How do I get logstash to ship data to Elasticsearch? I'm not sure what to change in the logstash.yml file or what section I should change for that matter. My pipelines.yml points to /etc/logstash/conf.d/syslog.conf... This file is pointing to my elasticsearch.
Maybe I'm confused as to the purpose of the logstash.yml vs the syslog.conf.
Any clarification would be amazing because the documentation is impossible to follow...
logstash.yml - parameters related how will LS run, batch size, log info/debug/..., xpack settings etc.
syslog.conf - configuration related to data processing - input, filter, output.
logstash.yml is the overall configurations of logstash
conf files like syslog.conf are where you describe the input, logic, and output of the actual data processing the "pipelines" that get executed in logstash
There is 1 logstash.yml there can be many .conf pipeline files
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.