# Looking at ES logging

**URL:** <https://discuss.elastic.co/t/looking-at-es-logging/13589>\
**Category:** Elasticsearch\
**Created:** [September 13, 2013, 6:51am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589 "2013-09-13T06:51:35Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![Ashwin\_Sathya](https://avatars.discourse-cdn.com/v4/letter/a/b5ac83/32.png) [@Ashwin\_Sathya](https://discuss.elastic.co/u/Ashwin_Sathya)\
**Post date:** [September 13, 2013, 6:51am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/1 "2013-09-13T06:51:35Z")

</div>

Hi,

I have configured logging.yml to TRACE level messages and this level is  
pretty verbose. I run a 3-node VM cluster, is there an easier way that I can  
look at the logs other than manually remoting into the machine and reading  
the file ?

Thanks,

Ashwin Sathya

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![Lukas\_Vlcek1](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/lukas_vlcek1/32/819_2.png) [@Lukas\_Vlcek1](https://discuss.elastic.co/u/Lukas_Vlcek1)\
**Post date:** [September 13, 2013, 6:55am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/2 "2013-09-13T06:55:53Z")

</div>

[http://logstash.net](http://logstash.net) ?

On Fri, Sep 13, 2013 at 8:51 AM, R Ashwin Sathya  
[ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com)wrote:

> Hi,\*\*\*\*
> 
> * * *
> 
> I have configured logging.yml to TRACE level messages and this level is  
> pretty verbose. I run a 3-node VM cluster, is there an easier way that I  
> can look at the logs other than manually remoting into the machine and  
> reading the file ?\*\*\*\*
> 
> * * *
> 
> Thanks,\*\*\*\*
> 
> Ashwin Sathya\*\*\*\*
> 
> --  
> You received this message because you are subscribed to the Google Groups  
> "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an  
> email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![Ashwin\_Sathya](https://avatars.discourse-cdn.com/v4/letter/a/b5ac83/32.png) [@Ashwin\_Sathya](https://discuss.elastic.co/u/Ashwin_Sathya)\
**Post date:** [September 13, 2013, 7:07am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/3 "2013-09-13T07:07:37Z")

</div>

Logstash seems to enable output to elasticsearch. Does it mean I can parse  
the elasticsearch logs using logstash and store them as an index in the same  
ES cluster ? That would be awesome!!!

Thanks,

Ashwin Sathya

From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)]  
On Behalf Of Lukáš Vlcek  
Sent: September 13, 2013 12:26  
To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
Subject: Re: Looking at ES logging

[http://logstash.net](http://logstash.net) ?

On Fri, Sep 13, 2013 at 8:51 AM, R Ashwin Sathya \<[ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com)  
[mailto:ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) \> wrote:

Hi,

I have configured logging.yml to TRACE level messages and this level is  
pretty verbose. I run a 3-node VM cluster, is there an easier way that I can  
look at the logs other than manually remoting into the machine and reading  
the file ?

Thanks,

Ashwin Sathya

--  
You received this message because you are subscribed to the Google Groups  
"elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an  
email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com)  
[mailto:elasticsearch%2Bunsubscribe@googlegroups.com](mailto:elasticsearch%2Bunsubscribe@googlegroups.com) .  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups  
"elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an  
email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com)  
[mailto:elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com) .  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [September 13, 2013, 7:25am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/4 "2013-09-13T07:25:39Z")

</div>

Yes!

I did it somehow like this while working on logs sent by one of our customers.  
It was really great to build my dashboard very quick in Kibana and find easily what I was looking for.

