Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[logstash] Verify logs mappings and pipelines #4048

Closed
Tracked by #137112
klacabane opened this issue Aug 22, 2022 · 1 comment · Fixed by #4206
Closed
Tracked by #137112

[logstash] Verify logs mappings and pipelines #4048

klacabane opened this issue Aug 22, 2022 · 1 comment · Fixed by #4206
Assignees
Labels
Integration:logstash Logstash Team:Infra Monitoring UI - DEPRECATED Label for the Infrastructure Monitoring UI team. - DEPRECATED - Use Team:obs-ux-infra_services Team:Obs-InfraObs Label for the Observability Infrastructure Monitoring team [elastic/obs-infraobs-integrations] v8.5.0

Comments

@klacabane
Copy link
Contributor

Summary

Let's verify that every logstash log types is properly ingested when running the logstash package. The package should only support log formats from versions >= 8.0.

Note

  • if a log type is failing to ingest, we should look at the corresponding filebeat implementation and verify both pipelines and mappings are aligned.
  • if the logs are generated with an ecs format, we should look at simplifying the pipeline like the platform-observability package
@klacabane klacabane added Integration:logstash Logstash v8.5.0 Team:Infra Monitoring UI - DEPRECATED Label for the Infrastructure Monitoring UI team. - DEPRECATED - Use Team:obs-ux-infra_services Team:Obs-InfraObs Label for the Observability Infrastructure Monitoring team [elastic/obs-infraobs-integrations] labels Aug 22, 2022
@klacabane klacabane assigned klacabane and unassigned klacabane Sep 12, 2022
@klacabane
Copy link
Contributor Author

Logstash package also have dashboards/saved search that should work in 8.5

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Integration:logstash Logstash Team:Infra Monitoring UI - DEPRECATED Label for the Infrastructure Monitoring UI team. - DEPRECATED - Use Team:obs-ux-infra_services Team:Obs-InfraObs Label for the Observability Infrastructure Monitoring team [elastic/obs-infraobs-integrations] v8.5.0
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant