# Logstash logs

**URL:** <https://discuss.elastic.co/t/logstash-logs/16523>\
**Category:** Elasticsearch\
**Created:** [March 21, 2014, 12:33pm UTC](https://discuss.elastic.co/t/logstash-logs/16523 "2014-03-21T12:33:48Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Arik\_Gaisler](https://avatars.discourse-cdn.com/v4/letter/a/6f9a4e/32.png) [@Arik\_Gaisler](https://discuss.elastic.co/u/Arik_Gaisler)\
**Post date:** [March 21, 2014, 12:33pm UTC](https://discuss.elastic.co/t/logstash-logs/16523/1 "2014-03-21T12:33:48Z")

</div>

What is the default log level in logstash? how do I run with log level set  
to error (meaning only errors shall be logged)

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![Ivan](https://avatars.discourse-cdn.com/v4/letter/i/df788c/32.png) [@Ivan](https://discuss.elastic.co/u/Ivan)\
**Post date:** [March 21, 2014, 6:20pm UTC](https://discuss.elastic.co/t/logstash-logs/16523/2 "2014-03-21T18:20:06Z")

</div>

I do not think there is a default log level in logstash. You can either  
exclude events on the client or on the server side.

On the server side, you can simply apply a drop filter to your input:

> **[Drop filter plugin | Logstash Reference \[8.11\] | Elastic](https://www.elastic.co/guide/en/logstash/current/plugins-filters-drop.html)**

On the client side, it all depends on your application. For my  
elasticsearch servers, I use the syslog appender in log4j, so the log level  
is determined by the log4j configuration. For other servers, I use logstash  
agents (still have to transition to the logstash forwarder), so I would  
need to apply the same drop filter in the output.

Perhaps there is a default log level and someone can enlighten us both.

Cheers,

Ivan

On Fri, Mar 21, 2014 at 5:33 AM, Arik Gaisler [arikgaisler@gmail.com](mailto:arikgaisler@gmail.com) wrote:

> What is the default log level in logstash? how do I run with log level set  
> to error (meaning only errors shall be logged)
> 
> --  
> You received this message because you are subscribed to the Google Groups  
> "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an  
> email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> To view this discussion on the web visit  
> [https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com)[https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com?utm_medium=email&utm_source=footer)  
> .  
> For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CALY%3DcQAM8XEJ5j6Yo8Rx9dxVouXeO5G3te8eLFNqNoy4Zsx8EA%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CALY%3DcQAM8XEJ5j6Yo8Rx9dxVouXeO5G3te8eLFNqNoy4Zsx8EA%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![otisg](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/otisg/32/492_2.png) [@otisg](https://discuss.elastic.co/u/otisg)\
**Post date:** [March 25, 2014, 1:27am UTC](https://discuss.elastic.co/t/logstash-logs/16523/3 "2014-03-25T01:27:53Z")

</div>

There is no such thing as default log level in Logstash, as far as I know.

## Otis

Performance Monitoring \* Log Analytics \* Search Analytics  
Solr & Elasticsearch Support \* [http://sematext.com/](http://sematext.com/)

tel: +1 347 480 1610 fax: +1 718 679 9190

On Friday, March 21, 2014 2:20:06 PM UTC-4, Ivan Brusic wrote:

> I do not think there is a default log level in logstash. You can either  
> exclude events on the client or on the server side.
> 
> On the server side, you can simply apply a drop filter to your input:  
> [Drop filter plugin | Logstash Plugins](http://logstash.net/docs/1.4.0/filters/drop)
> 
> On the client side, it all depends on your application. For my  
> elasticsearch servers, I use the syslog appender in log4j, so the log level  
> is determined by the log4j configuration. For other servers, I use logstash  
> agents (still have to transition to the logstash forwarder), so I would  
> need to apply the same drop filter in the output.
> 
> Perhaps there is a default log level and someone can enlighten us both.
> 
> Cheers,
> 
> Ivan
> 
> On Fri, Mar 21, 2014 at 5:33 AM, Arik Gaisler \<[arikg...@gmail.com](mailto:arikg...@gmail.com)\<javascript:\>
> 
> > wrote:
> 
> > What is the default log level in logstash? how do I run with log level  
> > set to error (meaning only errors shall be logged)
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups  
> > "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an  
> > email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com) \<javascript:\>.  
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com)[https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > .  
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/f5146a23-ef07-479d-9754-55c0bf3e323b%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/f5146a23-ef07-479d-9754-55c0bf3e323b%40googlegroups.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![warkolm](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/warkolm/32/39224_2.png) [@warkolm](https://discuss.elastic.co/u/warkolm)\
**Post date:** [March 25, 2014, 1:30am UTC](https://discuss.elastic.co/t/logstash-logs/16523/4 "2014-03-25T01:30:24Z")

