wget https://artifacts.elastic.co/downloads/elasticsearch/elasticsearch-7.10.1-linux-x86_64.tar.gz tar -xzf elasticsearch-7.10.1-linux-x86_64.tar.gz cd elasticsearch-7.10.1/bin ./elasticsearch
Make sure Elasticsearch is up and running
curl http://127.0.0.1:9200
为了安全不允许 root 启动
1 2 3
adduser elasticsearch chown -R elasticsearch:elasticsearch elasticsearch-7.10.1 su elasticsearch
could not find java in bundled jdk at
1
apt install default-jre
设置环境变量
1 2 3 4 5 6 7
vi /etc/default/elasticsearch JAVA_HOME=/usr START_DAEMON=true ES_USER=elasticsearch ES_GROUP=elasticsearch
export JAVA_HOME=/usr
1.2 安装kibana
1 2 3 4
wget https://mirrors.huaweicloud.com/kibana/7.10.1/kibana-7.10.1-linux-x86_64.tar.gz tar xzvf kibana-7.10.1-linux-x86_64.tar.gz cd kibana-7.10.1-linux-x86_64/ ./bin/kibana
访问外网 ip:5601不行
1 2 3
vi config/kibana.yml #修改 server.host: "0.0.0.0"
1.3 安装filebeat
1 2 3
wget https://artifacts.elastic.co/downloads/beats/filebeat/filebeat-7.10.1-linux-x86_64.tar.gz tar -zxvf filebeat-7.10.1-linux-x86_64.tar.gz cd filebeat-7.10.1-linux-x86_64
打开Kibana页面,点击菜单 Management > Stack Management > Index Patterns,然后点击页面上的Create index pattern,在Index pattern输入框中输入filebeat-*关键字,当提示Success! Your index pattern matches 1 index.时,我们点击Next step。
然后在Time Filter field name下拉列表中选择@timestamp作为时间过滤字段,最后点击Create index pattern按钮,稍等几秒,完成索引模式创建。