# Packetbeat is not capturing process name for mysql client process configured to do so

**URL:** <https://discuss.elastic.co/t/packetbeat-is-not-capturing-process-name-for-mysql-client-process-configured-to-do-so/72707>\
**Category:** Beats\
**Tags:** packetbeat\
**Created:** [January 24, 2017, 10:04pm UTC](https://discuss.elastic.co/t/packetbeat-is-not-capturing-process-name-for-mysql-client-process-configured-to-do-so/72707 "2017-01-24T22:04:40Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![etfeet](https://avatars.discourse-cdn.com/v4/letter/e/4da419/32.png) [@etfeet](https://discuss.elastic.co/u/etfeet)\
**Post date:** [January 24, 2017, 10:04pm UTC](https://discuss.elastic.co/t/packetbeat-is-not-capturing-process-name-for-mysql-client-process-configured-to-do-so/72707/1 "2017-01-24T22:04:40Z")

</div>

I have packetbeat configured to listen to 3306 and for mysql client processes ( mysql -h my\_host ... -e "my\_query" ...). I see the Query. However, I don't see the corresponding client process information. I have this problem for any process that I try do to this with. mysqld on the mysql server, php-fpm on the web servers, php cli scripts that connect to mysql (ie php /path/to/my/php/app.php).

I'm running packet as root via cmdline -  
`/usr/share/packetbeat/bin/packetbeat -e -c /etc/packetbeat/packetbeat.yml`

```auto
# /etc/packetbeat/packetbreat.yml:

packetbeat.interfaces.device: eth0
packetbeat.protocols.mysql:
  ports: [3306]

output.redis:
  hosts: ["my-redis_host:port"]
  key: "packetbeat"
  datatype: "list"

packetbeats.procs:
  enabled: true
  monitored:
    - process: mysql
      cmdline_grep: mysql

```

this is what we see in logstash:

```auto
                ...
         "bytes_in" => 21,
        "bytes_out" => 1446,
        "client_ip" => "client_ip",
      "client_port" => 42482,
      "client_proc" => "",
    "client_server" => "",
        "direction" => "out",
               "ip" => "server_ip",
           "method" => "SHOW",
            "mysql" => {
        "affected_rows" => 0,
           "error_code" => 0,
        "error_message" => "",
            "insert_id" => 0,
              "iserror" => false,
           "num_fields" => 9,
             "num_rows" => 12
    },
             "path" => ".",
             "port" => 3306,
             "proc" => "",
            "query" => "show processlist",
     "responsetime" => 0,
           "server" => "",
           "status" => "OK",
                ...

```

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 21, 2017, 10:05pm UTC](https://discuss.elastic.co/t/packetbeat-is-not-capturing-process-name-for-mysql-client-process-configured-to-do-so/72707/2 "2017-02-21T22:05:48Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
