prabhu1909: there is no way I know of to make logstash pause sending data to kafka
you can play with the timestamps in logstash
wrath0r joined the channel
arnonhongklay has quit
tigryss__ has quit
arnonhongklay joined the channel
vdmkenny
yybel: Hey, so I went the route of using multiple jmx {} inputs, and that works, but for some reason it mixes them together in the output... this my config: http://paste.cinaed.be/?8ffde088a2beba44#7Mx/bm...
so in influxdb, there is stuff tagged with the name of one App, that has data from the other app etc
pawnbox has quit
seems very random, because there are correct ones too
wrath0r has quit
vali joined the channel
antgel joined the channel
witquicked has quit
pawnbox joined the channel
so... I have two jmx inputs in my config, and it seems that logstash puts them together as one event... I don't want that, because of the way my output plugin works. How do I keep those seperated?
vali has quit
vali joined the channel
vinrock joined the channel
vali has quit
valeech joined the channel
ryancrowq joined the channel
milindur has quit
SkyRocknRoll has quit
manoj2 joined the channel
vali joined the channel
milindur joined the channel
w1xz joined the channel
brahama has quit
yybel
Can you get a sample of those output events to pastebin
Logstash events in json
alsochris joined the channel
manoj2
sad
fatdragon joined the channel
vali has quit
loggly joined the channel
loggly
hello!
So I want logstash to stream its logs to ES. I need the ElasticSearch plugin, right?
I tried already some stuff - currently logstash only tells it opened a pipe, closed it and then exits with 0.
so apparently there is nothing set up, hence logstash will autoexit?
brahama joined the channel
fatdragon has quit
vali joined the channel
brahama, vali: Hi!!
manoj2 has quit
simplycycling has quit
simplycycling joined the channel
notebox joined the channel
MillerBoss has quit
manoj2 joined the channel
vali has quit
akp joined the channel
MillerBoss joined the channel
wrath0r joined the channel
ConsoleFx has quit
xtruthx has quit
AirOnSkin joined the channel
fredsted joined the channel
DandyPandy has quit
Urocyon joined the channel
jjfalling joined the channel
DandyPandy joined the channel
roadtest joined the channel
roadtest has quit
pawnbox joined the channel
scriptkiddy joined the channel
scriptkiddy has quit
scriptkiddy joined the channel
brahama has quit
pawnbox has quit
bhi
anyone? :)
roadtest joined the channel
scriptkiddy
Hi guys, can I borrow your experience for a sec?
tigryss__ joined the channel
casimirextreme has quit
casimirextreme joined the channel
pawnbox joined the channel
I succeeded in parsing an input, and it currently has the following structure {allEvents : [1, 2, 3], @timestamp : .., headers : { ...}, host : ...}. This is outputted as a single event (as a file). I want to split it in allEvents.length events, so three events, with the content of the matching index of allEvents.
How do I achieve this?
Do I need to use the Clone filter or something? Google isn't bringing up anything useful so far.
derjohn_mob joined the channel
Sharebear has quit
notebox joined the channel
WeakLearner joined the channel
Schwarzbaer_ has quit
Schwarzbaer joined the channel
pawnbox joined the channel
cyborg-one has quit
pawnbox joined the channel
mdunn joined the channel
pawnbox has quit
dvdjaco has quit
xtruthx joined the channel
Darcidride joined the channel
Mixologic joined the channel
prabhu1909 has quit
pawnbox joined the channel
brahama joined the channel
Hmm. Found it. Seems like it was the split filter (logically). Kinda missed the field key. :-) Thanks!
crazyphil has quit
exit
scriptkiddy has quit
arnonhongklay has quit
Sharebear joined the channel
Sandcrab has quit
pawnbox_ joined the channel
matejz has quit
simplycycling has quit
fatdragon joined the channel
rem5_ joined the channel
AirOnSkin has quit
rem5 has quit
rem5 joined the channel
fatdragon has quit
rem5_ has quit
fatdragon joined the channel
rem5 has quit
rem5 joined the channel
rem5 has quit
rem5 joined the channel
sndcrb joined the channel
shannon_ joined the channel
jlambert121 joined the channel
jlambert121
i'm working on getting a new system's logs into logstash, but running into an issue with the sqs plugin (that's the input for these logs). I've made my config about as simple as can be and am getting an error I'm not sure how to troubleshoot: https://notehub.org/1unlm