上传dir-hdfs.conf 到flume的conf目录下:
#定义三大组件的名称
ag1.sources = source1
ag1.sinks = sink1
ag1.channels = channel1
配置source组件
ag1.sources.source1.type = spooldir
ag1.sources.source1.spoolDir = /opt/2019-1
ag1.sources.source1.fileSuffix=.FINISHED
ag1.sources.source1.deserializer.maxLineLength=5120
配置sink组件
ag1.sinks.sink1.type = hdfs
ag1.sinks.sink1.hdfs.path =hdfs://master:9000/access_log/%y-%m-%d/%H-%M
ag1.sinks.sink1.hdfs.filePrefix = app_log
ag1.sinks.sink1.hdfs.fileSuffix = .log
ag1.sinks.sink1.hdfs.batchSize= 100
ag1.sinks.sink1.hdfs.fileType = DataStream
ag1.sinks.sink1.hdfs.writeFormat =Text
roll:滚动切换:控制写文件的切换规则
按文件体积(字节)来切
ag1.sinks.sink1.hdfs.rollSize = 512000
按event条数切
ag1.sinks.sink1.hdfs.rollCount = 1000000
按时间间隔切换文件
ag1.sinks.sink1.hdfs.rollInterval = 60
控制生成目录的规则
ag1.sinks.sink1.hdfs.round = true
ag1.sinks.sink1.hdfs.roundValue = 10
ag1.sinks.sink1.hdfs.roundUnit = minute
ag1.sinks.sink1.hdfs.useLocalTimeStamp = true
channel组件配置
ag1.channels.channel1.type = memory
ag1.channels.channel1.capacity = 500000 ## event条数
ag1.channels.channel1.transactionCapacity = 600 ##flume事务控制所需要的缓存容量600条event
绑定source、channel和sink之间的连接
ag1.sources.source1.channels = channel1
ag1.sinks.sink1.channel = channel1
采集日志
配置好后,进入bin目录
/flume-ng agent 空格-c /usr/local/flume-1.8.o-bin/conf 空格-f /usr/local/flume-1.8.o-bin/conf/dir-hdfs.conf 空格-n ag1 -Dflume.root.logger=INFO,console
-c 或者–conf 后跟配置目录
-f 或者–conf-file 后跟具体的配置文件
-n 或者–name 指定agent的名称
后台运行flume:前面加一个nohup空格. 后面加一个&
nohup ./flume-ng agent -c /usr/local/flume-1.8.o-bin/conf -f /usr/local/flume-1.8.o-bin/conf/dir-hdfs.conf -n ag1 -Dflume.root.logger=INFO,console &