# Logstash and NetFlow v5

**URL:** <https://discuss.elastic.co/t/logstash-and-netflow-v5/36104>\
**Category:** Logstash\
**Created:** [December 1, 2015, 10:07pm UTC](https://discuss.elastic.co/t/logstash-and-netflow-v5/36104 "2015-12-01T22:07:25Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![skinner1984](https://avatars.discourse-cdn.com/v4/letter/s/5fc32e/32.png) [@skinner1984](https://discuss.elastic.co/u/skinner1984)\
**Post date:** [December 1, 2015, 10:07pm UTC](https://discuss.elastic.co/t/logstash-and-netflow-v5/36104/1 "2015-12-01T22:07:25Z")

</div>

Hi guys,

I'm trying to get a really basic Netflow setup with Elasticsearch and Kibana.

Logstash seems to be receiving the NetFlow records OK, and I can see that Elasticsearch creates an index within Kibana

[http://imgur.com/18FlUug](http://imgur.com/18FlUug)

However when I click on discover in Kibana, nothing is coming through, Even with the date range set back to 5 years.

Below is my logstash.conf file.

input {  
udp {  
port =\> 9995  
codec =\> netflow {  
definitions =\> "/opt/logstash/vendor/bundle/jruby/1.9/gems/logstash-codec-netflow-0.1.6/lib/logstash/codecs/netflow/netflow.yaml"  
versions =\> [5]  
}  
}  
}

output {  
stdout { codec =\> rubydebug }  
elasticsearch {  
index =\> "logstash-netflow9-%{+YYYY.MM.dd}"  
node\_name =\> "logstash"  
cluster =\> "elasticsearch"  
host =\> "127.0.0.1"  
}  
}

I am a total newbie with this stuff so apologies if my question is very basic. Thanks

EDIT: Nevermind, i was too impatient. Elasticsearch took it's time displaying the data. This can be closed.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 5:20am UTC](https://discuss.elastic.co/t/logstash-and-netflow-v5/36104/2 "2017-07-06T05:20:27Z")

</div>


