December 2018
Beginner
826 pages
22h 54m
English
On centos1, let's grab the Elastic repository:
$ cat <<HERE | sudo tee /etc/yum.repos.d/elasticsearch.repo[elasticsearch-6.x]name=Elasticsearch repository for 6.x packagesbaseurl=https://artifacts.elastic.co/packages/6.x/yumgpgcheck=1gpgkey=https://artifacts.elastic.co/GPG-KEY-elasticsearchenabled=1autorefresh=1type=rpm-mdHERE
Now we need to install the various components:
$ sudo yum install elasticsearch kibana logstash -y
And we need to start them, with a number of configuration tweaks:
$ sudo systemctl daemon-reload$ sudo systemctl enable --now elasticsearch$ sudo systemctl enable --now kibana
We're going to use the Elastic syslog example (from https://www.elastic.co/guide/en/logstash/6.4/config-examples.html#_processing_syslog_messages ...