在CentOS上让Filebeat与Elasticsearch配合使用,可按以下步骤操作:
sudo dnf install java-11-openjdk安装OpenJDK。wget https://artifacts.elastic.co/downloads/elasticsearch/elasticsearch-7.17.26-amd64.deb,然后解压并移动到合适位置,编辑/etc/elasticsearch/elasticsearch.yml配置文件,设置集群名称、节点名称、网络地址等参数,最后启动服务sudo systemctl start elasticsearch。wget https://artifacts.elastic.co/downloads/beats/filebeat/filebeat-7.17.26-amd64.deb,解压后移动到/opt目录,创建符号链接sudo ln -s /opt/filebeat/bin/filebeat /usr/local/bin/filebeat。/etc/filebeat/filebeat.yml文件,设置输入源,如监控/var/log/*.log日志文件,配置输出到Elasticsearch的主机和端口等信息。sudo systemctl start filebeat启动服务,若需开机自启动,可执行sudo systemctl enable filebeat。curl -X GET "localhost:9200/_cat/indices?v"命令查看Elasticsearch中的索引,若有Filebeat相关索引,说明集成成功。