Get the App
SLTechnology News&Howtos  ›  Servers  › 

Centos7 deployment EFK7

Shulou Source: shulou.com Published: 2022-06-03 03:39:49 10月03日 Update

What this article shares with you is a detailed tutorial on centos7 deployment of EFK7. I believe most people don't know how to deploy it yet. In order to let you learn, I summarize the following content for you.

Environment:

System: CentOS Linux release 7.7.1908

Elasticsearch: elasticsearch-7.5.1-1.x86_64

Kibana: kibana-7.5.1-1.x86_64

Filebeat: filebeat-7.5.1-1.x86_64

1. Configure the yum environment for EFK

Rpm-- import https://packages.elastic.co/GPG-KEY-elasticsearch

Create a yum source file

Vim efk.repo:

[elasticsearch] name=Elasticsearch repository for 7.x packagesbaseurl= https://artifacts.elastic.co/packages/7.x/yumgpgcheck=1gpgkey=https://artifacts.elastic.co/GPG-KEY-elasticsearchenabled=0autorefresh=1type=rpm-md[elastic-7.x]name=Elastic repository for 7.x packagesbaseurl= https://artifacts.elastic.co/packages/7.x/yumgpgcheck=1gpgkey=https://artifacts.elastic.co/GPG-KEY-elasticsearchenabled=1autorefresh=1type=rpm-md[kibana-7.x]name=Kibana repository for 7.x packagesbaseurl= https://artifacts.elastic.co/packages/7.x/yumgpgcheck=1gpgkey=https:/ / artifacts.elastic.co/GPG-KEY-elasticsearchenabled=1autorefresh=1type=rpm-md

two。 Install EFK

Yum install-enablerepo=elasticsearch elasticsearch yum install kibana yum install filebeat

3. Configure EFK

a. Configure elasticsearch

Vim / etc/elasticsearch/elasticsearch.yml

Node.name: node-1 cluster.initial_master_nodes: ["node-1"] http.port: 9200 network.host: 0.0.0.0

b. Configure kibana

Vim / etc/kibana/kibana.yml

Server.port: 5601 server.host: "0.0.0.0" elasticsearch.hosts: ["# ip is changed to the machine on which the elasticsearch service is deployed ip kibana.index:" .kibana "

c. Configure filebeat

Vim / etc/filebeat/filebeat.yml

Setup.kibana: host: "# ip is changed to the machine where the kibana service is deployed ip output.elasticsearch: hosts: [" localhost:9200 "] # ip to the machine ip where the elasticsearch service is deployed. I have a machine here. So localhost equals 11.22 filebeat.inputs:-type: log enabled: false paths: # path to log collection-/ var/log/*.log

Start the EFK service

Systemctl start elasticsearch.service

If you have questions about the startup of elasticsearch, click: https://blog.51cto.com/liuxiaolan/2463905

Systemctl start kibana.service

Systemctl start filebeat.service

On the deployment of centos7 EFK7 to share here, I hope the above content can be of some help to you, can learn more knowledge. If you think the article is good, you can share it for more people to see.

Tags: Configuration machines services content more environment good most tutorials articles logs source files knowledge articles paths questions c. help related Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Xiaomi MySQL Shulou Information Docker Microsoft