Closed loekey87 closed 8 months ago
What do the logstash logs show? is it showing positive connection to your SMDR service? Is it successfully pushing to your elastic index? Use Kibana to check the index, if there are no entries then the issue should be in Logstash somewhere
I have and ELK docker set up and I've imported everything into kibana, set up the pipline and double checked my settings below is my pipeline and screenshot of SMDR setup, i've tried several different options for host for elasticsearch as well but it's not picking up the index (ip address of phone system has been ommited as well as ip of host running ELK stack:
input {
connects directly to our phone server
tcp { mode => "client" host => "######" port => 3000 type => "smdr" } #Live SMDR
}#input
filter { if "smdr" not in [tags] { if [type] == "smdr" {
read in new data and process
} output {
The following should go to a single index per year and have the entries output to a text file as backup
}