Forgive me, Ive been using Elk for less than a week. i am trying to get windows logs forwarded to Logstash, but cant seem to get them to go. I have seen a few different setups with SSL Certs and what not, are those required? I have only just configured the ELK stack so we dont have anything else in it at the moment. ITs likely that ive just missed a step or two in the configuration process. Any help would be appreciated. Thanks!
Are you sure you are connecting to the LS host? Are you sure your configuration file is correct? You can check both by running the following two commands:
winlogbeat.exe test config
winlogbeat.exe test output
If everything looks good, check the port in LS you are sending to. Are you getting a TCP connection or is the port even listening. I use
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.