nginx 配置:
http {
include mime.types;
default_type application/octet-stream;
log_format main '$http_host $server_addr $remote_addr [$time_local] "$request" '
'$request_body $status $body_bytes_sent "$http_referer" "$http_user_agent" '
'$request_time $upstream_response_time';
#send the log to syslog and file.
access_log /var/log/nginx/access.log main;
# pre 1.5.x
error_log /var/log/nginx/error.log;
nginx 服务器rsyslog配置:
$ModLoad imuxsock # provides support for local system logging (e.g. via logger command)
$ModLoad imklog # provides kernel logging support (previously done by rklogd)
module(load="imfile" Pol
nginx grok 正则错误的输出情况
最新推荐文章于 2022-07-13 10:27:22 发布
本文介绍了如何配置nginx的日志格式,并通过rsyslog将日志发送到文件,然后使用logstash进行处理。在logstash中,定义了grok模式来解析日志,但出现了_grokparsefailure的标签,表明正则表达式匹配失败。文章展示了logstash的输出和elasticsearch的索引,帮助理解问题所在。
摘要由CSDN通过智能技术生成