官术网_书友最值得收藏!

Summary

In this chapter, we covered the basics of ELK Stack and their characteristics. We explained how we can use Beats to send logs data, file data, and system metrics to Logstash or Elasticsearch and that Logstash can be configured as a pipeline to modify the data format and then send the output to Elasticsearch. Elasticsearch is a search engine built on top of Lucene. It can store data and provide functionality to do full text searching on data. Kibana can be configured to read Elasticsearch data and create visualizations and dashboards. We can embed these dashboards on existing web pages, which can then be used for decision-making. 

Then, we discussed different use cases of ELK Stack. The first one we mentioned was log management, which is the primary use case of ELK Stack and which made it famous. In log management, we can capture logs from different servers/sources and dump them in a central Elasticsearch cluster after modifying it through Logstash. Kibana is used to create meaningful graphical visualization and dashboards by reading the Elasticsearch data. Finally, we discussed security monitoring and alerting, where ELK Stack can be quite helpful. Security is a very important aspect of any software, and often it is the most neglected part of development and monitoring. Using ELK Stack, we can observe any security threat.

主站蜘蛛池模板: 莱西市| 林西县| 太仓市| 监利县| 洪湖市| 唐河县| 贵港市| 仪征市| 抚松县| 民丰县| 肇庆市| 瑞金市| 宁武县| 洛隆县| 台前县| 彩票| 上饶县| 米林县| 汾阳市| 宣威市| 凯里市| 德令哈市| 深圳市| 合江县| 科尔| 乌审旗| 娄烦县| 明光市| 临朐县| 嵩明县| 盐津县| 黄梅县| 封丘县| 阳东县| 壶关县| 辉南县| 玛沁县| 湟中县| 香格里拉县| 印江| 砚山县|