davidraviv
1/20/2016 - 9:55 AM

Basic logstash config file that reads a json log file into elasticsearch. *Install logstash on mac:* brew install logstash mkdir /usr/local/

Basic logstash config file that reads a json log file into elasticsearch. Install logstash on mac: brew install logstash mkdir /usr/local/etc/logstash subl /usr/local/etc/logstash/logstach.conf

Test config file cd /usr/local/Cellar/logstash/2.1.1 bin/logstash -f /usr/local/etc/logstash/logstash.conf --configtest

input {
    file {
        path => "/var/log/kwik/kwik.log"
        codec => json
        start_position => beginning 
    }
}
output {
    elasticsearch {
    	hosts => "localhost:9200"
    }
}