--  
David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com)  
@dadoonet | @elasticsearchfr | @scrutmydocs

Le 13 sept. 2013 à 09:07, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) a écrit :

> Logstash seems to enable output to elasticsearch. Does it mean I can parse the elasticsearch logs using logstash and store them as an index in the same ES cluster ? That would be awesome!!!
> 
> Thanks,  
> Ashwin Sathya
> 
> From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)] On Behalf Of Lukáš Vlcek  
> Sent: September 13, 2013 12:26  
> To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
> Subject: Re: Looking at ES logging
> 
> [http://logstash.net](http://logstash.net) ?
> 
> On Fri, Sep 13, 2013 at 8:51 AM, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) wrote:  
> Hi,
> 
> I have configured logging.yml to TRACE level messages and this level is pretty verbose. I run a 3-node VM cluster, is there an easier way that I can look at the logs other than manually remoting into the machine and reading the file ?
> 
> ## Thanks, Ashwin Sathya
> 
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![Ashwin\_Sathya](https://avatars.discourse-cdn.com/v4/letter/a/b5ac83/32.png) [@Ashwin\_Sathya](https://discuss.elastic.co/u/Ashwin_Sathya)\
**Post date:** [September 13, 2013, 7:27am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/5 "2013-09-13T07:27:09Z")

</div>

Great!!

I will look into logstash and Kibana then. Thanks.

Thanks,

Ashwin Sathya

From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)] On Behalf Of David Pilato  
Sent: September 13, 2013 12:56  
To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
Subject: Re: Looking at ES logging

Yes!

I did it somehow like this while working on logs sent by one of our customers.

It was really great to build my dashboard very quick in Kibana and find easily what I was looking for.

--

David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com) [http://Elasticsearch.com](http://Elasticsearch.com)

[https://twitter.com/dadoonet](https://twitter.com/dadoonet) @dadoonet | [https://twitter.com/elasticsearchfr](https://twitter.com/elasticsearchfr) @elasticsearchfr | @scrutmydocs [https://twitter.com/scrutmydocs](https://twitter.com/scrutmydocs)

Le 13 sept. 2013 à 09:07, R Ashwin Sathya \<[ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) [mailto:ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) \> a écrit :

Logstash seems to enable output to elasticsearch. Does it mean I can parse the elasticsearch logs using logstash and store them as an index in the same ES cluster ? That would be awesome!!!

Thanks,

Ashwin Sathya

From: [mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [mailto:elasticsearch@ [http://googlegroups.com](http://googlegroups.com) [googlegroups.com](http://googlegroups.com)] On Behalf Of Lukáš Vlcek  
Sent: September 13, 2013 12:26  
To: [mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
Subject: Re: Looking at ES logging

[http://logstash.net](http://logstash.net) [http://logstash.net](http://logstash.net) ?

On Fri, Sep 13, 2013 at 8:51 AM, R Ashwin Sathya \< [mailto:ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com)\> wrote:

Hi,

I have configured logging.yml to TRACE level messages and this level is pretty verbose. I run a 3-node VM cluster, is there an easier way that I can look at the logs other than manually remoting into the machine and reading the file ?

Thanks,

Ashwin Sathya

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [mailto:elasticsearch%2Bunsubscribe@googlegroups.com](mailto:elasticsearch%2Bunsubscribe@googlegroups.com) [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out) [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [mailto:elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com) [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out) [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [mailto:elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com) [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out) [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com) [mailto:elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com) .  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [September 13, 2013, 7:29am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/6 "2013-09-13T07:29:43Z")

</div>

Have a look at [http://three.kibana.org/](http://three.kibana.org/) and not [http://kibana.org/](http://kibana.org/) BTW.

--  
David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com)  
@dadoonet | @elasticsearchfr | @scrutmydocs

Le 13 sept. 2013 à 09:27, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) a écrit :

> Great!!  
> I will look into logstash and Kibana then. Thanks.
> 
> Thanks,  
> Ashwin Sathya
> 
> From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)] On Behalf Of David Pilato  
> Sent: September 13, 2013 12:56  
> To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
> Subject: Re: Looking at ES logging
> 
> Yes!
> 
> I did it somehow like this while working on logs sent by one of our customers.  
> It was really great to build my dashboard very quick in Kibana and find easily what I was looking for.
> 
> --  
> David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com)  
> @dadoonet | @elasticsearchfr | @scrutmydocs
> 
> Le 13 sept. 2013 à 09:07, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) a écrit :
> 
> Logstash seems to enable output to elasticsearch. Does it mean I can parse the elasticsearch logs using logstash and store them as an index in the same ES cluster ? That would be awesome!!!
> 
> Thanks,  
> Ashwin Sathya
> 
> From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)] On Behalf Of Lukáš Vlcek  
> Sent: September 13, 2013 12:26  
> To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
> Subject: Re: Looking at ES logging
> 
> [http://logstash.net](http://logstash.net) ?
> 
> On Fri, Sep 13, 2013 at 8:51 AM, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) wrote:  
> Hi,
> 
> I have configured logging.yml to TRACE level messages and this level is pretty verbose. I run a 3-node VM cluster, is there an easier way that I can look at the logs other than manually remoting into the machine and reading the file ?
> 
> ## Thanks, Ashwin Sathya
> 
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [September 13, 2013, 7:37am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/7 "2013-09-13T07:37:00Z")

