'", "org/logstash/plugins/PluginFactoryExt.java:181:in`plugin'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:71:in `plugin'", "(eval):8:in`'", "org/jruby/RubyKernel.java:994:in `eval'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:49:in`initialize'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:90:in `initialize'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline_action/create.rb:43:in`block in execute'", "/usr/share/logstash/logstash-core/lib/logstash/agent.rb:94:in `block in exclusive'", "org/jruby/ext/thread/Mutex.java:148:in`synchronize'", "/usr/share/logstash/logstash-core/lib/logstash/agent.rb:94:in `exclusive'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline_action/create.rb:39:in`execute'", "/usr/share/logstash/logstash-core/lib/logstash/agent.rb:327:in `block in converge\_state'"]}  
[INFO] 2019-03-02 18:31:46.714 [Api Webserver] agent - Successfully started Logstash API endpoint {:port=\>9600}

As some more background, here is my current .config that I'm using.

input {  
file {  
path =\> "/home/elaver/Downloads/nmaptocsv/ElliottsNmap.csv"  
start =\> "Start"  
sincedb\_path =\> "/dev/null"  
}  
}  
filter {  
csv {  
seperator =\> ","  
columns =\> ["IP","FQDN","PORT","PROTOCOL","SERVICE","VERSION","OS"]  
}  
}  
output {  
elasticsearch {  
hosts =\> "[http://localhost:9200](http://localhost:9200)"  
index =\> "PublicES"  
}  
stdout {}  
}

These are my current version's that Im using for all 3.

elasticsearch 6.6.1-1  
logstash 6.6.1-1  
kibana 6.6.1-1

Hopefully this helps, if you need any more info from me feel free to give me a shout and thanks again for giving me a hand in advance.

---

<div class="post-metadata">

**Author:** ![Badger](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/badger/32/25190_2.png) [@Badger](https://discuss.elastic.co/u/Badger)\
**Post date:** [March 2, 2019, 2:35pm UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580/2 "2019-03-02T14:35:06Z")

</div>

> [@Elliott954](#):
>
> start =\> "Start"

That should be start\_position =\> "beginning"

---

<div class="post-metadata">

**Author:** ![Elliott954](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/elliott954/32/41471_2.png) [@Elliott954](https://discuss.elastic.co/u/Elliott954)\
**Post date:** [March 2, 2019, 3:06pm UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580/3 "2019-03-02T15:06:41Z")

</div>

Thank you, have changed around my conf file.

Still getting the below.

[elaver@yukkisyukkis logstash]$ sudo /usr/share/logstash/bin/logstash -f /etc/logstash/logstash\_ES.conf  
WARNING: Could not find logstash.yml which is typically located in $LS\_HOME/config or /etc/logstash. You can specify the path using --path.settings. Continuing using the defaults  
Could not find log4j2 configuration at path /usr/share/logstash/config/log4j2.properties. Using default config which logs errors to the console  
[WARN] 2019-03-03 02:05:01.954 [LogStash::Runner] multilocal - Ignoring the 'pipelines.yml' file because modules or command line options are specified  
[INFO] 2019-03-03 02:05:01.974 [LogStash::Runner] runner - Starting Logstash {"logstash.version"=\>"6.6.1"}  
[ERROR] 2019-03-03 02:05:08.521 [Converge PipelineAction::Create] csv - Unknown setting 'seperator' for csv  
[ERROR] 2019-03-03 02:05:08.554 [Converge PipelineAction::Create] agent - Failed to execute action {:action=\>LogStash::PipelineAction::Create/pipeline\_id:main, :exception=\>"LogStash::ConfigurationError", :message=\>"Something is wrong with your configuration.", :backtrace=\>["/usr/share/logstash/logstash-core/lib/logstash/config/mixin.rb:86:in `config_init'", "/usr/share/logstash/logstash-core/lib/logstash/filters/base.rb:126:in`initialize'", "org/logstash/plugins/PluginFactoryExt.java:70:in `filter_delegator'", "org/logstash/plugins/PluginFactoryExt.java:244:in`plugin'", "org/logstash/plugins/PluginFactoryExt.java:181:in `plugin'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:71:in`plugin'", "(eval):12:in `<eval>'", "org/jruby/RubyKernel.java:994:in`eval'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:49:in `initialize'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline.rb:90:in`initialize'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline\_action/create.rb:43:in `block in execute'", "/usr/share/logstash/logstash-core/lib/logstash/agent.rb:94:in`block in exclusive'", "org/jruby/ext/thread/Mutex.java:148:in `synchronize'", "/usr/share/logstash/logstash-core/lib/logstash/agent.rb:94:in`exclusive'", "/usr/share/logstash/logstash-core/lib/logstash/pipeline\_action/create.rb:39:in `execute'", "/usr/share/logstash/logstash-core/lib/logstash/agent.rb:327:in`block in converge\_state'"]}  
[INFO] 2019-03-03 02:05:09.029 [Api Webserver] agent - Successfully started Logstash API endpoint {:port=\>9600}

---

<div class="post-metadata">

**Author:** ![Badger](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/badger/32/25190_2.png) [@Badger](https://discuss.elastic.co/u/Badger)\
**Post date:** [March 2, 2019, 3:53pm UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580/4 "2019-03-02T15:53:11Z")

</div>

> [@Elliott954](#):
>
> csv - Unknown setting 'seperator' for csv

It should be separator.

---

<div class="post-metadata">

**Author:** ![Elliott954](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/elliott954/32/41471_2.png) [@Elliott954](https://discuss.elastic.co/u/Elliott954)\
**Post date:** [March 3, 2019, 7:23am UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580/5 "2019-03-03T07:23:13Z")

</div>

Thanks Badger, it was staring me in the face the entire time.

Solution marked and thread can be locked.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 31, 2019, 7:23am UTC](https://discuss.elastic.co/t/logstash-agent-failing-to-execute-actions/170580/6 "2019-03-31T07:23:17Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
