We hope to use ElasticSearch Input Plugin from Logstash to output with ElasticSearch.
This feature has been successfully collected by MongoDB Input Plugin in real time.
However, the ElasticSearch Input Plugin does not start with the data that you recently collected when you run the collection. Duplicate data is created when collecting all data.
I would like to collect data from my most recent collection. How do I set it up?
There is another question.
The Mongo input plugin distinguishes recently collected data by "placeholder_db_dir", "placeholder_db_name" settings.
What is the ElasticSearch input plugin?
I am config file info.
input {
elasticsearch {
hosts => '192.168.10.101:9200'
index => 'sample'
scroll => '5m'
docinfo => true
}
}
filter {
json {
source => 'message'
}
}
output {
elasticsearch {
hosts => ["localhost:9200"]
index => "es"
}
stdout { codec => rubydebug }
file {
path => '/home/jskang/jskang-platform/logs/logstash/logstash-%{+YYYY.MM.dd}.log'
codec => rubydebug
}
}