</div>

BTW, it took me some time to build a proper `logstash.conf` file.  
Here is what I did (not sure it's the best configuration here but at least it worked for my needs): [logstash configuration example for elasticsearch logs · GitHub](https://gist.github.com/dadoonet/6547715)

## HTH

David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com)  
@dadoonet | @elasticsearchfr | @scrutmydocs

Le 13 sept. 2013 à 09:29, David Pilato [david@pilato.fr](mailto:david@pilato.fr) a écrit :

> Have a look at [http://three.kibana.org/](http://three.kibana.org/) and not [http://kibana.org/](http://kibana.org/) BTW.
> 
> --  
> David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com)  
> @dadoonet | @elasticsearchfr | @scrutmydocs
> 
> Le 13 sept. 2013 à 09:27, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) a écrit :
> 
> > Great!!  
> > I will look into logstash and Kibana then. Thanks.
> > 
> > Thanks,  
> > Ashwin Sathya
> > 
> > From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)] On Behalf Of David Pilato  
> > Sent: September 13, 2013 12:56  
> > To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
> > Subject: Re: Looking at ES logging
> > 
> > Yes!
> > 
> > I did it somehow like this while working on logs sent by one of our customers.  
> > It was really great to build my dashboard very quick in Kibana and find easily what I was looking for.
> > 
> > --  
> > David Pilato | Technical Advocate | [Elasticsearch.com](http://Elasticsearch.com)  
> > @dadoonet | @elasticsearchfr | @scrutmydocs
> > 
> > Le 13 sept. 2013 à 09:07, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) a écrit :
> > 
> > Logstash seems to enable output to elasticsearch. Does it mean I can parse the elasticsearch logs using logstash and store them as an index in the same ES cluster ? That would be awesome!!!
> > 
> > Thanks,  
> > Ashwin Sathya
> > 
> > From: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com) [[mailto:elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)] On Behalf Of Lukáš Vlcek  
> > Sent: September 13, 2013 12:26  
> > To: [elasticsearch@googlegroups.com](mailto:elasticsearch@googlegroups.com)  
> > Subject: Re: Looking at ES logging
> > 
> > [http://logstash.net](http://logstash.net) ?
> > 
> > On Fri, Sep 13, 2013 at 8:51 AM, R Ashwin Sathya [ashwin.sathya@outlook.com](mailto:ashwin.sathya@outlook.com) wrote:  
> > Hi,
> > 
> > I have configured logging.yml to TRACE level messages and this level is pretty verbose. I run a 3-node VM cluster, is there an easier way that I can look at the logs other than manually remoting into the machine and reading the file ?
> > 
> > ## Thanks, Ashwin Sathya
> > 
> > You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> > 
> > --  
> > You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> > To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> > For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).
> 
> --  
> You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
> To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
> For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

--  
You received this message because you are subscribed to the Google Groups "elasticsearch" group.  
To unsubscribe from this group and stop receiving emails from it, send an email to [elasticsearch+unsubscribe@googlegroups.com](mailto:elasticsearch+unsubscribe@googlegroups.com).  
For more options, visit [https://groups.google.com/groups/opt\_out](https://groups.google.com/groups/opt_out).

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 6, 2017, 2:16am UTC](https://discuss.elastic.co/t/looking-at-es-logging/13589/8 "2017-07-06T02:16:43Z")

</div>


