1、安装logstash的工具
(1)关闭防火墙
systemctl stop firewalld
systemctl disable firewalld
(2)配置安全策略
sed -i '/SELINUX/s/enforcing/disabled/' /etc/selinux/config
2、配置yum源
cd /etc/yum.repos.d/ 目录下新建源加载地址
vi logstash.repo
[logstash-6.x] name=Elastic repository for 6.x packages baseurl=https://artifacts.elastic.co/packages/6.x/yum gpgcheck=1 gpgkey=https://artifacts.elastic.co/GPG-KEY-elasticsearch enabled=1 autorefresh=1 type=rpm-md |
3、在线安装logstach
(1)启动文件路径说明
(2)配置文件路径说明
4、输出tomcat的日志信息
(1)配置tomcat的日志文件地址
在/etc/logstash/conf.d下创建tomcat的日志文件:tomcat-log.conf
touch /etc/logstash/conf.d/tomcat-log.conf
input { output { |
5、启动logstach
/usr/share/logstash/bin/logstash -f /etc/logstash/conf.d/tomcat-log.conf
6、查看tomcat的输入日志信息
tail -f tomcat_log.txt