Basic logstash config file that reads a json log file into elasticsearch. Install logstash on mac: brew install logstash mkdir /usr/local/etc/logstash subl /usr/local/etc/logstash/logstach.conf
Test config file cd /usr/local/Cellar/logstash/2.1.1 bin/logstash -f /usr/local/etc/logstash/logstash.conf --configtest
input {
file {
path => "/var/log/kwik/kwik.log"
codec => json
start_position => beginning
}
}
output {
elasticsearch {
hosts => "localhost:9200"
}
}