elk       

elk

logstash:收集日志

elasticsearch:存储日志

kibana:日志可视化

logstash

以下配置,收集input日志,然后发送到stdout和es

input {
	log4j {
		host => "127.0.0.1"
		port => 4560
	}
}

output {
	stdout {
		codec => rubydebug
	}
	elasticsearch {
		hosts => ["localhost:9200"],
		index => "log4j-%{+YYYY.MM.dd}"
		document_type => "log4j_type"
	}
} ### elasticsearch

kibana