# Problem connecting filebeat (v. 6.6.0) with ingress pipeline

**URL:** <https://discuss.elastic.co/t/problem-connecting-filebeat-v-6-6-0-with-ingress-pipeline/167521>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [February 7, 2019, 7:42pm UTC](https://discuss.elastic.co/t/problem-connecting-filebeat-v-6-6-0-with-ingress-pipeline/167521 "2019-02-07T19:42:51Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![apaulsen](https://avatars.discourse-cdn.com/v4/letter/a/a8b319/32.png) [@apaulsen](https://discuss.elastic.co/u/apaulsen)\
**Post date:** [February 7, 2019, 7:42pm UTC](https://discuss.elastic.co/t/problem-connecting-filebeat-v-6-6-0-with-ingress-pipeline/167521/1 "2019-02-07T19:42:51Z")

</div>

Problem to connect filebeat version 6.6.0 with ingress pipeline

Done:

1. created a (custom) ingress pipeline "my\_pipeline"
2. enrolled a new Beat of typ filebeat in may ECE-Deplyment
3. enrolled filebeat on my server, where the log files are stored
4. created a tag for the beat with one configuration block of typ "Filebeat Input",  
which contains the location of log files on my server in section "Path".  
I've checked /var/lib/filebeat/registry on the server.  
It show the correct source = defined Paths in the tag.

Where can I configure, tha output.elasticsearch.pipeline: my\_pipeline ?  
I've tried to enter this in the same configuration block, where the Paths are given in  
section "Other config".  
After saving the configuration block all seems OK, the String " **output.elasticsearch.pipeline: my\_pipeline"** is saved under  
"other config"  
But, when I save the whole tag, then the entry under "Other config" ist deleted.

Is this the right place to give the output to pipeline information?

 ![configuration_block](https://us1.discourse-cdn.com/elastic/original/3X/6/1/61cdabfca5edbc96da0705313fd47a4bdc0241ad.png)

---

<div class="post-metadata">

**Author:** ![apaulsen](https://avatars.discourse-cdn.com/v4/letter/a/a8b319/32.png) [@apaulsen](https://discuss.elastic.co/u/apaulsen)\
**Post date:** [February 8, 2019, 6:40pm UTC](https://discuss.elastic.co/t/problem-connecting-filebeat-v-6-6-0-with-ingress-pipeline/167521/2 "2019-02-08T18:40:55Z")

</div>

**SOLVED:**

**changes in filebeat.yml** :

- enabled: true

**addings to filebeat.yml**

paths:  
- /tmp/abc.log  
fields:  
type: applog  
project: pro  
app: my  
fields\_under\_root: true

paths:  
- /tmp/xyz.log  
fields:  
type: applog  
project: pro  
app: yours  
fields\_under\_root: true

output.elasticsearch:  
hosts:  
- '[https://bbb7329222](https://bbb7329222)...b900a.our-cluster.our.domain:9243'  
protocol: https  
indices:  
- index: "abc-%{+yyyy.MM}"  
when.contains:  
app: "my"  
- index: "xyz-%{+yyyy.MM}"  
when.contains:  
app: "yours"  
username: elastic  
password: ourpassword  
pipelines:  
- pipeline: "my\_log"  
when.contains:  
app: "my"  
- pipeline: "yours\_log"  
when.contains:  
app: "yours"

**ECE**

removed Beat and tag, couldn't get it to work.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [March 8, 2019, 6:44pm UTC](https://discuss.elastic.co/t/problem-connecting-filebeat-v-6-6-0-with-ingress-pipeline/167521/3 "2019-03-08T18:44:54Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
