springboot 集成elasticsearch,对graylog日志做相应的处理
1.pom配置
<parent>
<groupId>org.springframework.boot</groupId>
<artifactId>spring-boot-starter-parent</artifactId>
<version>2.1.3.RELEASE</version>
<relativePath/>
</parent>
<modelVersion>4.0.0</modelVersion>
<artifactId>log-elasticsearch</artifactId>
<properties>
<project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
<project.reporting.outputEncoding>UTF-8</project.reporting.outputEncoding>
<java.version>1.8</java.version>
<jest.version>6.3.1</jest.version>
<log4j>2.8.2</log4j>
</properties>
<dependencies>
<!-- Spring Boot Elasticsearch 依赖 -->
<dependency>
<groupId>org.springframework.data</groupId>
<artifactId>spring-data-elasticsearch</artifactId>
<version>3.1.9.RELEASE</version>
</dependency>
<!--Jest工具包 -->
<dependency>
<groupId>io.searchbox</groupId>
<artifactId>jest</artifactId>
<version>${jest.version}</version>
</dependency>
<!-- Spring Boot Web 依赖 -->
<dependency>
<groupId>org.springframework.boot</groupId>
<artifactId>spring-boot-starter-web</artifactId>
</dependency>
<dependency>
<groupId>org.apache.logging.log4j</groupId>
<artifactId>log4j-core</artifactId>
<version>${log4j}</version>
</dependency>
<dependency>
<groupId>org.apache.logging.log4j</groupId>
<artifactId>log4j-api</artifactId>
<version>${log4j}</version>
</dependency>
<!-- Junit -->
<dependency>
<groupId>junit</groupId>
<artifactId>junit</artifactId>
<version>4.12</version>
</dependency>
<dependency>
<groupId>org.projectlombok</groupId>
<artifactId>lombok</artifactId>
</dependency>
</dependencies>
2.yml文件配置
server:
port: 8011
spring:
banner:
charset: utf-8
application:
name: log-elasticsearch
http:
encoding:
charset: utf-8
enabled: true
force: true
messages:
encoding: UTF-8
data:
elasticsearch:
repositories:
enabled: true
cluster-nodes: XXXXXX:9300
cluster-name: docker-cluster
注:
1)cluster-nodes: XXXXXX:9300,端口是9300,Java与elasticsearch通信是9300 不是9200
2)cluster-name: docker-cluster;集群名称配置,否则报错
failed to load elasticsearch nodes : org.elasticsearch.client.transport.NoNodeAvailableException: None of the configured nodes are available
3.索引实体类配置
注:
1)@Document(indexName = "graylog_0", type = "message") 要配置索引名称与参数类型
2)private Long id; 必须添加id字段
3)字段名与数据库字段名一致
4.调用查询
@Override
public List<Graylog> searchAppName(String appName, Integer pageNumber, Integer pageSize) {
// 分页参数
Pageable pageable = PageRequest.of(pageNumber, pageSize);
QueryStringQueryBuilder builder = new QueryStringQueryBuilder(appName);
SearchQuery searchQuery = new NativeSearchQueryBuilder().withPageable(pageable).withQuery(builder).build();
System.out.println("查询的语句:" + searchQuery.getQuery().toString());
Page<Graylog> searchPageResults = graylogRepository.search(searchQuery);
return searchPageResults.getContent();
}