Each file is for different domain. If I want to turn off the monitoring for certain log files of domain or for the whole domain, I set the enabled option to false.
Despite when I set the enabled to false, it still monitors the log files, and sends them to the logstash server. What am I doing wrong?
In the documentation for version 5.6 I see I have the reload.enabled option. But the doc for the current version mentions only scan_frequency option. Should I define it as 0s to achieve the same behavior?
I have 4 additional yml files in the folder: /etc/filebeat/conf.d/. Each file belongs to one domain, and in each file, there are 3 log definition (Apache and PHP logs).
Despite that the enabled option is false. It still monitors the files and sends them to the logstash, and eventually I can see them in the ES. What am I doing wrong?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.