</div>

You can enable verbose logging in LS using the -v or -vv flags.  
Otherwise check out the LS group - [logstash-users@googlegroups.com](mailto:logstash-users@googlegroups.com)

Regards,  
Mark Walkom

Infrastructure Engineer  
Campaign Monitor  
email: [markw@campaignmonitor.com](mailto:markw@campaignmonitor.com)  
web: [www.campaignmonitor.com](http://www.campaignmonitor.com)

On 25 March 2014 12:27, Otis Gospodnetic [otis.gospodnetic@gmail.com](mailto:otis.gospodnetic@gmail.com) wrote:

> There is no such thing as default log level in Logstash, as far as I know.
> 
> ## Otis
> 
> Performance Monitoring \* Log Analytics \* Search Analytics  
> Solr & Elasticsearch Support \* [http://sematext.com/](http://sematext.com/)
> 
> tel: +1 347 480 1610 fax: +1 718 679 9190
> 
> On Friday, March 21, 2014 2:20:06 PM UTC-4, Ivan Brusic wrote:
> 
> > I do not think there is a default log level in logstash. You can either  
> > exclude events on the client or on the server side.
> > 
> > On the server side, you can simply apply a drop filter to your input:  
> > [Drop filter plugin | Logstash Reference [8.11] | Elastic](http://logstash.net/docs/1.4.0/filters/drop)
> > 
> > On the client side, it all depends on your application. For my  
> > elasticsearch servers, I use the syslog appender in log4j, so the log level  
> > is determined by the log4j configuration. For other servers, I use logstash  
> > agents (still have to transition to the logstash forwarder), so I would  
> > need to apply the same drop filter in the output.
> > 
> > Perhaps there is a default log level and someone can enlighten us both.
> > 
> > Cheers,
> > 
> > Ivan
> > 
> > On Fri, Mar 21, 2014 at 5:33 AM, Arik Gaisler [arikg...@gmail.com](mailto:arikg...@gmail.com) wrote:
> > 
> > > What is the default log level in logstash? how do I run with log level  
> > > set to error (meaning only errors shall be logged)
> > > 
> > > --  
> > > You received this message because you are subscribed to the Google  
> > > Groups "elasticsearch" group.  
> > > To unsubscribe from this group and stop receiving emails from it, send  
> > > an email to [elasticsearc...@googlegroups.com](mailto:elasticsearc...@googlegroups.com).  
> > > To view this discussion on the web visit [https://groups.google.com/d/](https://groups.google.com/d/)  
> > > msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%  
> > > [40googlegroups.com](http://40googlegroups.com)[https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/ed8186e0-c413-44ff-b775-8868c790f70b%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > > .  
> > > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups  
> > "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an  
> > email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > To view this discussion on the web visit  
> > [https://groups.google.com/d/msgid/elasticsearch/f5146a23-ef07-479d-9754-55c0bf3e323b%40googlegroups.com](https://groups.google.com/d/msgid/elasticsearch/f5146a23-ef07-479d-9754-55c0bf3e323b%40googlegroups.com)[https://groups.google.com/d/msgid/elasticsearch/f5146a23-ef07-479d-9754-55c0bf3e323b%40googlegroups.com?utm\_medium=email&utm\_source=footer](https://groups.google.com/d/msgid/elasticsearch/f5146a23-ef07-479d-9754-55c0bf3e323b%40googlegroups.com?utm_medium=email&utm_source=footer)  
> > .  
> > For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
To view this discussion on the web visit [https://groups.google.com/d/msgid/elasticsearch/CAEM624ZM0JrVaEGObie%2BBunDs6ujFtwQf%3DtJAR2pJz57w%2BQTOw%40mail.gmail.com](https://groups.google.com/d/msgid/elasticsearch/CAEM624ZM0JrVaEGObie%2BBunDs6ujFtwQf%3DtJAR2pJz57w%2BQTOw%40mail.gmail.com).  
For more options, visit [https://groups.google.com/d/optout](https://groups.google.com/d/optout).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 1:40am UTC](https://discuss.elastic.co/t/logstash-logs/16523/5 "2017-07-06T01:40:56Z")

</div>


