ana.yml
log [17:32:09.138] [warning][plugins][reporting] Chromium sandbox provides an additional layer of protection, but is not supported for Linux Centos 7.9.2009 OS. Automatically setting 'xpack.reporting.capture.browser.chromium.disableSandbox: true'.
log [17:32:09.139] [warning][reporting] Enabling the Chromium sandbox provides an additional layer of protection.
log [17:32:10.356] [info][status][plugin:reporting@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.383] [info][status][plugin:spaces@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.385] [info][status][plugin:security@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.391] [info][status][plugin:dashboard_mode@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.393] [info][status][plugin:beats_management@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.438] [info][status][plugin:maps@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.446] [info][plugins][taskManager][taskManager] TaskManager is identified by the Kibana UUID: 66a6ab9a-0339-47c1-9fa8-ef059a59152e
log [17:32:10.449] [info][status][plugin:task_manager@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.451] [info][status][plugin:encryptedSavedObjects@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.454] [info][status][plugin:apm_oss@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.456] [info][status][plugin:console_legacy@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.459] [info][status][plugin:region_map@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.464] [info][status][plugin:ui_metric@7.8.1] Status changed from uninitialized to green - Ready
log [17:32:10.470] [info][listening] Server running at http://192.168.0...:5601
log [17:32:10.901] [info][server][Kibana][http] http server running at http://192.168.0...:5601
5 浏览器访问:IP:5601
六、elasticsearch-analysis-ik 分词器插件安装
作用:如果直接使用Elasticsearch的分词器在处理中文内容的搜索时,ES会将中文词语分成一个一个的汉字。当用Kibana作图,按照term来分组的时候,也会将一个汉字单独分成一组。这对于我们的使用是及其不方便的,因此我们引入es之中文的分词器插件es-ik就能解决这个问题。
1 elasticsearch-analysis-ik分词器下载地址:https://github.com/medcl/elasticsearch-analysis-ik/releases
2 创建分词器目录
分词器安装在ES目录下即可,所有在ES目录下创建分词器目录
mkdir /opt/elastic/elasticsearch-7.8.1/plugins/ik
3 解压安装包
unzip /opt/software/elastic/elasticsearch-analysis-ik-7.8.1.zip -d /opt/elastic/elasticsearch-7.8.1/plugins/ik/
4 重新对ES目录授权
chown -R es:es /opt/elastic/elasticsearch-7.8.1
5 关闭ES和Kibana
可以先通过Kill命令杀掉ES和Kibana进程
ps -ef | grep elastic
kill -9
6 启动
/opt/elastic/elasticsearch-7.8.1/bin/elasticsearch -d
/opt/elastic/kibana-7.8.1-linux-x86_64/bin/kibana
此时的ES日志是可以查看到是有加载分词器插件的
七、Logstash安装
1 下载
wget https://artifacts.elastic.co/downloads/logstash/logstash-7.8.1.tar.gz
2 解压
tar -zxvf /opt/software/elastic/logstash-7.8.1.tar.gz -C /opt/elastic/
3 配置 logstash.yml
vim /opt/elastic/logstash-7.8.1/config/logstash.yml
系统配置不高可以适当减少
4 启动
logstash启动命令位于安装路径的bin目录中,直接启动会报错,需要按照如下方式提供参数。
命令行