Check the system type and hostname
Right "Computer" - "Properties"
Configure the hosts file
Using WordPad to open, and finally add the following three lines in the file:
139.4.1.19 FH-UMP-ZABBIX-VIP
139.4.1.20 FH-UMP-ZABBIX1
139.4.1.22 FH-UMP ELK-VIP
Configure logging agent
Configuration filebeat
Enter c: \ ump \ filebeat directory
编辑 filebeat.yml
Enter the relevant information in the following format
Description:
paths for the log path
hostip native IP address
logappname abbreviated application of capital letters
document_type and the topic must modify the server hostname
Registration filebeat Service
Double click filebeat-service.bat
Start filebeat Service
Open the "Run", type "services.msc", and then jumped out to find filebeat in the dialog box, click on the "start"
Configuration winlogbeat
Enter c: \ ump \ winlogbeat
Edit winlogbeat.yml
Enter the name of the local host: In the last topic
Registration winlogbeat Service
Double-click the "winlogbeat-service.bat"
Start winlogbeat Service
Open the Services panel, find "winlogbeat", click on "start"
In the FH-UMP-ELK-VIP view information, receive confirmation log
/opt/elk/kafka/bin/kafka-topics.sh --zookeeper 147.4.8.14 --list |grep WIN-3QPURLODTC1
/opt/elk/kafka/bin/kafka-console-consumer.sh --zookeeper 147.4.8.14 --topic WIN-3QPURLODTC1
Creating logstash profile
According to the type selection flume and the * _f.conf filebeat * _b.conf or copy, with reference to modify the format of index names and topics
Configuring startup scripts
Modify the corresponding profile name in the startup script
Start the process and inspection services
Web页面创建索引
浏览器输入:http://147.4.8.13:5601/app/kibana#/management/
创建索引
点击“Create Index Pattern”后,在对话框输入与配置文件同样的索引名,最后点击“create”
查看信息
在浏览器输入:147.4.8.13:5601/app/kibana#/,在左侧选择刚创建的索引,即可看到更新的日志