We have logstash logstash-8.15.2 locally but on production its not 8.7 and we don't have internet access, so i have dowloaded the gem file from [logstash-codec-sflow | RubyGems.org | your community gem host] (logstash-codec-sflow | RubyGems.org | your community gem host)
and transfered it to that machine but now the issue is when i try to install it, it gives the error as attached in screenshot.
after that when i tried to install it directly on internet availble machine using this command on local its installing :
bin/logstash-plugin install logstash-codec-sflow
mentioned in elastic doc:
https://www.elastic.co/guide/en/logstash/5.2/plugins-codecs-sflow.html#_synopsis_179
but its not mentioned in current or 8.7 doc.
so my issue is currently i am recieving the netflows from sflow f5 devices on udp port and when try to direclty send it from logstash to the elastic its like the some binary type number the message. and even the integration is not availble in our 8.9.1 version of the kibana and elastic of ECS. the support is not even helping in this. they reply very late.
if anyone have done this before let me know ASAP.
logstash #elastic Elasticsearch Logstash Kibana integrations #sflows #sflow