Disclaimer: This article is a blogger original article, shall not be reproduced without the bloggers allowed. https://blog.csdn.net/tladagio/article/details/87967420
Premise: elk environment to build complete, and normal to be able to collect log data. Winlogbeat below to use the system to collect in the windows log to Elasticsearch, then kibana create visualizations.
A, kibana add indexes
1, click the Index Patterns, then click Create Index Pattern
2, the default index name: winlogbeat- *, and then click Create
3, click on Discover, select winlogbeat can see the relevant information
4, select a few key field, click Add to add
5, select Add pie
6. Select Index
7, selected slice
8, select the field, and then press the arrow graphic production
9, adding to save and name
10, then you can see the saved graphics
11, is added to the dashboard
12, select the corresponding graphic, click Save
13 view