logstash grok 解析Nginx
来源:互联网 发布:linux 搜索文件内容 编辑:程序博客网 时间:2024/05/19 20:38
log_format main '$remote_addr [$time_local] "$request" ' '$request_body $status $body_bytes_sent "$http_referer" "$http_user_agent" ' '$request_time $upstream_response_time';zjtest7-frontend:/usr/local/logstash-2.3.4/config# cat loguat.cof input { file { type => "uat_nginx_access" path => ["/rsyslog/data/nginx/uat/nginx_access0*_log.*"] }}filter { grok { match =>{ "message" => " %{IPORHOST:clientip} \[%{HTTPDATE:time}\] \"%{WORD:verb} %{URIPATHPARAM:request} HTTP/%{NUMBER:httpversion}\" \- %{NUMBER:http_status_code} %{NUMBER:bytes} \"(?<http_referer>\S+)\" \"(?<http_user_agent>(\S+\s+)*\S+)\".*" } } }output { elasticsearch { hosts => "192.168.32.80:9200" index => "logstash-uat-test" }stdout {codec => rubydebug} }{ "message" => " 121.40.205.143 [29/Aug/2016:17:35:30 +0800] \"GET /wechat/hold_history.html HTTP/1.1\" - 200 2567 \"https://uatest.winfae.com/wechat/account_hold.html\" \"Mozilla/5.0 (iPhone; CPU iPhone OS 9_3_2 like Mac OS X) AppleWebKit/601.1.46 (KHTML, like Gecko) Mobile/13F69 MicroMessenger/6.3.16 NetType/WIFI Language/zh_CN\" 0.000 -", "@version" => "1", "@timestamp" => "2016-08-29T09:38:14.182Z", "path" => "/rsyslog/data/nginx/uat/nginx_access01_log.2016-08-29", "host" => "0.0.0.0", "type" => "uat_nginx_access", "clientip" => "121.40.205.143", "time" => "29/Aug/2016:17:35:30 +0800", "verb" => "GET", "request" => "/wechat/hold_history.html", "httpversion" => "1.1", "http_status_code" => "200", "bytes" => "2567", "http_referer" => "https://uatest.winfae.com/wechat/account_hold.html", "http_user_agent" => "Mozilla/5.0 (iPhone; CPU iPhone OS 9_3_2 like Mac OS X) AppleWebKit/601.1.46 (KHTML, like Gecko) Mobile/13F69 MicroMessenger/6.3.16 NetType/WIFI Language/zh_CN"}
0 0
- logstash grok 解析Nginx
- logstash grok解析
- logstash grok之match解析
- logstash,nginx日志,grok pattern调试
- logstash使用grok正则解析日志
- logstash 使用grok正则解析日志
- Logstash使用grok解析IIS日志
- logstash grok
- Logstash使用grok过滤nginx日志(二)
- logstash+grok+json+elasticsearch解析复杂日志数据(一)
- logstash+grok+json+elasticsearch解析复杂日志数据(二)
- logstash grok 正则 实例
- logstash之grok过滤
- logstash grok正则调试
- Logstash过滤器--grok
- logstash + grok 正则语法
- logstash 中正则grok
- logstash grok 多项匹配
- 【考研日记1】:看到2016年数学考的如此之难后
- Canvas的初识——模拟表盘数字绘制
- Android热修复原理普及
- Win32多语言IME开发概述
- swifit 三种类型private internal public 区别
- logstash grok 解析Nginx
- Javascript—事件委托
- Selenium IE 11 sendKeys 慢
- Q63:二叉搜索树的第K个结点
- NOI.POENJUDGE 1.12.08 感想
- JNI中Android.mk随记
- CGI编程
- C++11:变长参数模板模拟java.lang.String.format格式化输出
- 文章标题